|
Log-Analyse und Auswertung: Sicherheitsmail von web.de bekommenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
10.08.2017, 17:14 | #1 | |
| Sicherheitsmail von web.de bekommen Ich habe heute morgen eine Sicherheitsmail von web.de bekommen in der ich aufgefodert wurde mein Passwort zu ändern Zitat:
LogIn sofort aufgefordert das Passwort zu ändern was ich auch getan habe. Norton Internet Security und Malwarebytes Anti Malware hat nichts gefunden. ADW Cleaner hat 3 Ordner gefunden die leer waren und hat sie gelöscht. Code:
ATTFilter # AdwCleaner 7.0.1.0 - Logfile created on Thu Aug 10 13:42:22 2017 # Updated on 2017/05/08 by Malwarebytes # Database: 08-09-2017.2 # Running on Windows 10 Pro (X64) # Mode: scan # Support: https://www.malwarebytes.com/support ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** PUP.Optional.PremiumDownloadManager, C:\ProgramData\DownloadManager PUP.Optional.PremiumDownloadManager, C:\Users\All Users\DownloadManager PUP.Adware.Heuristic, C:\ProgramData\Audyssey Labs ***** [ Files ] ***** No malicious files found. ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** No malicious registry entries found. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries. ************************* ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ########## Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 10.08.2017 Suchlaufzeit: 15:22 Protokolldatei: mbam.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2017.08.10.03 Rootkit-Datenbank: v2017.08.02.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: TechnoCrack Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 377060 Abgelaufene Zeit: 2 Min., 49 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Geändert von <harko (10.08.2017 um 18:06 Uhr) |
10.08.2017, 17:50 | #2 |
| Sicherheitsmail von web.de bekommenCode:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 09-08-2017 durchgeführt von TechnoCrack (Administrator) auf MASTEROFSOUND (10-08-2017 18:33:05) Gestartet von E:\Downloads Geladene Profile: TechnoCrack & Camth (Verfügbare Profile: TechnoCrack & Camth & Tester) Platform: Windows 10 Pro Version 1703 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.23\aaHMSvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.15\AsusFanControlService.exe (Symantec Corporation) C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\ns.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Corporation) C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Ransomware\mbarw.exe (Symantec Corporation) C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\ns.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamresearch.exe (Malwarebytes) E:\Downloads\AdwCleaner_7.0.1.0.exe (Sirrix AG) C:\Program Files (x86)\Sirrix AG\BitBox\bin\BitBoxService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Ransomware\MB3Service.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Spotify Ltd) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.60.492.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe (Telegram Messenger LLP) D:\Telegram Desktop\Telegram.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [15853176 2016-08-03] (Logitech Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9228800 2017-06-29] (Realtek Semiconductor) HKLM-x32\...\Run: [GDataUsbProtection] => C:\Program Files (x86)\G DATA\USB KEYBOARD GUARD\GD2NDKBB.exe [1412216 2014-09-05] (G Data Software AG) HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [204136 2012-09-13] (Logitech Inc.) HKU\S-1-5-21-848758703-1503385747-3576675771-1001\...\Run: [WiFi Guard] => C:\Program Files\SoftPerfect WiFi Guard\WiFiGuard.exe [4971848 2016-04-13] (SoftPerfect) HKU\S-1-5-21-848758703-1503385747-3576675771-1001\...\Run: [GUDelayStartup] => D:\Glary Utilities 5\StartupManager.exe [43984 2016-12-16] (Glarysoft Ltd) HKU\S-1-5-21-848758703-1503385747-3576675771-1001\...\Run: [GlassWire] => C:\Program Files (x86)\GlassWire\glasswire.exe [5791696 2017-03-21] (SecureMix LLC) HKU\S-1-5-21-848758703-1503385747-3576675771-1001\...\RunOnce: [Report] => C:\AdwCleaner\AdwCleaner[C0].tx HKU\S-1-5-21-848758703-1503385747-3576675771-1002\...\Run: [GlassWire] => C:\Program Files (x86)\GlassWire\GlassWire.exe [5791696 2017-03-21] (SecureMix LLC) HKU\S-1-5-21-848758703-1503385747-3576675771-1002\...\Run: [Akamai NetSession Interface] => C:\Users\Camth\AppData\Local\Akamai\netsession_win.exe [4490200 2017-01-03] (Akamai Technologies, Inc.) HKU\S-1-5-21-848758703-1503385747-3576675771-1002\...\Run: [WiFi Guard] => C:\Program Files\SoftPerfect WiFi Guard\WiFiGuard.exe [4971848 2016-04-13] (SoftPerfect) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TraXEx 7.0.lnk [2016-08-30] ShortcutTarget: TraXEx 7.0.lnk -> C:\Program Files (x86)\TraXEx\TraXEx.exe (Alexander Miehlke Softwareentwicklung) Startup: C:\Users\Camth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Browser-Maulkorb.lnk [2016-08-12] ShortcutTarget: Browser-Maulkorb.lnk -> C:\Program Files (x86)\Browser-Maulkorb\BrowserMaulkorb.exe (Alexander Miehlke Softwareentwicklung) Startup: C:\Users\Camth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MSIAfterburner.lnk [2016-08-14] ShortcutTarget: MSIAfterburner.lnk -> D:\MSI Afterburner\MSIAfterburner.exe () Startup: C:\Users\Camth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Telegram.lnk [2016-12-03] ShortcutTarget: Telegram.lnk -> D:\Telegram Desktop\Telegram.exe (Telegram Messenger LLP) GroupPolicy: Beschränkung <==== ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{b3200726-5499-4ad9-9c6b-00ab6e7659d5}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== BHO: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\coIEPlg.dll [2017-07-14] (Symantec Corporation) BHO-x32: Norton Identity Safety -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Security\Engine32\22.10.0.85\coIEPlg.dll [2017-07-14] (Symantec Corporation) Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\coIEPlg.dll [2017-07-14] (Symantec Corporation) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Security\Engine32\22.10.0.85\coIEPlg.dll [2017-07-14] (Symantec Corporation) FireFox: ======== FF DefaultProfile: tewy5lry.default FF ProfilePath: C:\Users\TechnoCrack\AppData\Roaming\Mozilla\Firefox\Profiles\tewy5lry.default [2017-08-10] FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.7.0.76\coFFAddon FF Extension: (Norton Security Toolbar) - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.7.0.76\coFFAddon [2017-07-23] FF HKLM-x32\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.7.0.76\coFFAddon FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Keine Datei] FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Pro 10\npnitromozilla.dll [2016-07-23] (Nitro PDF) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> D:\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> D:\VLC\npvlc.dll [2017-05-24] (VideoLAN) Chrome: ======= CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\Exts\Chrome.crx [2017-07-21] CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\Exts\Chrome.crx [2017-07-21] CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2207960 2016-09-26] (Adobe Systems, Incorporated) S2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2016-08-27] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.23\aaHMSvc.exe [963536 2016-08-27] (ASUSTeK Computer Inc.) R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.15\AsusFanControlService.exe [419288 2016-08-27] (ASUSTeK Computer Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1467912 2017-02-01] () R2 BitBoxService; C:\Program Files (x86)\Sirrix AG\BitBox\bin\BitBoxService.exe [738304 2016-10-07] (Sirrix AG) [Datei ist nicht signiert] S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [487488 2017-07-28] (GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [8163392 2017-07-25] (GOG.com) S2 GlassWire; C:\Program Files (x86)\GlassWire\GWCtlSrv.exe [4393424 2017-03-21] (SecureMix LLC) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [630048 2016-10-13] (Intel(R) Corporation) S2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21184 2015-11-20] (Microsoft Corporation) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [196200 2016-12-19] (Intel Corporation) S2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [193656 2016-08-03] (Logitech Inc.) R2 MB3Service; C:\Program Files\Malwarebytes\Anti-Ransomware\mb3service.exe [6054352 2017-07-25] (Malwarebytes) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes) S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-01-18] (Hewlett-Packard) [Datei ist nicht signiert] S2 NitroDriverReadSpool10; C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe [327320 2016-07-23] (Nitro Software, Inc.) S2 NitroUpdateService; C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe [417944 2016-07-23] () R2 NS; C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\NS.exe [326144 2017-07-15] (Symantec Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-07-19] (NVIDIA Corporation) R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [449984 2017-07-19] (NVIDIA Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2119176 2017-01-10] (Electronic Arts) S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2181648 2017-01-10] (Electronic Arts) S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-01-18] (Hewlett-Packard) [Datei ist nicht signiert] S2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [75136 2017-03-22] () S2 PnkBstrB; C:\WINDOWS\SysWOW64\PnkBstrB.exe [189248 2017-03-22] () S2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2016-11-15] (CyberLink) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3913064 2017-03-20] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-06-20] (Microsoft Corporation) R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [19192 2015-09-21] (Intel(R) Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2013-01-28] (ASUSTek Computer Inc.) R3 AndroidAFD; C:\Windows\SysWow64\drivers\AndroidAFDx64.sys [28600 2015-08-28] (ASUSTek Computer Inc.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2016-08-13] () R1 BHDrvx64; C:\Program Files (x86)\Norton Security\NortonData\22.7.0.76\Definitions\BASHDefs\20170807.003\BHDrvx64.sys [1862816 2017-06-28] (Symantec Corporation) R1 ccSet_NS; C:\WINDOWS\system32\drivers\NSx64\160A000.055\ccSetx64.sys [187520 2017-07-14] (Symantec Corporation) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [508032 2017-06-28] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [158336 2017-06-28] (Symantec Corporation) R3 GDKBBlocker; C:\WINDOWS\system32\drivers\GDKBBlocker64.sys [30720 2016-08-12] (G Data Software AG) R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [20160 2016-12-23] (Glarysoft Ltd) R1 gwdrv; C:\WINDOWS\system32\DRIVERS\gwdrv.sys [33152 2015-05-29] (SecureMix LLC) R1 IDSVia64; C:\Program Files (x86)\Norton Security\NortonData\22.7.0.76\Definitions\IPSDefs\20170809.001\IDSvia64.sys [1056920 2017-07-31] (Symantec Corporation) R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [30224 2015-09-21] (Intel Corporation) R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech) R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [85160 2016-04-19] (Logitech Inc.) R3 MB3SwissArmy; C:\WINDOWS\system32\drivers\MB3SwissArmy.sys [253888 2017-08-09] (Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt.sys [101824 2017-08-10] (Malwarebytes) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2017-08-10] (Malwarebytes) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_24ddebfb518b5a55\nvlddmkm.sys [15668664 2017-07-19] (NVIDIA Corporation) S3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) R0 PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [56336 2013-09-03] (Corel Corporation) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [943112 2016-09-22] (Realtek ) R2 RTCore64; D:\MSI Afterburner\RTCore64.sys [13512 2016-05-30] () S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] () R3 SRTSP; C:\WINDOWS\System32\Drivers\NSx64\160A000.055\SRTSP64.SYS [810136 2017-07-14] (Symantec Corporation) R1 SRTSPX; C:\WINDOWS\system32\drivers\NSx64\160A000.055\SRTSPX64.SYS [49304 2017-07-14] (Symantec Corporation) R0 SymEFASI; C:\WINDOWS\System32\drivers\NSx64\160A000.055\SYMEFASI64.SYS [1868416 2017-07-14] (Symantec Corporation) S0 SymELAM; C:\WINDOWS\System32\drivers\NSx64\160A000.055\SymELAM.sys [24608 2017-05-11] (Symantec Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS [102568 2017-07-21] (Symantec Corporation) R1 SymIRON; C:\WINDOWS\system32\drivers\NSx64\160A000.055\Ironx64.SYS [301288 2017-07-14] (Symantec Corporation) R1 SymNetS; C:\WINDOWS\System32\Drivers\NSx64\160A000.055\SYMNETS.SYS [566912 2017-07-14] (Symantec Corporation) R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [185552 2016-07-20] (Oracle Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-08-10 17:38 - 2017-08-10 18:33 - 000000000 ____D C:\FRST 2017-08-10 15:50 - 2017-08-10 15:50 - 000253888 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\08C36BD7.sys 2017-08-10 15:40 - 2017-08-10 15:47 - 000000000 ____D C:\AdwCleaner 2017-08-10 15:25 - 2017-08-10 15:25 - 000001190 _____ C:\Users\TechnoCrack\Desktop\mbam.txt 2017-08-10 15:15 - 2017-08-10 15:15 - 000001177 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2017-08-10 15:15 - 2017-08-10 15:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2017-08-10 15:15 - 2017-08-10 15:15 - 000000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2017-08-10 15:15 - 2016-03-10 14:09 - 000065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2017-08-10 15:15 - 2016-03-10 14:08 - 000140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2017-08-10 15:15 - 2016-03-10 14:08 - 000027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2017-08-09 21:25 - 2017-08-09 21:25 - 000000000 ____D C:\WINDOWS\System32\Tasks\Remediation 2017-08-08 22:10 - 2017-08-01 04:39 - 008319392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-08-08 22:10 - 2017-08-01 04:38 - 000406544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll 2017-08-08 22:10 - 2017-08-01 04:38 - 000382368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2017-08-08 22:10 - 2017-08-01 04:36 - 002165752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2017-08-08 22:10 - 2017-08-01 04:36 - 000750496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2017-08-08 22:10 - 2017-08-01 04:36 - 000119712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys 2017-08-08 22:10 - 2017-08-01 04:35 - 000280472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2017-08-08 22:10 - 2017-08-01 04:35 - 000133904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2017-08-08 22:10 - 2017-08-01 04:34 - 000610584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2017-08-08 22:10 - 2017-08-01 04:34 - 000359552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2017-08-08 22:10 - 2017-08-01 04:34 - 000349600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2017-08-08 22:10 - 2017-08-01 04:34 - 000168864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2017-08-08 22:10 - 2017-08-01 04:33 - 000473240 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2017-08-08 22:10 - 2017-08-01 04:32 - 002444704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-08-08 22:10 - 2017-08-01 04:32 - 000820128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2017-08-08 22:10 - 2017-08-01 04:32 - 000712600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2017-08-08 22:10 - 2017-08-01 04:31 - 005477088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2017-08-08 22:10 - 2017-08-01 04:31 - 002645680 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2017-08-08 22:10 - 2017-08-01 04:31 - 000212384 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2017-08-08 22:10 - 2017-08-01 04:31 - 000176024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll 2017-08-08 22:10 - 2017-08-01 04:30 - 000723680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2017-08-08 22:10 - 2017-08-01 04:30 - 000411040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2017-08-08 22:10 - 2017-08-01 04:30 - 000410160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2017-08-08 22:10 - 2017-08-01 04:30 - 000315288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2017-08-08 22:10 - 2017-08-01 04:30 - 000182688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2017-08-08 22:10 - 2017-08-01 04:30 - 000143736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2017-08-08 22:10 - 2017-08-01 04:30 - 000082336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys 2017-08-08 22:10 - 2017-08-01 04:26 - 000204192 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll 2017-08-08 22:10 - 2017-08-01 04:20 - 002956288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-08-08 22:10 - 2017-08-01 04:20 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2017-08-08 22:10 - 2017-08-01 04:20 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2017-08-08 22:10 - 2017-08-01 04:18 - 013841408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2017-08-08 22:10 - 2017-08-01 04:18 - 002199552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2017-08-08 22:10 - 2017-08-01 04:17 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tokenbinding.dll 2017-08-08 22:10 - 2017-08-01 04:16 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2017-08-08 22:10 - 2017-08-01 04:14 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sscore.dll 2017-08-08 22:10 - 2017-08-01 04:13 - 020504064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-08-08 22:10 - 2017-08-01 04:13 - 000364032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2017-08-08 22:10 - 2017-08-01 04:13 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdeploy.dll 2017-08-08 22:10 - 2017-08-01 04:12 - 019336192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-08-08 22:10 - 2017-08-01 04:12 - 000229888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll 2017-08-08 22:10 - 2017-08-01 04:10 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2017-08-08 22:10 - 2017-08-01 04:09 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2017-08-08 22:10 - 2017-08-01 04:08 - 000267264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll 2017-08-08 22:10 - 2017-08-01 04:07 - 011870208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-08-08 22:10 - 2017-08-01 04:07 - 005961728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2017-08-08 22:10 - 2017-08-01 04:07 - 002671616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2017-08-08 22:10 - 2017-08-01 04:06 - 000798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2017-08-08 22:10 - 2017-08-01 04:04 - 006269440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-08-08 22:10 - 2017-08-01 04:04 - 003656192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-08-08 22:10 - 2017-08-01 04:03 - 001627136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-08-08 22:10 - 2017-08-01 03:57 - 023677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-08-08 22:10 - 2017-08-01 03:45 - 003670016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-08-08 22:10 - 2017-08-01 03:45 - 001275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2017-08-08 22:10 - 2017-08-01 03:45 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2017-08-08 22:10 - 2017-08-01 03:45 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2017-08-08 22:10 - 2017-08-01 03:44 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2017-08-08 22:10 - 2017-08-01 03:44 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmclr.sys 2017-08-08 22:10 - 2017-08-01 03:44 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2017-08-08 22:10 - 2017-08-01 03:42 - 002199552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2017-08-08 22:10 - 2017-08-01 03:41 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll 2017-08-08 22:10 - 2017-08-01 03:41 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2017-08-08 22:10 - 2017-08-01 03:41 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tokenbinding.dll 2017-08-08 22:10 - 2017-08-01 03:40 - 017366528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2017-08-08 22:10 - 2017-08-01 03:40 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll 2017-08-08 22:10 - 2017-08-01 03:39 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscore.dll 2017-08-08 22:10 - 2017-08-01 03:38 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdeploy.dll 2017-08-08 22:10 - 2017-08-01 03:38 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll 2017-08-08 22:10 - 2017-08-01 03:37 - 000582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll 2017-08-08 22:10 - 2017-08-01 03:37 - 000433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2017-08-08 22:10 - 2017-08-01 03:37 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll 2017-08-08 22:10 - 2017-08-01 03:36 - 023681536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-08-08 22:10 - 2017-08-01 03:35 - 000692736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2017-08-08 22:10 - 2017-08-01 03:34 - 000805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2017-08-08 22:10 - 2017-08-01 03:33 - 001269760 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2017-08-08 22:10 - 2017-08-01 03:33 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll 2017-08-08 22:10 - 2017-08-01 03:32 - 007336960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2017-08-08 22:10 - 2017-08-01 03:32 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2017-08-08 22:10 - 2017-08-01 03:31 - 012786176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-08-08 22:10 - 2017-08-01 03:31 - 004445696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2017-08-08 22:10 - 2017-08-01 03:31 - 001396736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2017-08-08 22:10 - 2017-08-01 03:30 - 008209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-08-08 22:10 - 2017-08-01 03:30 - 003377664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2017-08-08 22:10 - 2017-08-01 03:30 - 002055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-08-08 22:10 - 2017-08-01 03:30 - 001052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2017-08-08 22:10 - 2017-08-01 03:30 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2017-08-08 22:10 - 2017-08-01 03:28 - 004730368 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-08-08 22:10 - 2017-08-01 03:28 - 002516480 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2017-08-08 22:10 - 2017-08-01 03:27 - 001802752 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-08-08 22:10 - 2017-08-01 03:27 - 000574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll 2017-08-08 22:10 - 2017-08-01 03:27 - 000482816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2017-08-08 22:10 - 2017-08-01 03:26 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2017-08-08 22:10 - 2017-08-01 03:25 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll 2017-08-08 22:10 - 2017-08-01 03:25 - 000194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2017-08-08 22:10 - 2017-08-01 03:25 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswdat10.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000641536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswstr10.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrepl40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000518144 _____ C:\WINDOWS\SysWOW64\msjetoledb40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjtes40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstext40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll 2017-08-08 22:10 - 2017-08-01 00:45 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjter40.dll 2017-08-07 09:42 - 2017-08-09 12:54 - 002019776 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-08-06 20:29 - 2017-08-06 20:29 - 000000000 ___HD C:\$Windows.~WS 2017-08-06 15:17 - 2017-08-06 15:17 - 000000000 ____D C:\Users\Tester\AppData\Local\Comms 2017-08-06 15:11 - 2017-08-06 15:24 - 000000000 ____D C:\Users\Tester\AppData\LocalLow\Mozilla 2017-08-06 15:11 - 2017-08-06 15:21 - 000000000 ____D C:\Users\Tester\AppData\Local\Mozilla 2017-08-06 15:11 - 2017-08-06 15:11 - 000000000 ____D C:\Users\Tester\AppData\Roaming\Mozilla 2017-08-06 15:06 - 2017-08-06 15:06 - 000000000 ____D C:\Users\Tester\AppData\Local\NVIDIA Corporation 2017-08-06 15:05 - 2017-08-06 15:05 - 000003288 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 2017-08-06 15:05 - 2017-08-06 15:05 - 000002392 _____ C:\Users\Tester\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-08-06 15:05 - 2017-08-06 15:05 - 000000000 ___RD C:\Users\Tester\OneDrive 2017-08-06 15:04 - 2017-08-06 15:41 - 000000000 ____D C:\Users\Tester 2017-08-06 15:04 - 2017-08-06 15:20 - 000000000 ____D C:\Users\Tester\AppData\Local\Packages 2017-08-06 15:04 - 2017-08-06 15:04 - 000002330 _____ C:\Users\Tester\Desktop\Google Chrome.lnk 2017-08-06 15:04 - 2017-08-06 15:04 - 000000020 ___SH C:\Users\Tester\ntuser.ini 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\Vorlagen 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\Startmenü 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\Netzwerkumgebung 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\Lokale Einstellungen 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\Eigene Dateien 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\Druckumgebung 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\Documents\Eigene Videos 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\Documents\Eigene Musik 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\Documents\Eigene Bilder 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\AppData\Local\Verlauf 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\AppData\Local\Anwendungsdaten 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 _SHDL C:\Users\Tester\Anwendungsdaten 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 ____D C:\Users\Tester\AppData\Roaming\Adobe 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 ____D C:\Users\Tester\AppData\Local\VirtualStore 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 ____D C:\Users\Tester\AppData\Local\TileDataLayer 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 ____D C:\Users\Tester\AppData\Local\Publishers 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 ____D C:\Users\Tester\AppData\Local\Logitech 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 ____D C:\Users\Tester\AppData\Local\Google 2017-08-06 15:04 - 2017-08-06 15:04 - 000000000 ____D C:\Users\Tester\AppData\Local\ConnectedDevicesPlatform 2017-08-06 15:04 - 2016-08-12 17:23 - 000000000 ____D C:\Users\Tester\AppData\Roaming\Media Center Programs 2017-08-06 14:32 - 2017-08-06 14:50 - 000000000 ____D C:\Users\TechnoCrack\AppData\Roaming\vlc 2017-08-06 14:18 - 2017-08-06 20:51 - 000000000 ____D C:\ESD 2017-08-06 13:43 - 2017-08-06 13:43 - 000000000 ____D C:\$WINDOWS.~BT 2017-08-05 14:40 - 2017-08-05 14:40 - 000000000 ____D C:\Users\Camth\AppData\Roaming\Ulead Systems 2017-08-05 14:34 - 2017-08-05 14:34 - 000000000 ____D C:\Users\Camth\AppData\Roaming\Corel 2017-08-05 14:34 - 2017-08-05 14:34 - 000000000 ____D C:\Users\Camth\AppData\Local\Corel PaintShop Pro 2017-08-05 14:32 - 2017-08-05 14:32 - 000003466 _____ C:\WINDOWS\System32\Tasks\CorelUpdateHelperTaskCore 2017-08-05 14:32 - 2017-08-05 14:32 - 000000000 ____D C:\Users\TechnoCrack\AppData\Roaming\Corel 2017-08-05 14:32 - 2017-08-05 14:32 - 000000000 ____D C:\Program Files (x86)\Corel 2017-08-05 14:31 - 2017-08-05 14:32 - 000000000 ____D C:\ProgramData\Corel 2017-08-05 14:31 - 2017-08-05 14:32 - 000000000 ____D C:\Program Files\Corel 2017-08-05 14:31 - 2017-08-05 14:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel PaintShop Pro X9 2017-08-04 21:29 - 2017-08-06 20:51 - 000000000 ____D C:\WINDOWS\Panther 2017-08-04 18:44 - 2017-08-10 15:50 - 000101824 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2017-08-04 18:44 - 2017-08-09 18:40 - 000253888 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MB3SwissArmy.sys 2017-08-04 18:44 - 2017-08-04 18:44 - 000000000 ____D C:\Users\TechnoCrack\AppData\Local\DBG 2017-08-04 18:44 - 2017-08-04 18:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-08-04 17:20 - 2017-08-04 17:20 - 000000000 ____D C:\Users\Camth\AppData\Roaming\DVDVideoSoft 2017-08-04 17:20 - 2017-08-04 17:20 - 000000000 ____D C:\ProgramData\DigitalWave.ApplicationUpdater_files 2017-08-04 17:20 - 2017-08-04 17:20 - 000000000 ____D C:\Program Files (x86)\FreeCodecPack 2017-08-04 17:19 - 2017-08-04 17:26 - 000000000 ____D C:\Users\TechnoCrack\AppData\Roaming\DVDVideoSoft 2017-08-03 23:03 - 2017-08-03 23:03 - 000003738 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification 2017-08-03 23:02 - 2017-08-03 23:02 - 000000000 ____D C:\Users\TechnoCrack\AppData\LocalLow\Intel 2017-08-03 23:01 - 2017-08-03 23:01 - 000000000 ____D C:\Users\TechnoCrack\Intel 2017-08-02 22:10 - 2017-08-02 22:10 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2017-08-02 22:10 - 2017-03-10 23:17 - 000536864 _____ C:\WINDOWS\system32\vulkan-1.dll 2017-08-02 22:10 - 2017-03-10 23:17 - 000525600 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2017-08-02 22:10 - 2017-03-10 23:17 - 000254240 _____ C:\WINDOWS\system32\vulkaninfo.exe 2017-08-02 22:10 - 2017-03-10 23:17 - 000233760 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2017-08-02 22:09 - 2017-07-19 02:40 - 040239736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 035844728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 035314296 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 028960376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 013655672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 012451424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 012133112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 011591576 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 010487760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 009982968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 004163520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 003595896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 001988216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438494.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 001598072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438494.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 001278528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 001276992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 001068152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 001004992 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000996760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000995408 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000972920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000924280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000781544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000725112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000689992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000618744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000617416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000609912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000584312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000578056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000499136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2017-08-02 22:09 - 2017-07-19 02:40 - 000045976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2017-08-02 12:18 - 2017-08-02 12:18 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2017-08-02 12:18 - 2017-08-02 12:18 - 000000000 ____D C:\Program Files\Realtek 2017-08-02 12:18 - 2017-06-29 18:55 - 013122576 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO3064.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 012988336 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO4064.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 006410088 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICV3apo.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 005938904 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICV2apo.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 005593608 _____ (Nahimic Inc) C:\WINDOWS\system32\NAHIMICAPOlfx.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 003509256 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 003507688 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 003410832 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 003299816 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 003122656 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 003092336 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 002190976 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 001435136 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 001382232 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 001347136 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 001337640 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaeapo64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 001016928 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDHF64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000984912 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000965024 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000923736 _____ (Sony Corporation) C:\WINDOWS\system32\MISS_APO.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000877424 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SEHDHF32.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000873456 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000868176 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000866640 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000852128 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tosasfapo64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000737960 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000691680 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000677664 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000604792 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaemaxapo64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000532376 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000525768 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000467152 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000447712 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000447176 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\toseaeapo64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000387312 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000381408 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000343704 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000341144 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000341144 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000321712 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000321712 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000231912 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000221960 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000214832 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000209528 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000192976 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000166200 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000158696 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000151784 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000134200 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000110976 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000090912 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000088344 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000088312 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000084608 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000083624 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll 2017-08-02 12:18 - 2017-06-29 18:55 - 000075536 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 010536152 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSSTAPO.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 004059960 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 002291304 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO7064.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 001780616 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 001591056 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 001422920 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO6064.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 001334376 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxSpeechAPO64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 001213656 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 001166152 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000999848 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000727432 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000708312 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000680544 _____ (ICEpower a/s) C:\WINDOWS\system32\ICEsoundAPO64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000678176 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000618184 _____ (Knowles Acoustics ) C:\WINDOWS\system32\KAAPORT64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000514520 _____ (DTS) C:\WINDOWS\system32\DTSU2PLFX64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000500552 _____ (DTS) C:\WINDOWS\system32\DTSU2PGFX64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000428224 _____ (DTS) C:\WINDOWS\system32\DTSU2PREC64.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000406448 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2APIPCLL.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000366120 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\HMAPO.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000360344 _____ (Harman) C:\WINDOWS\system32\HMClariFi.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000330552 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000203840 _____ (Harman) C:\WINDOWS\system32\HMHVS.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000190928 _____ (Harman) C:\WINDOWS\system32\HMEQ_Voice.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000190928 _____ (Harman) C:\WINDOWS\system32\HMEQ.dll 2017-08-02 12:18 - 2017-06-29 18:54 - 000179592 _____ (Harman) C:\WINDOWS\system32\HMLimiter.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 005346992 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 002444680 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv201.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 001965808 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 001959600 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 001616680 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CX64APO.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 001554600 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOProp.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 001529136 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CX64Proxy.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 001508928 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 001326424 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOv251.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 001170872 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOvlldp.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000743960 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000504304 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000445392 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000441264 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000362048 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000327448 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000310416 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000272712 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000253896 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000253864 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll 2017-08-02 12:18 - 2017-06-29 18:53 - 000252872 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll 2017-08-02 12:18 - 2017-06-29 18:52 - 003677160 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl 2017-08-02 12:18 - 2017-06-29 18:52 - 003205120 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll 2017-08-02 12:18 - 2017-06-29 18:52 - 002110592 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll 2017-08-02 12:18 - 2017-06-29 18:52 - 000574752 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll 2017-08-02 12:18 - 2017-06-29 18:52 - 000258856 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll 2017-08-02 12:18 - 2017-06-29 18:52 - 000118592 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 072520712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat 2017-08-02 12:18 - 2017-06-29 18:51 - 014057248 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 007172912 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 007096184 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 006264632 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 002210304 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 002050176 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 001186832 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSstCApoPropPage.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 001133064 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 001003856 _____ (Nahimic Inc) C:\WINDOWS\system32\NahimicAPONSControl.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 000931616 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 000416504 _____ (Harman) C:\WINDOWS\system32\HMUI.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 000378384 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll 2017-08-02 12:18 - 2017-06-29 18:51 - 000154360 _____ (Harman) C:\WINDOWS\system32\HarmanAudioInterface.dll 2017-08-02 12:18 - 2017-06-29 18:50 - 000122320 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll 2017-08-02 12:18 - 2017-06-29 18:50 - 000118584 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll 2017-08-02 12:18 - 2017-06-29 18:50 - 000105304 _____ C:\WINDOWS\system32\audioLibVc.dll 2017-08-02 12:18 - 2017-06-29 03:05 - 012334923 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2017-08-02 12:18 - 2017-06-29 03:05 - 001920870 _____ C:\WINDOWS\system32\Drivers\rtkSSTsetting.dat 2017-08-02 12:05 - 2016-09-22 14:55 - 002839520 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll 2017-08-02 09:03 - 2017-07-28 07:30 - 001068720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2017-08-02 09:03 - 2017-07-28 07:25 - 002399728 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2017-08-02 09:03 - 2017-07-28 07:24 - 002327456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2017-08-02 09:03 - 2017-07-28 07:24 - 000455584 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2017-08-02 09:03 - 2017-07-28 07:24 - 000116280 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll 2017-08-02 09:03 - 2017-07-28 07:23 - 002969888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll 2017-08-02 09:03 - 2017-07-28 07:23 - 000723360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2017-08-02 09:03 - 2017-07-28 07:22 - 000923048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2017-08-02 09:03 - 2017-07-28 07:20 - 000279968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2017-08-02 09:03 - 2017-07-28 07:17 - 000660680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2017-08-02 09:03 - 2017-07-28 07:16 - 007326128 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2017-08-02 09:03 - 2017-07-28 07:15 - 005302968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll 2017-08-02 09:03 - 2017-07-28 07:15 - 000554400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2017-08-02 09:03 - 2017-07-28 07:14 - 000654976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2017-08-02 09:03 - 2017-07-28 07:13 - 006557520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2017-08-02 09:03 - 2017-07-28 07:13 - 002604248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2017-08-02 09:03 - 2017-07-28 07:13 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2017-08-02 09:03 - 2017-07-28 07:13 - 001033544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2017-08-02 09:03 - 2017-07-28 07:12 - 001337856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2017-08-02 09:03 - 2017-07-28 07:12 - 001325968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2017-08-02 09:03 - 2017-07-28 07:10 - 002679200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2017-08-02 09:03 - 2017-07-28 07:09 - 000529992 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2017-08-02 09:03 - 2017-07-28 07:09 - 000527976 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2017-08-02 09:03 - 2017-07-28 07:09 - 000387928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2017-08-02 09:03 - 2017-07-28 07:07 - 000805816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2017-08-02 09:03 - 2017-07-28 06:48 - 001839872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2017-08-02 09:03 - 2017-07-28 06:48 - 000100232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll 2017-08-02 09:03 - 2017-07-28 06:48 - 000096648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll 2017-08-02 09:03 - 2017-07-28 06:47 - 002259768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2017-08-02 09:03 - 2017-07-28 06:40 - 005820984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2017-08-02 09:03 - 2017-07-28 06:40 - 000551200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2017-08-02 09:03 - 2017-07-28 06:38 - 004213656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll 2017-08-02 09:03 - 2017-07-28 06:37 - 000519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2017-08-02 09:03 - 2017-07-28 06:36 - 020373408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-08-02 09:03 - 2017-07-28 06:36 - 006761568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-08-02 09:03 - 2017-07-28 06:36 - 005808640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2017-08-02 09:03 - 2017-07-28 06:36 - 002424024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2017-08-02 09:03 - 2017-07-28 06:36 - 001195760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2017-08-02 09:03 - 2017-07-28 06:36 - 000866808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2017-08-02 09:03 - 2017-07-28 06:36 - 000864248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2017-08-02 09:03 - 2017-07-28 06:36 - 000173104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll 2017-08-02 09:03 - 2017-07-28 06:36 - 000090464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.dll 2017-08-02 09:03 - 2017-07-28 06:35 - 000988168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2017-08-02 09:03 - 2017-07-28 06:35 - 000277432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shlwapi.dll 2017-08-02 09:03 - 2017-07-28 06:33 - 000967584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2017-08-02 09:03 - 2017-07-28 06:33 - 000583160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2017-08-02 09:03 - 2017-07-28 06:33 - 000414296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll 2017-08-02 09:03 - 2017-07-28 06:29 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll 2017-08-02 09:03 - 2017-07-28 06:27 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys 2017-08-02 09:03 - 2017-07-28 06:26 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\officecsp.dll 2017-08-02 09:03 - 2017-07-28 06:26 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2017-08-02 09:03 - 2017-07-28 06:26 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll 2017-08-02 09:03 - 2017-07-28 06:25 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyMATEnc.dll 2017-08-02 09:03 - 2017-07-28 06:25 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys 2017-08-02 09:03 - 2017-07-28 06:25 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll 2017-08-02 09:03 - 2017-07-28 06:24 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll 2017-08-02 09:03 - 2017-07-28 06:24 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll 2017-08-02 09:03 - 2017-07-28 06:23 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll 2017-08-02 09:03 - 2017-07-28 06:23 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2017-08-02 09:03 - 2017-07-28 06:22 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll 2017-08-02 09:03 - 2017-07-28 06:22 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Display.dll 2017-08-02 09:03 - 2017-07-28 06:22 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2017-08-02 09:03 - 2017-07-28 06:21 - 008333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2017-08-02 09:03 - 2017-07-28 06:21 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll 2017-08-02 09:03 - 2017-07-28 06:21 - 000527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2017-08-02 09:03 - 2017-07-28 06:21 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2017-08-02 09:03 - 2017-07-28 06:21 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll 2017-08-02 09:03 - 2017-07-28 06:20 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll 2017-08-02 09:03 - 2017-07-28 06:20 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2017-08-02 09:03 - 2017-07-28 06:20 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IpNatHlpClient.dll 2017-08-02 09:03 - 2017-07-28 06:19 - 001878016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2017-08-02 09:03 - 2017-07-28 06:19 - 000942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2017-08-02 09:03 - 2017-07-28 06:19 - 000847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2017-08-02 09:03 - 2017-07-28 06:19 - 000417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2017-08-02 09:03 - 2017-07-28 06:19 - 000412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2017-08-02 09:03 - 2017-07-28 06:19 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll 2017-08-02 09:03 - 2017-07-28 06:19 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe 2017-08-02 09:03 - 2017-07-28 06:19 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll 2017-08-02 09:03 - 2017-07-28 06:19 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll 2017-08-02 09:03 - 2017-07-28 06:18 - 001468416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2017-08-02 09:03 - 2017-07-28 06:18 - 001260544 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2017-08-02 09:03 - 2017-07-28 06:18 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2017-08-02 09:03 - 2017-07-28 06:18 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2017-08-02 09:03 - 2017-07-28 06:18 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll 2017-08-02 09:03 - 2017-07-28 06:17 - 006728192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2017-08-02 09:03 - 2017-07-28 06:17 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2017-08-02 09:03 - 2017-07-28 06:17 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2017-08-02 09:03 - 2017-07-28 06:16 - 001291776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2017-08-02 09:03 - 2017-07-28 06:16 - 001046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2017-08-02 09:03 - 2017-07-28 06:16 - 000470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2017-08-02 09:03 - 2017-07-28 06:16 - 000383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2017-08-02 09:03 - 2017-07-28 06:16 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qasf.dll 2017-08-02 09:03 - 2017-07-28 06:15 - 005721600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2017-08-02 09:03 - 2017-07-28 06:15 - 003204608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll 2017-08-02 09:03 - 2017-07-28 06:15 - 000586752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2017-08-02 09:03 - 2017-07-28 06:14 - 004396032 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2017-08-02 09:03 - 2017-07-28 06:14 - 001305088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2017-08-02 09:03 - 2017-07-28 06:14 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2017-08-02 09:03 - 2017-07-28 06:14 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2017-08-02 09:03 - 2017-07-28 06:14 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll 2017-08-02 09:03 - 2017-07-28 06:13 - 004535296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2017-08-02 09:03 - 2017-07-28 06:13 - 000932352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe 2017-08-02 09:03 - 2017-07-28 06:13 - 000665600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2017-08-02 09:03 - 2017-07-28 06:13 - 000636416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2017-08-02 09:03 - 2017-07-28 06:12 - 005557760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2017-08-02 09:03 - 2017-07-28 06:12 - 002939392 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2017-08-02 09:03 - 2017-07-28 06:12 - 000952832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2017-08-02 09:03 - 2017-07-28 06:12 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll 2017-08-02 09:03 - 2017-07-28 06:12 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2017-08-02 09:03 - 2017-07-28 06:12 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2017-08-02 09:03 - 2017-07-28 06:12 - 000337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2017-08-02 09:03 - 2017-07-28 06:11 - 003667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2017-08-02 09:03 - 2017-07-28 06:11 - 001357312 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2017-08-02 09:03 - 2017-07-28 06:11 - 001248768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2017-08-02 09:03 - 2017-07-28 06:10 - 001019904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2017-08-02 09:03 - 2017-07-28 06:10 - 000787456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2017-08-02 09:03 - 2017-07-28 06:10 - 000625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2017-08-02 09:03 - 2017-07-28 06:10 - 000564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsvcs.dll 2017-08-02 09:03 - 2017-07-28 06:09 - 005225984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2017-08-02 09:03 - 2017-07-28 06:08 - 004559360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2017-08-02 09:03 - 2017-07-28 06:08 - 004417024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2017-08-02 09:03 - 2017-07-28 06:08 - 004056064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2017-08-02 09:03 - 2017-07-28 06:08 - 000760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2017-08-02 09:03 - 2017-07-28 06:08 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2017-08-02 09:03 - 2017-07-28 06:07 - 002211840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2017-08-02 09:03 - 2017-07-28 06:07 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2017-08-02 09:03 - 2017-07-28 06:07 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll 2017-08-02 09:03 - 2017-07-28 06:07 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2017-08-02 09:03 - 2017-07-28 06:07 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DmApiSetExtImplDesktop.dll 2017-08-02 09:03 - 2017-07-28 06:06 - 001833984 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2017-08-02 09:03 - 2017-07-28 06:05 - 001536512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2017-08-02 09:03 - 2017-07-28 06:05 - 000892928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autochk.exe 2017-08-02 09:03 - 2017-07-28 06:05 - 000538112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll 2017-08-02 09:03 - 2017-07-28 06:02 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe 2017-08-02 09:03 - 2017-07-28 06:02 - 000853504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autofmt.exe 2017-08-02 09:03 - 2017-07-28 06:02 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll 2017-08-02 09:02 - 2017-07-28 07:24 - 000119904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll 2017-08-02 09:02 - 2017-07-28 07:16 - 000961952 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2017-08-02 09:02 - 2017-07-28 07:15 - 000872472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2017-08-02 09:02 - 2017-07-28 07:15 - 000715168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2017-08-02 09:02 - 2017-07-28 07:14 - 000318232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2017-08-02 09:02 - 2017-07-28 07:13 - 007907344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2017-08-02 09:02 - 2017-07-28 07:13 - 000192264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll 2017-08-02 09:02 - 2017-07-28 07:13 - 000104432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.dll 2017-08-02 09:02 - 2017-07-28 07:12 - 021353208 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-08-02 09:02 - 2017-07-28 07:12 - 000323936 _____ (Microsoft Corporation) C:\WINDOWS\system32\shlwapi.dll 2017-08-02 09:02 - 2017-07-28 07:10 - 001114528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2017-08-02 09:02 - 2017-07-28 06:31 - 003995136 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll 2017-08-02 09:02 - 2017-07-28 06:30 - 001722880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll 2017-08-02 09:02 - 2017-07-28 06:29 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2017-08-02 09:02 - 2017-07-28 06:26 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ofdeploy.exe 2017-08-02 09:02 - 2017-07-28 06:26 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\IpNatHlpClient.dll 2017-08-02 09:02 - 2017-07-28 06:25 - 003464704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll 2017-08-02 09:02 - 2017-07-28 06:24 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2017-08-02 09:02 - 2017-07-28 06:24 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2017-08-02 09:02 - 2017-07-28 06:24 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2017-08-02 09:02 - 2017-07-28 06:23 - 007931392 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-08-02 09:02 - 2017-07-28 06:22 - 000778240 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2017-08-02 09:02 - 2017-07-28 06:22 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2017-08-02 09:02 - 2017-07-28 06:22 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2017-08-02 09:02 - 2017-07-28 06:22 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll 2017-08-02 09:02 - 2017-07-28 06:22 - 000197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe 2017-08-02 09:02 - 2017-07-28 06:21 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll 2017-08-02 09:02 - 2017-07-28 06:21 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\qasf.dll 2017-08-02 09:02 - 2017-07-28 06:20 - 001015296 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2017-08-02 09:02 - 2017-07-28 06:19 - 000817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2017-08-02 09:02 - 2017-07-28 06:19 - 000687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2017-08-02 09:02 - 2017-07-28 06:19 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll 2017-08-02 09:02 - 2017-07-28 06:18 - 001298432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll 2017-08-02 09:02 - 2017-07-28 06:18 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2017-08-02 09:02 - 2017-07-28 06:18 - 000777216 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2017-08-02 09:02 - 2017-07-28 06:17 - 002805248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2017-08-02 09:02 - 2017-07-28 06:17 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll 2017-08-02 09:02 - 2017-07-28 06:17 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll 2017-08-02 09:02 - 2017-07-28 06:15 - 000986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2017-08-02 09:02 - 2017-07-28 06:15 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsvcs.dll 2017-08-02 09:02 - 2017-07-28 06:13 - 001293824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2017-08-02 09:02 - 2017-07-28 06:13 - 000972288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2017-08-02 09:02 - 2017-07-28 06:13 - 000809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2017-08-02 09:02 - 2017-07-28 06:12 - 004707840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2017-08-02 09:02 - 2017-07-28 06:12 - 002444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-08-02 09:02 - 2017-07-28 06:10 - 001706496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2017-08-02 09:02 - 2017-07-28 06:09 - 000971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe 2017-08-02 09:02 - 2017-07-28 06:09 - 000579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll 2017-08-02 09:02 - 2017-07-28 06:08 - 000600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2017-08-02 09:02 - 2017-07-28 06:06 - 000593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2017-08-02 09:02 - 2017-07-28 06:06 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll 2017-08-02 09:02 - 2017-07-28 06:05 - 001525760 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2017-08-02 09:02 - 2017-07-28 06:05 - 001087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2017-08-02 09:02 - 2017-07-28 06:05 - 000954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe 2017-08-02 09:02 - 2017-07-28 06:05 - 000926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\autofmt.exe 2017-08-02 09:02 - 2017-07-28 06:05 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll 2017-07-28 16:09 - 2017-07-28 16:09 - 000002293 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk 2017-07-27 18:42 - 2017-07-27 18:42 - 000000000 ____D C:\Users\TechnoCrack\AppData\Local\2Browse 2017-07-27 18:39 - 2017-07-27 18:47 - 000000000 ____D C:\Program Files\UVK - Ultra Virus Killer 2017-07-27 18:39 - 2017-07-27 18:39 - 000000000 ____D C:\ProgramData\UVK 2017-07-27 18:03 - 2017-07-27 18:03 - 000003372 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-848758703-1503385747-3576675771-1002 2017-07-25 20:10 - 2017-07-25 20:10 - 000000000 ____D C:\Users\Camth\AppData\Local\GOG.com 2017-07-25 19:35 - 2017-07-25 19:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher® 3 - Wild Hunt [GOG.com] 2017-07-25 19:34 - 2017-07-31 14:34 - 000000000 ____D C:\Program Files (x86)\GalaxyClient 2017-07-25 19:34 - 2017-07-25 19:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com 2017-07-25 19:34 - 2017-07-25 19:34 - 000000000 ____D C:\ProgramData\GOG.com 2017-07-23 13:13 - 2017-08-10 16:01 - 000000000 ____D C:\WINDOWS\System32\Tasks\Norton Security 2017-07-23 13:13 - 2017-07-23 13:13 - 000003388 _____ C:\WINDOWS\System32\Tasks\Norton WSC Integration 2017-07-14 23:09 - 2017-07-14 23:09 - 000000000 ____D C:\Users\TechnoCrack\AppData\Roaming\Nitro 2017-07-13 18:20 - 2017-08-02 12:18 - 000000000 ____D C:\WINDOWS\system32\DAX3 2017-07-13 18:18 - 2017-08-02 12:16 - 000000000 ____D C:\Program Files (x86)\Realtek 2017-07-13 17:32 - 2017-06-28 00:39 - 001988216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438476.dll 2017-07-13 17:32 - 2017-06-28 00:39 - 001597888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438476.dll 2017-07-13 17:32 - 2017-06-28 00:39 - 000000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json 2017-07-13 17:32 - 2017-06-28 00:39 - 000000669 _____ C:\WINDOWS\system32\nv-vk64.json 2017-07-12 19:43 - 2017-07-12 19:43 - 000000000 ____D C:\Users\Camth\AppData\Local\IO Interactive 2017-07-12 19:42 - 2017-07-12 19:42 - 000000000 ____D C:\Users\Camth\AppData\Roaming\Io Interactive 2017-07-11 19:29 - 2017-07-07 16:00 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll 2017-07-11 19:29 - 2017-07-07 09:27 - 001147288 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2017-07-11 19:29 - 2017-07-07 09:27 - 001024928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2017-07-11 19:29 - 2017-07-07 09:27 - 000965024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi 2017-07-11 19:29 - 2017-07-07 09:27 - 000821664 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe 2017-07-11 19:29 - 2017-07-07 09:27 - 000750560 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2017-07-11 19:29 - 2017-07-07 09:26 - 001065104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2017-07-11 19:29 - 2017-07-07 09:25 - 000899824 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2017-07-11 19:29 - 2017-07-07 09:24 - 000117664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2017-07-11 19:29 - 2017-07-07 09:22 - 001186464 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2017-07-11 19:29 - 2017-07-07 09:21 - 032688336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll 2017-07-11 19:29 - 2017-07-07 09:20 - 002021680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2017-07-11 19:29 - 2017-07-07 09:20 - 000519584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2017-07-11 19:29 - 2017-07-07 09:17 - 001017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2017-07-11 19:29 - 2017-07-07 09:14 - 001760264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2017-07-11 19:29 - 2017-07-07 09:14 - 001171032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2017-07-11 19:29 - 2017-07-07 09:13 - 000336320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe 2017-07-11 19:29 - 2017-07-07 09:13 - 000147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll 2017-07-11 19:29 - 2017-07-07 09:12 - 000228256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2017-07-11 19:29 - 2017-07-07 09:11 - 000094624 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2017-07-11 19:29 - 2017-07-07 09:10 - 001670496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2017-07-11 19:29 - 2017-07-07 09:10 - 000372128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2017-07-11 19:29 - 2017-07-07 09:10 - 000254168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2017-07-11 19:29 - 2017-07-07 09:09 - 000041376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 002229152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 001854880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 001693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 001458584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 001100704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 000992672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 000848280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 000846752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe 2017-07-11 19:29 - 2017-07-07 09:08 - 000844704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 000774560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 000699808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 000672672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 000506776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll 2017-07-11 19:29 - 2017-07-07 09:08 - 000399264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll 2017-07-11 19:29 - 2017-07-07 09:07 - 001106848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2017-07-11 19:29 - 2017-07-07 09:07 - 000058488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe 2017-07-11 19:29 - 2017-07-07 08:57 - 000626528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2017-07-11 19:29 - 2017-07-07 08:57 - 000125344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2017-07-11 19:29 - 2017-07-07 08:37 - 031652264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll 2017-07-11 19:29 - 2017-07-07 08:37 - 001339352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpmde.dll 2017-07-11 19:29 - 2017-07-07 08:31 - 001518088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2017-07-11 19:29 - 2017-07-07 08:31 - 000129184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2017-07-11 19:29 - 2017-07-07 08:30 - 000949920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2017-07-11 19:29 - 2017-07-07 08:29 - 000123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll 2017-07-11 19:29 - 2017-07-07 08:27 - 001640448 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2017-07-11 19:29 - 2017-07-07 08:27 - 000859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2017-07-11 19:29 - 2017-07-07 08:27 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll 2017-07-11 19:29 - 2017-07-07 08:27 - 000557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2017-07-11 19:29 - 2017-07-07 08:27 - 000443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll 2017-07-11 19:29 - 2017-07-07 08:27 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll 2017-07-11 19:29 - 2017-07-07 08:26 - 001529384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2017-07-11 19:29 - 2017-07-07 08:25 - 000035232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininitext.dll 2017-07-11 19:29 - 2017-07-07 08:24 - 001517472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll 2017-07-11 19:29 - 2017-07-07 08:23 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll 2017-07-11 19:29 - 2017-07-07 08:22 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2017-07-11 19:29 - 2017-07-07 08:21 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll 2017-07-11 19:29 - 2017-07-07 08:20 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll 2017-07-11 19:29 - 2017-07-07 08:19 - 007149056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2017-07-11 19:29 - 2017-07-07 08:19 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2017-07-11 19:29 - 2017-07-07 08:19 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll 2017-07-11 19:29 - 2017-07-07 08:18 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll 2017-07-11 19:29 - 2017-07-07 08:18 - 000548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2017-07-11 19:29 - 2017-07-07 08:18 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2017-07-11 19:29 - 2017-07-07 08:18 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll 2017-07-11 19:29 - 2017-07-07 08:17 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2017-07-11 19:29 - 2017-07-07 08:17 - 000422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2017-07-11 19:29 - 2017-07-07 08:16 - 000545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2017-07-11 19:29 - 2017-07-07 08:15 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2017-07-11 19:29 - 2017-07-07 08:14 - 008211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2017-07-11 19:29 - 2017-07-07 08:14 - 003784704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll 2017-07-11 19:29 - 2017-07-07 08:14 - 001448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2017-07-11 19:29 - 2017-07-07 08:14 - 000570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2017-07-11 19:29 - 2017-07-07 08:13 - 005892096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2017-07-11 19:29 - 2017-07-07 08:13 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2017-07-11 19:29 - 2017-07-07 08:12 - 003307008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-07-11 19:29 - 2017-07-07 08:12 - 002499584 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2017-07-11 19:29 - 2017-07-07 08:12 - 001713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2017-07-11 19:29 - 2017-07-07 08:12 - 001420800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2017-07-11 19:29 - 2017-07-07 08:12 - 001142272 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2017-07-11 19:29 - 2017-07-07 08:12 - 000706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2017-07-11 19:29 - 2017-07-07 08:11 - 003139584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2017-07-11 19:29 - 2017-07-07 08:11 - 002829824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2017-07-11 19:29 - 2017-07-07 08:11 - 002649600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2017-07-11 19:29 - 2017-07-07 08:11 - 002177024 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll 2017-07-11 19:29 - 2017-07-07 08:11 - 001888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2017-07-11 19:29 - 2017-07-07 08:11 - 001812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2017-07-11 19:29 - 2017-07-07 08:10 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapprovp.dll 2017-07-11 19:29 - 2017-07-07 08:09 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2017-07-11 19:29 - 2017-07-07 08:08 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2017-07-11 19:29 - 2017-07-07 08:07 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2017-07-11 19:29 - 2017-07-07 08:07 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll 2017-07-11 19:29 - 2017-07-07 08:07 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll 2017-07-11 19:29 - 2017-07-07 08:07 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll 2017-07-11 19:29 - 2017-07-07 08:06 - 000412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2017-07-11 19:29 - 2017-07-07 08:06 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll 2017-07-11 19:29 - 2017-07-07 08:06 - 000205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll 2017-07-11 19:29 - 2017-07-07 08:05 - 000502784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll 2017-07-11 19:29 - 2017-07-07 08:05 - 000370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe 2017-07-11 19:29 - 2017-07-07 08:05 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2017-07-11 19:29 - 2017-07-07 08:04 - 001703424 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2017-07-11 19:29 - 2017-07-07 08:04 - 001403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll 2017-07-11 19:29 - 2017-07-07 08:04 - 000754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2017-07-11 19:29 - 2017-07-07 08:04 - 000506368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2017-07-11 19:29 - 2017-07-07 08:04 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll 2017-07-11 19:29 - 2017-07-07 08:03 - 006123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2017-07-11 19:29 - 2017-07-07 08:02 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2017-07-11 19:29 - 2017-07-07 08:01 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-07-11 19:29 - 2017-07-07 08:00 - 007596544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2017-07-11 19:29 - 2017-07-07 08:00 - 002588160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll 2017-07-11 19:29 - 2017-07-07 08:00 - 001565184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2017-07-11 19:29 - 2017-07-07 07:59 - 001494016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2017-07-11 19:29 - 2017-07-07 07:59 - 001355264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll 2017-07-11 19:29 - 2017-07-07 07:58 - 002782720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2017-07-11 19:29 - 2017-07-07 07:58 - 002298368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2017-07-11 19:29 - 2017-07-07 07:58 - 001237504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2017-07-11 19:29 - 2017-07-07 07:55 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll 2017-07-11 19:29 - 2017-07-07 07:55 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2017-07-11 19:29 - 2017-07-07 07:53 - 001301504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll 2017-07-11 19:29 - 2017-07-07 07:53 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe 2017-07-11 19:29 - 2017-07-02 00:52 - 000031932 _____ C:\WINDOWS\system32\edgehtmlpluginpolicy.bin 2017-07-11 19:29 - 2017-06-20 08:18 - 001564576 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-07-11 19:29 - 2017-06-20 08:18 - 000096672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe.bkp7 2017-07-11 19:29 - 2017-06-20 08:17 - 000629152 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2017-07-11 19:29 - 2017-06-20 08:17 - 000544160 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2017-07-11 19:29 - 2017-06-20 08:17 - 000334240 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2017-07-11 19:29 - 2017-06-20 08:17 - 000136096 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-07-11 19:29 - 2017-06-20 08:17 - 000034720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2017-07-11 19:29 - 2017-06-20 08:16 - 001214880 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-07-11 19:29 - 2017-06-20 08:16 - 000335776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2017-07-11 19:29 - 2017-06-20 08:15 - 000233376 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2017-07-11 19:29 - 2017-06-20 08:11 - 001395152 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2017-07-11 19:29 - 2017-06-20 08:11 - 000411992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2017-07-11 19:29 - 2017-06-20 08:10 - 001930320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2017-07-11 19:29 - 2017-06-20 08:08 - 001242528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2017-07-11 19:29 - 2017-06-20 08:05 - 001057832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2017-07-11 19:29 - 2017-06-20 08:04 - 004847424 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2017-07-11 19:29 - 2017-06-20 08:03 - 000179608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll 2017-07-11 19:29 - 2017-06-20 08:03 - 000102312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe 2017-07-11 19:29 - 2017-06-20 08:02 - 001055648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2017-07-11 19:29 - 2017-06-20 08:02 - 000426912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2017-07-11 19:29 - 2017-06-20 08:00 - 000558920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2017-07-11 19:29 - 2017-06-20 08:00 - 000255904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2017-07-11 19:29 - 2017-06-20 08:00 - 000142752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2017-07-11 19:29 - 2017-06-20 07:59 - 001220072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2017-07-11 19:29 - 2017-06-20 07:59 - 000583304 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2017-07-11 19:29 - 2017-06-20 07:59 - 000467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2017-07-11 19:29 - 2017-06-20 07:58 - 000833160 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2017-07-11 19:29 - 2017-06-20 07:58 - 000406072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll 2017-07-11 19:29 - 2017-06-20 07:58 - 000203168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2017-07-11 19:29 - 2017-06-20 07:34 - 000192416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2017-07-11 19:29 - 2017-06-20 07:16 - 000970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll 2017-07-11 19:29 - 2017-06-20 07:16 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll 2017-07-11 19:29 - 2017-06-20 07:15 - 001620368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2017-07-11 19:29 - 2017-06-20 07:15 - 000455104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll 2017-07-11 19:29 - 2017-06-20 07:14 - 001150784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2017-07-11 19:29 - 2017-06-20 07:14 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys 2017-07-11 19:29 - 2017-06-20 07:13 - 000787712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2017-07-11 19:29 - 2017-06-20 07:13 - 000216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll 2017-07-11 19:29 - 2017-06-20 07:13 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll 2017-07-11 19:29 - 2017-06-20 07:13 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgr.dll 2017-07-11 19:29 - 2017-06-20 07:13 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe 2017-07-11 19:29 - 2017-06-20 07:12 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2017-07-11 19:29 - 2017-06-20 07:12 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll 2017-07-11 19:29 - 2017-06-20 07:12 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2017-07-11 19:29 - 2017-06-20 07:11 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll 2017-07-11 19:29 - 2017-06-20 07:11 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2017-07-11 19:29 - 2017-06-20 07:10 - 000722432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2017-07-11 19:29 - 2017-06-20 07:10 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll 2017-07-11 19:29 - 2017-06-20 07:10 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll 2017-07-11 19:29 - 2017-06-20 07:10 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2017-07-11 19:29 - 2017-06-20 07:09 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgrSvc.dll 2017-07-11 19:29 - 2017-06-20 07:09 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll 2017-07-11 19:29 - 2017-06-20 07:09 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2017-07-11 19:29 - 2017-06-20 07:09 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe 2017-07-11 19:29 - 2017-06-20 07:09 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll 2017-07-11 19:29 - 2017-06-20 07:09 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll 2017-07-11 19:29 - 2017-06-20 07:09 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll 2017-07-11 19:29 - 2017-06-20 07:09 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2017-07-11 19:29 - 2017-06-20 07:09 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll 2017-07-11 19:29 - 2017-06-20 07:09 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll 2017-07-11 19:29 - 2017-06-20 07:08 - 004469840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2017-07-11 19:29 - 2017-06-20 07:08 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll 2017-07-11 19:29 - 2017-06-20 07:08 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll 2017-07-11 19:29 - 2017-06-20 07:08 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2017-07-11 19:29 - 2017-06-20 07:08 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2017-07-11 19:29 - 2017-06-20 07:08 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll 2017-07-11 19:29 - 2017-06-20 07:08 - 000274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2017-07-11 19:29 - 2017-06-20 07:07 - 002475136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2017-07-11 19:29 - 2017-06-20 07:07 - 000916992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2017-07-11 19:29 - 2017-06-20 07:07 - 000823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2017-07-11 19:29 - 2017-06-20 07:07 - 000757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2017-07-11 19:29 - 2017-06-20 07:07 - 000632832 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2017-07-11 19:29 - 2017-06-20 07:07 - 000626176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2017-07-11 19:29 - 2017-06-20 07:07 - 000621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2017-07-11 19:29 - 2017-06-20 07:07 - 000510976 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll 2017-07-11 19:29 - 2017-06-20 07:07 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2017-07-11 19:29 - 2017-06-20 07:07 - 000346016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2017-07-11 19:29 - 2017-06-20 07:07 - 000138656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll 2017-07-11 19:29 - 2017-06-20 07:06 - 000754592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2017-07-11 19:29 - 2017-06-20 07:06 - 000751104 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2017-07-11 19:29 - 2017-06-20 07:06 - 000455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2017-07-11 19:29 - 2017-06-20 07:06 - 000335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2017-07-11 19:29 - 2017-06-20 07:06 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2017-07-11 19:29 - 2017-06-20 07:06 - 000278944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll 2017-07-11 19:29 - 2017-06-20 07:06 - 000253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll 2017-07-11 19:29 - 2017-06-20 07:06 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll 2017-07-11 19:29 - 2017-06-20 07:05 - 002873344 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll 2017-07-11 19:29 - 2017-06-20 07:05 - 000873472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2017-07-11 19:29 - 2017-06-20 07:05 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2017-07-11 19:29 - 2017-06-20 07:05 - 000438096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2017-07-11 19:29 - 2017-06-20 07:05 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll 2017-07-11 19:29 - 2017-06-20 07:05 - 000364032 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2017-07-11 19:29 - 2017-06-20 07:05 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 002330520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 001818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 001425920 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe 2017-07-11 19:29 - 2017-06-20 07:04 - 001178528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 001177600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 001077496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 000400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 000181656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll 2017-07-11 19:29 - 2017-06-20 07:04 - 000049656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msasn1.dll 2017-07-11 19:29 - 2017-06-20 07:03 - 002077184 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2017-07-11 19:29 - 2017-06-20 07:03 - 000443728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2017-07-11 19:29 - 2017-06-20 07:02 - 001121928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2017-07-11 19:29 - 2017-06-20 07:02 - 000681984 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-07-11 19:29 - 2017-06-20 07:02 - 000354400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll 2017-07-11 19:29 - 2017-06-20 07:02 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll 2017-07-11 19:29 - 2017-06-20 07:01 - 003803136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2017-07-11 19:29 - 2017-06-20 07:01 - 003332096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2017-07-11 19:29 - 2017-06-20 07:01 - 003059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2017-07-11 19:29 - 2017-06-20 07:01 - 001076736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2017-07-11 19:29 - 2017-06-20 07:01 - 000397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2017-07-11 19:29 - 2017-06-20 07:00 - 003057664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2017-07-11 19:29 - 2017-06-20 07:00 - 002597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2017-07-11 19:29 - 2017-06-20 07:00 - 002171392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2017-07-11 19:29 - 2017-06-20 06:59 - 001674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2017-07-11 19:29 - 2017-06-20 06:57 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2017-07-11 19:29 - 2017-06-20 06:57 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll 2017-07-11 19:29 - 2017-06-20 06:56 - 000985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2017-07-11 19:29 - 2017-06-20 06:56 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdmaud.drv 2017-07-11 19:29 - 2017-06-20 06:49 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll 2017-07-11 19:29 - 2017-06-20 06:49 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2017-07-11 19:29 - 2017-06-20 06:46 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll 2017-07-11 19:29 - 2017-06-20 06:45 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll 2017-07-11 19:29 - 2017-06-20 06:45 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2017-07-11 19:29 - 2017-06-20 06:43 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2017-07-11 19:29 - 2017-06-20 06:43 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll 2017-07-11 19:29 - 2017-06-20 06:43 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll 2017-07-11 19:29 - 2017-06-20 06:43 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2017-07-11 19:29 - 2017-06-20 06:43 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2017-07-11 19:29 - 2017-06-20 06:43 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll 2017-07-11 19:29 - 2017-06-20 06:42 - 000641024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll 2017-07-11 19:29 - 2017-06-20 06:42 - 000387584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll 2017-07-11 19:29 - 2017-06-20 06:42 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2017-07-11 19:29 - 2017-06-20 06:42 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2017-07-11 19:29 - 2017-06-20 06:42 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll 2017-07-11 19:29 - 2017-06-20 06:41 - 000734208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2017-07-11 19:29 - 2017-06-20 06:41 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2017-07-11 19:29 - 2017-06-20 06:41 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2017-07-11 19:29 - 2017-06-20 06:41 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2017-07-11 19:29 - 2017-06-20 06:41 - 000201216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll 2017-07-11 19:29 - 2017-06-20 06:40 - 000342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2017-07-11 19:29 - 2017-06-20 06:40 - 000247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2017-07-11 19:29 - 2017-06-20 06:40 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edputil.dll 2017-07-11 19:29 - 2017-06-20 06:40 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll 2017-07-11 19:29 - 2017-06-20 06:39 - 002814464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll 2017-07-11 19:29 - 2017-06-20 06:39 - 000969728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2017-07-11 19:29 - 2017-06-20 06:39 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2017-07-11 19:29 - 2017-06-20 06:39 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll 2017-07-11 19:29 - 2017-06-20 06:39 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2017-07-11 19:29 - 2017-06-20 06:38 - 001451008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2017-07-11 19:29 - 2017-06-20 06:38 - 001285120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll 2017-07-11 19:29 - 2017-06-20 06:38 - 001171968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe 2017-07-11 19:29 - 2017-06-20 06:38 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2017-07-11 19:29 - 2017-06-20 06:38 - 000648192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll 2017-07-11 19:29 - 2017-06-20 06:37 - 002008576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2017-07-11 19:29 - 2017-06-20 06:35 - 002679296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2017-07-11 19:29 - 2017-06-20 06:35 - 002132480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2017-07-11 19:29 - 2017-06-20 06:35 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll 2017-07-11 19:29 - 2017-06-20 06:34 - 002750464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2017-07-11 19:29 - 2017-06-20 06:34 - 001492480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2017-07-11 19:29 - 2017-06-20 06:31 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2017-07-11 19:29 - 2017-06-20 06:30 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdmaud.drv 2017-07-11 19:29 - 2017-06-20 06:30 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll 2017-07-11 19:29 - 2017-06-20 06:30 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2017-07-11 19:29 - 2017-06-20 06:28 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll Geändert von <harko (10.08.2017 um 18:02 Uhr) |
10.08.2017, 18:04 | #3 |
| Sicherheitsmail von web.de bekommenCode:
ATTFilter ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-08-10 18:31 - 2017-04-29 08:43 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2017-08-10 18:31 - 2016-08-12 19:56 - 000192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2017-08-10 16:10 - 2016-11-18 10:46 - 000000000 ____D C:\Users\Camth\AppData\LocalLow\Mozilla 2017-08-10 15:49 - 2017-04-29 08:44 - 000000000 ____D C:\ProgramData\NVIDIA 2017-08-10 15:49 - 2016-08-12 19:42 - 000000000 ____D C:\Users\Camth\AppData\Local\WiFi Guard 2017-08-10 15:15 - 2016-08-12 19:56 - 000000000 ____D C:\ProgramData\Malwarebytes 2017-08-10 14:50 - 2017-05-12 20:12 - 000000000 ____D C:\Program Files (x86)\GlassWire 2017-08-10 14:50 - 2016-12-03 09:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2017-08-10 12:22 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\AppReadiness 2017-08-10 11:44 - 2017-03-18 23:03 - 000000000 ___HD C:\Program Files\WindowsApps 2017-08-10 11:16 - 2016-12-04 23:11 - 000000000 ____D C:\Users\TechnoCrack\AppData\LocalLow\Mozilla 2017-08-10 11:15 - 2016-12-12 08:02 - 000000000 ____D C:\ProgramData\Soda PDF Desktop 2017-08-10 08:48 - 2017-04-29 08:44 - 000000000 ____D C:\Users\Camth 2017-08-09 18:44 - 2017-04-29 08:44 - 004680784 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-08-09 18:44 - 2017-03-20 06:41 - 002289052 _____ C:\WINDOWS\system32\perfh007.dat 2017-08-09 18:44 - 2017-03-20 06:41 - 000601534 _____ C:\WINDOWS\system32\perfc007.dat 2017-08-09 18:40 - 2017-04-29 08:48 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-08-09 00:46 - 2017-03-18 13:40 - 001310720 _____ C:\WINDOWS\system32\config\BBI 2017-08-09 00:45 - 2017-03-18 23:01 - 000000000 ____D C:\WINDOWS\INF 2017-08-09 00:03 - 2016-09-04 17:12 - 000000000 ____D C:\Users\Camth\AppData\Roaming\vlc 2017-08-08 22:13 - 2017-03-18 22:51 - 000000000 ____D C:\WINDOWS\CbsTemp 2017-08-08 22:12 - 2016-07-29 00:28 - 000000000 ____D C:\WINDOWS\system32\MRT 2017-08-08 22:11 - 2016-07-29 00:28 - 140394280 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-08-08 21:37 - 2016-09-04 15:22 - 000002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-08-07 10:01 - 2017-03-18 13:40 - 000008192 _____ C:\WINDOWS\system32\config\ELAM 2017-08-06 23:15 - 2017-01-06 19:45 - 000000000 ____D C:\Program Files (x86)\Origin 2017-08-06 20:51 - 2016-08-27 17:36 - 000000000 ____D C:\Users\TechnoCrack\AppData\Local\WiFi Guard 2017-08-06 20:24 - 2017-04-29 08:48 - 000003110 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner 2017-08-06 15:20 - 2017-03-18 23:03 - 000000000 ___RD C:\WINDOWS\PrintDialog 2017-08-06 15:20 - 2017-03-18 23:03 - 000000000 ___RD C:\WINDOWS\MiracastView 2017-08-06 15:04 - 2016-04-27 07:55 - 000000000 __RHD C:\Users\Public\AccountPictures 2017-08-06 14:33 - 2016-08-12 17:58 - 000000000 ____D C:\Users\TechnoCrack\AppData\Local\Packages 2017-08-06 14:25 - 2016-11-10 21:10 - 000000000 ____D C:\Users\TechnoCrack\AppData\Local\CrashDumps 2017-08-05 19:39 - 2016-09-04 15:25 - 000001166 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk 2017-08-05 19:39 - 2016-09-04 15:25 - 000000000 ____D C:\Program Files\paint.net 2017-08-05 16:08 - 2016-08-12 23:20 - 000000000 ____D C:\Users\Camth\AppData\Local\Turbine 2017-08-05 14:35 - 2016-10-28 18:23 - 000000000 ____D C:\Users\Camth\AppData\Local\CrashDumps 2017-08-05 09:46 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\rescache 2017-08-05 09:05 - 2016-08-12 17:32 - 000000000 ____D C:\Users\Camth\AppData\Local\Packages 2017-08-04 18:44 - 2016-09-19 08:32 - 000000000 ____D C:\ProgramData\MalwarebytesARW 2017-08-03 23:03 - 2016-07-28 11:27 - 000000000 ____D C:\ProgramData\Intel 2017-08-03 23:02 - 2016-07-29 01:42 - 000000000 ____D C:\Program Files\Intel 2017-08-03 23:01 - 2017-04-29 08:44 - 000000000 ____D C:\Users\TechnoCrack 2017-08-02 22:17 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\NDF 2017-08-02 22:10 - 2017-04-29 08:48 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-02 22:10 - 2017-04-29 08:48 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-02 22:10 - 2017-04-29 08:48 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-02 22:10 - 2017-04-29 08:48 - 000003696 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-02 22:10 - 2017-04-29 08:48 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-08-02 22:10 - 2016-07-28 11:43 - 000000000 ____D C:\Temp 2017-08-02 12:19 - 2016-07-28 10:02 - 000000000 ___HD C:\Program Files (x86)\Temp 2017-08-02 12:18 - 2017-04-29 08:44 - 000000000 ____D C:\WINDOWS\system32\DAX2 2017-08-02 09:16 - 2017-03-18 23:03 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-08-02 09:16 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2017-08-02 09:16 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2017-08-02 09:16 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2017-08-02 09:16 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\oobe 2017-08-02 09:16 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\ShellExperiences 2017-08-02 09:16 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2017-08-02 09:16 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-07-31 22:59 - 2016-08-12 23:20 - 000000000 ____D C:\Users\Camth\AppData\Local\Akamai 2017-07-31 18:36 - 2016-10-07 23:32 - 000000000 ____D C:\Users\Public\Documents\AdobeGC 2017-07-31 18:36 - 2016-08-14 16:43 - 000000000 ____D C:\Users\Camth\AppData\Local\Adobe 2017-07-31 17:15 - 2017-03-18 23:06 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-07-31 17:15 - 2017-03-18 23:06 - 000177648 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-07-30 18:59 - 2016-08-30 21:43 - 000000000 ____D C:\Users\TechnoCrack\AppData\Roaming\Notepad++ 2017-07-28 16:09 - 2016-09-04 15:55 - 000000000 ____D C:\Users\Camth\AppData\LocalLow\Google 2017-07-28 16:09 - 2016-09-04 15:22 - 000000000 ____D C:\Program Files (x86)\Google 2017-07-27 18:03 - 2017-04-29 08:55 - 000002389 _____ C:\Users\Camth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-07-27 18:03 - 2017-04-29 08:55 - 000000000 ___RD C:\Users\Camth\OneDrive 2017-07-25 19:35 - 2016-07-28 10:02 - 000000000 ____D C:\ProgramData\Package Cache 2017-07-24 16:21 - 2016-08-12 19:39 - 000000000 ____D C:\Program Files (x86)\TraXEx 2017-07-23 13:38 - 2016-08-12 16:53 - 000000000 ____D C:\Program Files\Common Files\AV 2017-07-23 13:13 - 2016-08-12 16:18 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security 2017-07-23 13:13 - 2016-08-12 16:18 - 000000000 ____D C:\WINDOWS\system32\Drivers\NSx64 2017-07-21 18:47 - 2016-08-12 16:18 - 000102568 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS 2017-07-21 18:47 - 2016-08-12 16:18 - 000008309 _____ C:\WINDOWS\system32\Drivers\SYMEVENT64x86.CAT 2017-07-19 02:40 - 2017-04-30 04:39 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat 2017-07-19 02:40 - 2017-03-18 09:29 - 004210032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2017-07-19 02:40 - 2017-03-18 09:29 - 003711328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2017-07-19 02:40 - 2017-03-18 09:29 - 001615448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll 2017-07-19 02:40 - 2017-03-18 09:29 - 000218712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2017-07-19 02:40 - 2017-03-18 09:29 - 000046463 _____ C:\WINDOWS\system32\nvinfo.pb 2017-07-19 01:24 - 2017-04-29 08:44 - 006463608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2017-07-19 01:24 - 2017-04-29 08:44 - 002479040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2017-07-19 01:24 - 2017-04-29 08:44 - 001762936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2017-07-19 01:24 - 2017-04-29 08:44 - 000549312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2017-07-19 01:24 - 2017-04-29 08:44 - 000392312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2017-07-19 01:24 - 2017-04-29 08:44 - 000081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2017-07-19 01:24 - 2017-04-29 08:44 - 000069752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2017-07-19 00:54 - 2017-04-29 08:44 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2017-07-14 20:37 - 2017-01-18 23:57 - 000000000 ____D C:\Program Files\MultiCommander (x64) 2017-07-13 18:12 - 2017-02-13 14:28 - 000000000 ____D C:\Users\TechnoCrack\AppData\Local\ElevatedDiagnostics 2017-07-13 17:03 - 2017-01-09 23:16 - 000000000 ____D C:\Users\Camth\AppData\Local\Discord 2017-07-13 17:03 - 2016-12-15 10:34 - 000000000 ____D C:\Program Files (x86)\WebSite X5 v12 - Home 2017-07-13 03:37 - 2017-04-29 08:44 - 008095171 _____ C:\WINDOWS\system32\nvcoproc.bin 2017-07-12 22:38 - 2017-01-06 19:46 - 000000000 ____D C:\Users\Camth\AppData\Roaming\Origin 2017-07-12 19:07 - 2016-08-12 23:57 - 000000000 ____D C:\Users\Camth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2017-07-12 18:55 - 2016-08-14 00:02 - 000000000 ____D C:\Users\Camth\AppData\Local\Ubisoft Game Launcher 2017-07-12 18:27 - 2017-01-06 19:44 - 000000000 ____D C:\ProgramData\Origin 2017-07-11 21:38 - 2017-03-18 23:03 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2017-07-11 21:38 - 2017-03-18 23:03 - 000000000 ___SD C:\WINDOWS\system32\F12 2017-07-11 21:38 - 2017-03-18 23:03 - 000000000 ___RD C:\Program Files\Windows Defender 2017-07-11 21:38 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\en-GB 2017-07-11 21:38 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\migwiz 2017-07-11 21:38 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\en-GB 2017-07-11 21:38 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\appraiser 2017-07-11 21:38 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files (x86)\Windows Defender ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2017-04-29 08:44 - 2017-04-29 08:44 - 000000000 ____H () C:\ProgramData\DP45977C.lfl 2016-11-15 11:09 - 2016-11-15 11:09 - 000000100 _____ () C:\ProgramData\StreamingMediaTechnologyLog.txt ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2017-08-03 09:44 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 09-08-2017 durchgeführt von TechnoCrack (10-08-2017 18:33:26) Gestartet von E:\Downloads Windows 10 Pro Version 1703 (X64) (2017-04-29 06:53:33) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-848758703-1503385747-3576675771-500 - Administrator - Disabled) BitBox (S-1-5-21-848758703-1503385747-3576675771-1003 - Limited - Enabled) Camth (S-1-5-21-848758703-1503385747-3576675771-1002 - Limited - Enabled) => C:\Users\Camth DefaultAccount (S-1-5-21-848758703-1503385747-3576675771-503 - Limited - Disabled) Gast (S-1-5-21-848758703-1503385747-3576675771-501 - Limited - Disabled) TechnoCrack (S-1-5-21-848758703-1503385747-3576675771-1001 - Administrator - Enabled) => C:\Users\TechnoCrack Tester (S-1-5-21-848758703-1503385747-3576675771-1004 - Limited - Enabled) => C:\Users\Tester ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Norton Security (Enabled - Up to date) {30744133-1E94-7B35-F4A3-82A5AEF1CBAA} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Norton Security (Enabled - Up to date) {8B15A0D7-38AE-74BB-CE13-B9D7D5768117} FW: Norton Security (Enabled) {084FC016-54FB-7A6D-DFFC-2B9050228CD1} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) „Der Herr der Ringe Online™“ v1301.0055.0535.4025 (HKLM-x32\...\12bbe590-c890-11d9-9669-0800200c9a66_is1) (Version: 1301.0055.0535.4025 - Turbine, Inc.) 64 Bit HP CIO Components Installer (HKLM\...\{C788B026-20BD-4E96-B698-533F1D6C5013}) (Version: 7.2.4 - Hewlett-Packard) Hidden 7-Zip 16.02 (x64) (HKLM\...\7-Zip) (Version: 16.02 - Igor Pavlov) Adobe Photoshop Elements 15 (HKLM-x32\...\{E2D8F773-2E59-45CA-B0EA-CFFA5354A9E7}) (Version: 15.0 - Adobe Systems Incorporated) Adobe Premiere Elements 15 (HKLM-x32\...\{FD45A9C9-02BE-4E62-8629-78DF29A10FF5}) (Version: 15.0 - Adobe Systems Incorporated) AI Suite 3 (HKLM-x32\...\{CD36E28B-6023-469A-91E7-049A2874EC13}) (Version: 1.01.46 - ASUSTeK Computer Inc.) Akamai NetSession Interface (HKU\S-1-5-21-848758703-1503385747-3576675771-1002\...\Akamai) (Version: - Akamai Technologies, Inc) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 384.94 - NVIDIA Corporation) Hidden Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.26.1 - Asmedia Technology) Authorizer 2.9.2d15 (HKLM\...\{F6762963-9AE5-4bc6-A70F-2D749F6AC02F}_is1) (Version: 2.9.2d15 - Propellerhead Software AB) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Blender (HKLM\...\{437221A8-91D1-42A0-9E04-0AD64B502374}) (Version: 2.78.1 - Blender Foundation) Browser in the Box (HKLM-x32\...\BitBox) (Version: 4.4.0-r244 - Sirrix AG) Browser-Maulkorb 3.0 (HKLM-x32\...\Browser-Maulkorb_is1) (Version: 3.0.1.0 - Alexander Miehlke Softwareentwicklung) calibre (HKLM-x32\...\{C94D271E-A338-48CD-A4F6-F031E928BC1F}) (Version: 2.80.0 - Kovid Goyal) Corel PaintShop Pro X9 (HKLM-x32\...\_{998717E5-1031-4D28-A143-48ADAF062E5F}) (Version: 19.0.0.96 - Corel Corporation) Crysis 2 Maximum Edition (HKLM\...\Steam App 108800) (Version: - Crytek Studios) Cura 2.4 (HKLM-x32\...\Cura 2.4) (Version: 2.4.0 - Ultimaker) Curse (HKLM-x32\...\{1F2611FB-6F69-4AA8-BECD-243BD8CB45F3}) (Version: 6.0.0.0 - Curse) CyberLink PowerDirector 14 (HKLM-x32\...\{6BADCD73-E925-46F7-A295-FF2448632728}) (Version: 14.0.3515.0 - CyberLink Corp.) Der Herr der Ringe Online™: Bullroarer v1400.0055.1429.1379 (HKLM-x32\...\e01f4d10-f2d0-11dd-ba2f-0800200c9a66_is1) (Version: 1400.0055.1429.1379 - Turbine, Inc.) Diablo II (HKLM-x32\...\Diablo II) (Version: 0.0.0.0 - Blizzard Entertainment) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Dragon Age™: Inquisition (HKLM-x32\...\{DC4C36DC-4E5B-4262-B0C7-157DF534B969}) (Version: 1.0.0.12 - Electronic Arts) Dungeons 2 (HKLM-x32\...\{A0B76573-077C-4C18-A587-8CC94CFEA9C9}) (Version: 1.6.1 - Realmforge Studios GmbH) Emergency Download Driver (HKLM-x32\...\{3F0F5AB4-C9CE-4226-8393-E9CFF8369D9D}) (Version: 1.1.16.1526 - Microsoft) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) FFU Loader Driver 1.0.0 (HKLM-x32\...\{7209d085-ed88-4a08-beb2-c49db2b9e838}) (Version: 1.0.0 - Microsoft) FFU Loader Driver 1.0.0 (HKLM-x32\...\{CA839C49-B3D1-4EA6-BB8A-21937B808771}) (Version: 1.0.0 - Microsoft) Hidden FireStorm version V2.0.0.006 (HKLM-x32\...\FireStorm_is1) (Version: V2.0.0.006 - ) G DATA USB KEYBOARD GUARD (HKLM-x32\...\{D8CBD59F-B29D-4E38-9D66-DEAEAB473FA9}) (Version: 1.1.0.4 - G DATA Software AG) Glary Utilities PRO 5.66 (HKLM-x32\...\Glary Utilities 5) (Version: 5.66.0.87 - Glarysoft Ltd) GlassWire 1.2 (remove only) (HKLM-x32\...\GlassWire 1.2) (Version: 1.2.100 - SecureMix LLC) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 60.0.3112.90 - Google Inc.) Google Earth Pro (HKLM-x32\...\{09A8EA8A-9C9D-45E4-B20C-3F13C2CCD32C}) (Version: 7.3.0.3830 - Google) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Guardians of Ember (HKLM\...\Steam App 463680) (Version: - Runewaker) HITMAN™ Demo (HKLM\...\Steam App 649780) (Version: - Io-Interactive) Horus (HKLM-x32\...\Horus) (Version: - ) HTTS 2.10 (HKLM-x32\...\HTTS 2.10) (Version: - ) ICA (HKLM-x32\...\{998717E5-1031-4D28-A143-48ADAF062E5F}) (Version: 19.0.0.96 - Corel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1047 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4274 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 4.0.0.36 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel(R) Corporation) Hidden IPM_Installer (HKLM\...\{B8C05FFE-C36F-4F17-AD20-739E4BC65AC9}) (Version: 2.2 - Your Company Name) Hidden IPM_PSP_COM64 (HKLM\...\{966E78A9-AB34-4FC6-BEDA-7D3F1F42121D}) (Version: 19.0.0.96 - Corel Corporation) Hidden JackKeane (HKLM-x32\...\JackKeane) (Version: - ) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden LinuxLive USB Creator (HKLM-x32\...\LinuxLive USB Creator) (Version: 2.9 - Thibaut Lauziere) LockHunter 3.1, 32/64 bit (HKLM\...\LockHunter_is1) (Version: - Crystal Rich Ltd) Logitech Gaming Software 8.84 (HKLM\...\Logitech Gaming Software) (Version: 8.84.15 - Logitech Inc.) Logitech Webcam-Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.80 - Logitech Inc.) LoiLo Game Recorder (HKLM\...\{89E4163C-BD19-45A9-BCEB-980741786799}_is1) (Version: 1.1.0.1 - LoiLo inc.) LOTRO Plugin Compendium (HKLM-x32\...\{3BF7818D-2482-4676-A237-915A11A97847}) (Version: 1.0.3 - Lunarwater) Lumia UEFI Blue Driver (HKLM-x32\...\{9D2A75FE-8CE1-4297-AEC1-A097D47BACE9}) (Version: 1.1.10.1526 - Microsoft) Magical Jelly Bean KeyFinder (HKLM-x32\...\KeyFinder_is1) (Version: 2.0.10.10 - Magical Jelly Bean) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Malwarebytes Anti-Ransomware version 0.9.18.797 (HKLM\...\{bebf7481-07c5-42f5-941e-2e9f78a76d56}_is1) (Version: 0.9.18.797 - Malwarebytes) Mass Effect™ (HKLM-x32\...\{44A570EE-FD93-4086-8997-2C38DFDE0019}) (Version: 1.2.20608.0 - Electronic Arts) Mass Effect™ 2 (HKLM-x32\...\{75D84EF7-0D8C-4e70-B3FA-7B42A5D4E0EB}) (Version: 1.2.1604.0 - Electronic Arts) Mass Effect™ 3 (HKLM-x32\...\{534A31BD-20F4-46b0-85CE-09778379663C}) (Version: 1.05.0.0 - Electronic Arts) Mass Effect™: Andromeda (HKLM-x32\...\{72BBCA87-9350-48BC-9E2F-6DBC1E80C993}) (Version: 1.0.0.9 - Electronic Arts) Medal of Honor: Pacific Assault™ (HKLM-x32\...\{56CFA833-F44F-4199-8C58-7F8B38F2BC7B}) (Version: 1.2.1.281 - Electronic Arts) MeshLab_64b 2016 (HKLM-x32\...\MeshLab_64b) (Version: 2016 - Paolo Cignoni - Guido Ranzuglia VCG - ISTI - CNR) Microsoft Application Compatibility Toolkit 5.6 (HKLM-x32\...\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}) (Version: 5.6.7324.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-848758703-1503385747-3576675771-1001\...\OneDriveSetup.exe) (Version: 17.3.6816.0313 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-848758703-1503385747-3576675771-1002\...\OneDriveSetup.exe) (Version: 17.3.6943.0625 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23918 (HKLM-x32\...\{2e085fd2-a3e4-4b39-8e10-6b8d35f55244}) (Version: 14.0.23918.0 - Microsoft Corporation) Mozilla Firefox 53.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 53.0 (x86 de)) (Version: 53.0 - Mozilla) Mozilla Firefox 54.0.1 (x64 de) (HKLM\...\Mozilla Firefox 54.0.1 (x64 de)) (Version: 54.0.1 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 53.0 - Mozilla) Mozilla Thunderbird 45.8.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 45.8.0 (x86 de)) (Version: 45.8.0 - Mozilla) MSI Afterburner 4.3.0 Beta 4 (HKLM-x32\...\Afterburner) (Version: 4.3.0 Beta 4 - MSI Co., LTD) MultiCommander (x64) (HKLM\...\MultiCommander x64) (Version: 6.9.1.2306 - Mathias Svensson) NewBlue Video Essentials for Windows (HKLM-x32\...\NewBlue Video Essentials for Windows) (Version: 3.0 - NewBlue) Nitro Pro 10 (HKLM\...\{13B44F37-0A3D-4E5A-9742-3E259574E97A}) (Version: 10.5.9.9 - Nitro) Norton Security (HKLM-x32\...\NS) (Version: 22.10.0.85 - Symantec Corporation) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.4.2 - Notepad++ Team) NVIDIA Graphics Driver 384.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 384.94 - NVIDIA Corporation) NVIDIA HD Audio Driver 1.3.34.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.27 - NVIDIA Corporation) NVIDIA PhysX System Software 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Oracle VM VirtualBox 5.1.0_Sirrix (HKLM\...\{3E94027F-171C-4D95-BAD6-AD97AB64A539}) (Version: 5.1.0 - Sirrix AG) Origin (HKLM-x32\...\Origin) (Version: 10.3.5.6379 - Electronic Arts, Inc.) paint.net (HKLM\...\{02D89175-E08F-401B-BA30-8B7512B57724}) (Version: 4.0.17 - dotPDN LLC) Path of Exile (HKLM\...\Steam App 238960) (Version: - Grinding Gear Games) Pazera Free Audio Extractor 2.3 (HKLM-x32\...\{6899C238-3E4A-4A04-B251-A0C9EDC7EDBC}_is1) (Version: 2.3 - Jacek Pazera) PCMark 8 (HKLM\...\{1C105B2F-E38F-4CE4-97F7-D5F9381AC85F}) (Version: 2.7.613.0 - Futuremark) Hidden PCMark 8 (HKLM-x32\...\{ffbe2963-bbe7-49f1-9c32-6fe7e17e5200}) (Version: 2.7.613.0 - Futuremark) Pillars of Eternity (HKLM\...\Steam App 291650) (Version: - Obsidian Entertainment) proDAD Adorage 3.0 (64bit) (HKLM\...\proDAD-Adorage-3.0) (Version: 3.0.114.1 - proDAD GmbH) PSPPContent (HKLM-x32\...\{91773E30-F29C-4381-854A-95281DEB8DA1}) (Version: 19.0.0.96 - Corel Corporation) Hidden PSPPHelp (HKLM-x32\...\{9F087D85-EDDC-4DC4-B665-AFDD3734D987}) (Version: 19.0.0.96 - Corel Corporation) Hidden PSPPro64 (HKLM\...\{9722764A-D7C1-483A-931C-9C0A95D5F4EB}) (Version: 19.0.0.96 - Corel Corporation) Hidden PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Rayman Origins (HKLM-x32\...\Uplay Install 80) (Version: - Ubisoft) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8186 - Realtek Semiconductor Corp.) Reason 9 9.5.0d241 (HKLM\...\Reason9.0Stable_64_is1) (Version: 9.5.0d241 - Propellerhead Software AB) Setup (HKLM-x32\...\{9E0054AB-F957-4177-850E-3541960DBD53}) (Version: 19.0.0.96 - Corel Corporation) Hidden SketchUp 2017 (HKLM\...\{C711666A-E8CC-4E2A-802F-BAA35E76045F}) (Version: 17.2.2555 - Trimble Navigation Limited) SoftMaker FreeOffice 2016 (HKLM-x32\...\{8EBB8452-274B-465D-8324-00B0832FBB05}) (Version: 1.0.3790 - SoftMaker Software GmbH) SoftPerfect WiFi Guard version 1.0.7 (HKLM\...\{38AFD787-4D2E-4442-92D2-7739F5F92CF4}_is1) (Version: 1.0.7 - SoftPerfect) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) SumatraPDF (HKLM\...\SumatraPDF) (Version: 3.1.2 - Krzysztof Kowalczyk) Syberia II (HKLM-x32\...\{BF1534B0-BE09-457E-A4CF-0EFC803125F2}) (Version: 1.0.0.16 - Microids) Telegram Desktop version 1.1.19 (HKU\S-1-5-21-848758703-1503385747-3576675771-1002\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 1.1.19 - Telegram Messenger LLP) The Book of Unwritten Tales (HKLM-x32\...\{6F40FD05-54E9-4388-9275-782AE6B913E8}_is1) (Version: - Nordic Games GmbH) The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.0.0 - GOG.com) Tom Clancy's The Division (HKLM-x32\...\Uplay Install 568) (Version: - Ubisoft) TraXEx 7.0 (HKLM-x32\...\TraXEx_is1) (Version: 7.0.5.0 - Alexander Miehlke Softwareentwicklung) Uplay (HKLM-x32\...\Uplay) (Version: 21.1 - Ubisoft) UVK - Ultra Virus Killer (HKLM\...\UVK - Ultra virus killer) (Version: 10.6.4.0 - Carifred) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation) Windows 10 Upgrade Assistant (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17387 - Microsoft Corporation) Windows Device Recovery Tool 3.11.34101 (HKLM-x32\...\{c4570e47-39e0-450b-a02c-d64965cbf0f0}) (Version: 3.11.34101 - Microsoft) Windows Driver Package - Arduino LLC (www.arduino.cc) Arduino USB Driver (01/04/2013 1.0.0.0) (HKLM\...\1E3EA5624DD04BEFECF3FFF6D3A21CCE9CD70A91) (Version: 01/04/2013 1.0.0.0 - Arduino LLC (www.arduino.cc)) Windows IP Over USB (HKLM-x32\...\{FF0EA481-42DB-A8AE-8356-48C09F7D953D}) (Version: 10.1.10586.15 - Microsoft Corporation) Windows-Treiberpaket - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.) Windows-Treiberpaket - Microsoft USBDevice (02/19/2016 1.0.0.0) (HKLM\...\01D4AA89568B59E5941907D403E3B682EE413AB7) (Version: 02/19/2016 1.0.0.0 - Microsoft) WinUsb CoInstallers (HKLM-x32\...\{9755918A-CDF8-4F1E-8453-6359CF1A330A}) (Version: 1.1.12.1526 - Microsoft) WinUSB Compatible ID Drivers (HKLM-x32\...\{A4A0B236-6046-4CAB-8177-1EAF61112C75}) (Version: 1.1.11.1526 - Microsoft) WinUSB Drivers ext (HKLM-x32\...\{29BAAF65-09E5-4F52-8D15-2FAF2E23A8DC}) (Version: 1.1.24.1544 - Microsoft) Wolfenstein: The New Order German Edition (HKLM\...\Steam App 288570) (Version: - MachineGames) Wolfenstein: The Old Blood German Edition (HKLM\...\Steam App 354830) (Version: - MachineGames) XMedia Recode Version 3.3.3.6 (HKLM-x32\...\{DDA3C325-47B2-4730-9672-BF3771C08799}_is1) (Version: 3.3.3.6 - XMedia Recode) XTUPackage (HKLM-x32\...\{84D11A20-6E7F-4FBB-A2FB-117FCF871040}) (Version: 1.0.0 - ASUSTeK COMPUTER INC.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\buShell.dll [2017-07-14] (Symantec Corporation) ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\buShell.dll [2017-07-14] (Symantec Corporation) ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\buShell.dll [2017-07-14] (Symantec Corporation) ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\buShell.dll [2017-07-14] (Symantec Corporation) ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\buShell.dll [2017-07-14] (Symantec Corporation) ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\buShell.dll [2017-07-14] (Symantec Corporation) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2016-05-18] () ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\buShell.dll [2017-07-14] (Symantec Corporation) ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => D:\Glary Utilities 5\x64\ContextHandler.dll [2016-06-23] (Glarysoft Ltd) ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2013-11-21] (Crystal Rich Ltd) ContextMenuHandlers1: [NP8ShellExtension] -> {9C4B85B8-956C-49BF-9BA5-101384E562B2} => C:\Program Files\Nitro\Pro 10\NPShellExtension.dll [2016-07-23] (Nitro PDF) ContextMenuHandlers1: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\NavShExt.dll [2017-07-15] (Symantec Corporation) ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => D:\Glary Utilities 5\x64\ContextHandler.dll [2016-06-23] (Glarysoft Ltd) ContextMenuHandlers2: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2013-11-21] (Crystal Rich Ltd) ContextMenuHandlers2: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\NavShExt.dll [2017-07-15] (Symantec Corporation) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamext.dll [2016-03-10] (Malwarebytes) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2013-11-21] (Crystal Rich Ltd) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-07-19] (NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\buShell.dll [2017-07-14] (Symantec Corporation) ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => D:\Glary Utilities 5\x64\ContextHandler.dll [2016-06-23] (Glarysoft Ltd) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamext.dll [2016-03-10] (Malwarebytes) ContextMenuHandlers6: [Symantec.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\NavShExt.dll [2017-07-15] (Symantec Corporation) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {045D7442-104E-4641-8762-195D8618613C} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {054DEB90-F168-4354-B4CA-5759439E16B1} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {06C2C2CD-4060-45C2-BD4C-8979A3E5DBE1} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {0C5C734E-C5BB-4321-88C3-511FEDE41D8C} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {0CD00B4B-668A-495D-81A3-8CC6E6706F13} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-07-19] (NVIDIA Corporation) Task: {17C3147D-CDD6-4092-BF4D-FFA48090C708} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {1ED6E84F-A04D-4B03-A7AC-081AC688CD65} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {20A9F6A5-0AF5-4D20-B71B-D5A31C9823CD} - \Microsoft\Windows\Setup\gwx\rundetector -> Keine Datei <==== ACHTUNG Task: {217671D1-2135-43D6-B9CF-45D05F30A0BD} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {296F18BC-7069-423A-8834-DF4FEFAC82D2} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {29D5E4A4-53B8-4A2E-AE64-989BE947FEEC} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {29E68324-F26D-4280-BEEC-0612DEA3619C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2BFD76BA-AE14-4F59-92DE-742CE5CCE11F} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {2E3C7DE0-429D-49E3-85A3-B5993AB208BA} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2FE4A192-DE52-4946-8D9B-1E6A161E314F} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-10-13] (Intel(R) Corporation) Task: {337B312F-C386-403C-B8C4-C11B76F06384} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-07-19] (NVIDIA Corporation) Task: {34CCDD47-B030-4988-86C4-8FC78B5D4E69} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {382C117D-1CAA-4F5B-B14C-9F321FF662B0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-09-04] (Google Inc.) Task: {3959EDB9-20E2-4DF1-8997-6541D5307589} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {3BBFC001-B49D-4511-A99D-9D727ECFE6EC} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3DCA4961-872D-4948-8BFD-7C4A3AAA88BB} - System32\Tasks\Norton Security\Norton Security Error Analyzer => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\SymErr.exe [2017-07-14] (Symantec Corporation) Task: {3FEF97D6-CA2B-4B56-BA8D-816585C20B2C} - \Microsoft\Windows\Setup\EOONotify -> Keine Datei <==== ACHTUNG Task: {40C13D21-9D1F-4A2D-BB16-F0A5A7DBC863} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {410ECD1A-CF81-4F91-B045-C7685E5BE7DE} - System32\Tasks\GU5SkipUAC => D:\Glary Utilities 5\Integrator.exe [2016-12-16] (Glarysoft Ltd) Task: {453A580C-B76A-4A73-9910-49C0F3B735D4} - System32\Tasks\MSIAfterburner => D:\MSI Afterburner\MSIAfterburner.exe [2016-05-30] () Task: {46E0FF10-74D0-44F6-8000-CD5374E67ACA} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [2016-07-28] () Task: {4FC415BC-4641-45D1-877D-1BCC8962A195} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {5173A86E-538F-4FF2-9B79-CDD4AE6C60DB} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-07-19] (NVIDIA Corporation) Task: {5A5C8DEF-DFE8-4F51-8283-2F95FD8CBD48} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {64AED523-383E-453A-BF05-EF35A2432240} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [2016-07-27] (ASUSTeK Computer Inc.) Task: {795D0BF8-B676-4897-8F5A-77973E00D121} - System32\Tasks\ASUS\Push Notice Server Execute => C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe Task: {7DB656D3-D94E-4615-B6A9-94DDC7E0C668} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-camthalion@outlook.de => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated) Task: {9728209E-AB0F-47EB-A1EF-5468E559CDF3} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {9DFC4772-47E4-4BFA-BEC6-CA3A22150211} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {AD05A21D-FB3D-41A5-BA8F-25EB6822F947} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {AD84E458-0626-4DBF-BE33-3EDC30374616} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {BD6EDBAE-E2B8-46C0-AF9C-A22DAF6449F8} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C3F9AD0C-84F4-42BB-921B-189CE6A3450C} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {C9679FD6-4BED-4E92-837B-9382D0F763E2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {CA875B0A-E1CF-4092-93DE-7ECC1AF0F3E2} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {CE500A8D-4139-4A3E-88EE-A2688E680FED} - System32\Tasks\GlaryInitialize 5 => D:\Glary Utilities 5\Initialize.exe [2016-12-16] (Glarysoft Ltd) Task: {D5EBF28C-A33D-4CBA-8355-0F457EE12498} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => C:\WINDOWS\system32\compattelrunner.exe Task: {DEEA6E4E-313E-4FDD-B680-A7C62E376173} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-07-19] (NVIDIA Corporation) Task: {E4734B18-93FF-46EB-BB14-670AE3EF8D45} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-07-19] (NVIDIA Corporation) Task: {E545723E-BB1D-4D28-9EF0-C9283AA18399} - System32\Tasks\Norton Security\Norton Security Error Processor => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\SymErr.exe [2017-07-14] (Symantec Corporation) Task: {E5D91C46-3E3F-4090-BAEE-4EA3E3FAF5CF} - System32\Tasks\ASUS\GpuFanHelper => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe [2016-03-07] (TODO: <Company name>) Task: {E6249BEE-2B6D-48E3-A928-845B9D34A1E4} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\WSCStub.exe [2017-07-15] (Symantec Corporation) Task: {E6C55794-A566-4496-A4FA-2B2B9783608B} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {EA138705-041A-4248-A56A-B5657A10498E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-09-04] (Google Inc.) Task: {EC11A6F7-343D-49E9-A974-A3716157F2C1} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\WINDOWS\system32\compattelrunner.exe Task: {F06B48A9-029B-4327-80D6-88117A65C3BC} - System32\Tasks\Norton Security\Norton Security Autofix => C:\Program Files (x86)\Norton Security\Engine\22.10.0.85\SymErr.exe [2017-07-14] (Symantec Corporation) Task: {F36FEF42-3D98-48DE-B8C2-0880F0E16F21} - System32\Tasks\CorelUpdateHelperTaskCore => C:\Program Files (x86)\Corel\CUH\v2\CUH.exe [2016-06-29] (Corel Corporation) Task: {FC15343D-FE6D-49E5-85E7-271D253D8BC6} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton Security\Upgrade.exe [2017-07-15] (Symantec Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> -user-agent="Mozilla/5.0 (Windows; U; Windows NT 10.0; Win64; x64; en-US) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/59.0.3071.115 Anonymisiert durch AlMiSoft Browser-Maulkorb 60338733" ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2017-03-18 22:58 - 2017-03-18 22:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2016-08-30 20:20 - 2013-04-07 14:37 - 000081920 _____ () C:\Program Files (x86)\TraXEx\Integration\CppShellExtContextMenuHandler.dll 2016-05-18 00:42 - 2016-05-18 00:42 - 000230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2017-03-18 22:59 - 2017-03-20 06:43 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-12-19 09:38 - 2016-12-19 09:38 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2010-12-23 12:06 - 2010-12-23 12:06 - 000028672 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\cx_Logging.pyd 2012-10-27 16:21 - 2012-10-27 16:21 - 000098816 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32api.pyd 2012-10-27 16:20 - 2012-10-27 16:20 - 000110080 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\pywintypes27.dll 2012-10-27 16:20 - 2012-10-27 16:20 - 000018432 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32event.pyd 2012-10-27 16:20 - 2012-10-27 16:20 - 000119808 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32file.pyd 2012-10-27 16:21 - 2012-10-27 16:21 - 000167936 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32gui.pyd 2012-10-27 16:20 - 2012-10-27 16:20 - 000024064 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32pipe.pyd 2012-10-27 16:20 - 2012-10-27 16:20 - 000035840 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32process.pyd 2012-10-27 16:20 - 2012-10-27 16:20 - 000017408 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32profile.pyd 2012-10-27 16:20 - 2012-10-27 16:20 - 000108544 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32security.pyd 2012-10-27 16:21 - 2012-10-27 16:21 - 000022528 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32ts.pyd 2012-10-27 16:22 - 2012-10-27 16:22 - 000364544 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\pythoncom27.dll 2012-10-27 16:23 - 2012-10-27 16:23 - 000320512 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32com.shell.shell.pyd 2014-06-30 17:03 - 2014-06-30 17:03 - 000046080 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\_socket.pyd 2014-06-30 17:04 - 2014-06-30 17:04 - 001160704 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\_ssl.pyd 2014-04-30 09:25 - 2014-04-30 09:25 - 000036352 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\_psutil_windows.pyd 2014-06-30 17:04 - 2014-06-30 17:04 - 000087552 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\_ctypes.pyd 2014-06-30 17:04 - 2014-06-30 17:04 - 000715264 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\_hashlib.pyd 2012-10-27 16:20 - 2012-10-27 16:20 - 000025600 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32cred.pyd 2014-04-14 16:06 - 2014-04-14 16:06 - 000055510 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\pacparser._pacparser.pyd 2014-04-14 16:06 - 2014-04-14 16:06 - 000976827 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\pacparser.dll 2012-10-27 16:20 - 2012-10-27 16:20 - 000011264 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32crypt.pyd 2012-10-27 16:20 - 2012-10-27 16:20 - 000064512 _____ () C:\Program Files (x86)\Sirrix AG\BitBox\bin\win32net.pyd ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MB3Service => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MB3Service => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: ========================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2016-08-12 18:17 - 000002887 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 localhost.localdomain 255.255.255.255 broadcasthost 127.0.0.1 local 0.0.0.0 vortex.data.microsoft.com 0.0.0.0 vortex-win.data.microsoft.com 0.0.0.0 telecommand.telemetry.microsoft.com 0.0.0.0 telecommand.telemetry.microsoft.com.nsatc.net 0.0.0.0 oca.telemetry.microsoft.com 0.0.0.0 oca.telemetry.microsoft.com.nsatc.net 0.0.0.0 sqm.telemetry.microsoft.com 0.0.0.0 sqm.telemetry.microsoft.com.nsatc.net 0.0.0.0 watson.telemetry.microsoft.com 0.0.0.0 watson.telemetry.microsoft.com.nsatc.net 0.0.0.0 redir.metaservices.microsoft.com 0.0.0.0 choice.microsoft.com 0.0.0.0 choice.microsoft.com.nsatc.net 0.0.0.0 df.telemetry.microsoft.com 0.0.0.0 reports.wes.df.telemetry.microsoft.com 0.0.0.0 wes.df.telemetry.microsoft.com 0.0.0.0 services.wes.df.telemetry.microsoft.com 0.0.0.0 sqm.df.telemetry.microsoft.com 0.0.0.0 telemetry.microsoft.com 0.0.0.0 watson.ppe.telemetry.microsoft.com 0.0.0.0 telemetry.appex.bing.net 0.0.0.0 telemetry.urs.microsoft.com 0.0.0.0 telemetry.appex.bing.net:443 0.0.0.0 settings-sandbox.data.microsoft.com 0.0.0.0 vortex-sandbox.data.microsoft.com 0.0.0.0 survey.watson.microsoft.com ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-848758703-1503385747-3576675771-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg HKU\S-1-5-21-848758703-1503385747-3576675771-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Camth\AppData\Local\Packages\55888ChristopheLavalle.DynamicTheme_jdggxwd41xcr0\LocalState\Bing\Huacachina_DE-DE10013158599_1920x1200.0.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run: => "WindowsDefender" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "ASUS AiChargerPlus Execute" HKLM\...\StartupApproved\Run32: => "AO Link Server" HKU\S-1-5-21-848758703-1503385747-3576675771-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-848758703-1503385747-3576675771-1001\...\StartupApproved\Run: => "GUDelayStartup" HKU\S-1-5-21-848758703-1503385747-3576675771-1002\...\StartupApproved\Run: => "NetBalancer" HKU\S-1-5-21-848758703-1503385747-3576675771-1002\...\StartupApproved\Run: => "CAHeadless" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{D96CD5F5-7C38-4C76-88C8-E031CB5D38F1}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{4F59A40C-5191-4DD7-AD96-6DDDBFBDF7D6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{9FC8972D-F1AB-4516-BE8E-47F9BF896D86}] => (Allow) D:\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe FirewallRules: [{507C3167-DF19-421C-AEC0-B97CA7A600D3}] => (Allow) D:\Steam\steamapps\common\Crysis 2 Game of the Year\bin32\Crysis2Launcher.exe FirewallRules: [UDP Query User{91DEDC58-8018-4CFC-A8B4-3DD24988E210}C:\program files\cura 2.4\cura.exe] => (Block) C:\program files\cura 2.4\cura.exe FirewallRules: [TCP Query User{8874930E-8B72-4BAD-A220-FD1D2CA0A8BB}C:\program files\cura 2.4\cura.exe] => (Block) C:\program files\cura 2.4\cura.exe FirewallRules: [{7723896F-84EC-4CEF-AC5A-E0C15CD2E16B}] => (Allow) D:\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{685F46B8-EA2B-4096-BE7B-D65E2430B026}] => (Allow) D:\Origin Games\Battlefield 3\bf3.exe FirewallRules: [{96D73CD8-98B4-441B-AC3B-3AFF9976E643}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{8B1B3CB0-0943-4EA0-A0FF-D2DE17A08F50}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{9DD730A8-8B5E-40C8-8764-1F924EE63D8E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{FB2404D3-A56D-4491-BDBB-E3E4484BD556}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{4A72A1E0-00C6-45B0-A1AD-1498756D3C8D}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{D44A1671-12DB-45E9-8860-5F5B49B702C1}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{2F72C229-3771-465E-A9B9-02B6EE9B57AF}] => (Allow) D:\Origin Games\Syberia II\Syberia2.exe FirewallRules: [{3DA7316D-3627-454C-B67D-AF3EBDDAD335}] => (Allow) D:\Origin Games\Syberia II\Syberia2.exe FirewallRules: [UDP Query User{E2A360B4-8660-4ECC-B27A-B5453F298634}C:\program files\logitech gaming software\lcore.exe] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{F211D7E8-3969-4B05-B2FD-92D106B17608}C:\program files\logitech gaming software\lcore.exe] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{BD2CFA9F-B22C-4BE6-B3D7-FE215041E197}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\Rayman Origins.exe FirewallRules: [{CE33938F-2ECE-4730-98BF-0672E5338DE0}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\Rayman Origins.exe FirewallRules: [{AEE9ABE2-D834-4D9A-80CF-A6008364A2E3}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\gu.exe FirewallRules: [{A6705664-A838-4414-91BE-1306D97C2D82}] => (Allow) D:\Ubisoft Game Launcher\games\Rayman Origins\gu.exe FirewallRules: [{5578E53A-4A83-45CC-9A42-23394640E1A5}] => (Allow) D:\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon_d3d11.exe FirewallRules: [{8DA85830-C233-4FF4-A3AE-1FB3D97468DC}] => (Allow) D:\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon_d3d11.exe FirewallRules: [{2EAA1E8D-B5A5-4FAD-92B9-DDA229A18C6A}] => (Allow) D:\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon_d3d11_b.exe FirewallRules: [{D51CA948-70D5-4A34-AD1C-B51DBD58D5B2}] => (Allow) D:\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon_d3d11_b.exe FirewallRules: [{7133FFFD-77D9-4739-A90B-3856DF092E1D}] => (Allow) D:\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon.exe FirewallRules: [{F02C7C02-8A60-468F-8564-DE62F883D008}] => (Allow) D:\Ubisoft Game Launcher\games\Far Cry 3 Blood Dragon\bin\fc3_blooddragon.exe FirewallRules: [{37983EBD-9F90-419B-883C-4D258CC976EE}] => (Allow) D:\Origin Games\Mass Effect\Binaries\MassEffect.exe FirewallRules: [{68A16B4F-1C77-428E-A563-BAF917084FA4}] => (Allow) D:\Origin Games\Mass Effect\Binaries\MassEffect.exe FirewallRules: [{94C2236A-A86A-4D45-8C7D-7F5ABBC3AAF0}] => (Allow) D:\Origin Games\Mass Effect 3\Binaries\Win32\MassEffect3.exe FirewallRules: [{51205D87-5937-47D9-AD75-DB4DE025CD37}] => (Allow) D:\Origin Games\Mass Effect 3\Binaries\Win32\MassEffect3.exe FirewallRules: [{B5C4F07A-BA92-4A5B-86E9-FB3AD8E482D7}] => (Allow) D:\Origin Games\Mass Effect 2\Binaries\MassEffect2.exe FirewallRules: [{49972C61-7117-4D7F-9E2A-4DCEBD50C2B0}] => (Allow) D:\Origin Games\Mass Effect 2\Binaries\MassEffect2.exe FirewallRules: [UDP Query User{E4BA19E1-034C-492D-8CD3-B31D61F4F47D}D:\steam\steamapps\common\guardians of ember\client_x86.exe] => (Block) D:\steam\steamapps\common\guardians of ember\client_x86.exe FirewallRules: [TCP Query User{A0300CA1-8783-4CA9-A264-9E46B4FE0725}D:\steam\steamapps\common\guardians of ember\client_x86.exe] => (Block) D:\steam\steamapps\common\guardians of ember\client_x86.exe FirewallRules: [UDP Query User{8994FCB4-72E9-40E2-902E-B727305C9F9D}D:\steam\steamapps\common\guardians of ember\exedir\ruplatform.exe] => (Block) D:\steam\steamapps\common\guardians of ember\exedir\ruplatform.exe FirewallRules: [TCP Query User{C27A409A-7987-4383-962E-EACFF02DB274}D:\steam\steamapps\common\guardians of ember\exedir\ruplatform.exe] => (Block) D:\steam\steamapps\common\guardians of ember\exedir\ruplatform.exe FirewallRules: [{C7C7B1D8-D66E-4495-814A-6AAF237F0685}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{AE7C857C-CDA8-4389-AE47-30FFC9834EF6}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{00630BC1-F165-47B5-8449-ED21528D490C}] => (Allow) D:\Steam\steamapps\common\Guardians of Ember\RuLauncher.exe FirewallRules: [{8D7894DC-F52B-4276-86E4-3BD4884A3CDA}] => (Allow) D:\Steam\steamapps\common\Guardians of Ember\RuLauncher.exe FirewallRules: [{C371F4CA-56A8-4942-B540-493EE36672D1}] => (Allow) D:\PowerDirector14\PowerDirector14\PDR10.EXE FirewallRules: [{584626CF-AAEB-47B0-BC13-6B5D2DF6F643}] => (Allow) D:\Diablo II Install\Downloader_Diablo2_Lord_of_Destruction_deDE.exe FirewallRules: [{EEBF5BE4-37A5-476F-8359-3CD41E5F7303}] => (Allow) D:\Diablo II Install\Downloader_Diablo2_Lord_of_Destruction_deDE.exe FirewallRules: [{5C871658-919A-4A42-8C10-6403A1CD187B}] => (Allow) D:\Diablo II Install\Downloader_Diablo2_deDE.exe FirewallRules: [{FBDA1BF0-2CB3-4C37-997F-891FD096D310}] => (Allow) D:\Diablo II Install\Downloader_Diablo2_deDE.exe FirewallRules: [{452E492E-FCE4-4C79-928E-A4DE9E63620F}] => (Allow) LPort=3724 FirewallRules: [{86A29917-68CF-4C9A-972E-1774C9138E68}] => (Allow) C:\Users\Camth\Downloads\Downloader_Diablo2_deDE.exe FirewallRules: [{7C7DECF4-3382-4F62-BB89-C02FFD3A95FD}] => (Allow) C:\Users\Camth\Downloads\Downloader_Diablo2_deDE.exe FirewallRules: [{715C2522-4BE3-43AD-B594-8B0C18AFB2D1}] => (Allow) C:\Program Files (x86)\Kalypso Media\Dungeons2\mono\bin\mono.exe FirewallRules: [{E5F942DA-84B8-4067-8525-95A3238FBB50}] => (Allow) D:\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe FirewallRules: [{0E942E51-A3F0-4BBE-85CC-EABC18DEA3C0}] => (Allow) D:\Steam\steamapps\common\Path of Exile\PathOfExileSteam.exe FirewallRules: [{4C639F21-E3FD-4378-8B0D-47566A47630A}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe FirewallRules: [{FE2861F5-4A46-482A-838B-F0EB767AFD19}] => (Allow) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe FirewallRules: [UDP Query User{D84379C6-DEB5-419C-8308-B4FA1C179950}C:\users\camth\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\camth\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{1C5AB840-1B1F-43E3-9225-168661E4A7A1}C:\users\camth\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\camth\appdata\local\akamai\netsession_win.exe FirewallRules: [{E01D10AA-8B70-4EE7-A28C-C127F4E0B08F}] => (Allow) D:\Steam\steamapps\common\Pillars of Eternity\PillarsOfEternity.exe FirewallRules: [{DC0A666D-2E31-4CC7-B4F9-FD96402B71FF}] => (Allow) D:\Steam\steamapps\common\Pillars of Eternity\PillarsOfEternity.exe FirewallRules: [{1C512A92-34EE-4E89-AB1E-E9DDD768DE78}] => (Allow) D:\Steam\steamapps\common\Wolfenstein.The.New.Order.DE\WolfNewOrder_x64.exe FirewallRules: [{1261A5A8-CB66-45C6-AB6D-11FF72C98098}] => (Allow) D:\Steam\steamapps\common\Wolfenstein.The.New.Order.DE\WolfNewOrder_x64.exe FirewallRules: [{68A8EB18-5D79-49B7-A944-B46AF9AF98D3}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{62FC52AF-ED32-4B2E-8D76-C2933D91A99B}] => (Allow) D:\Steam\bin\steamwebhelper.exe FirewallRules: [{33C4458F-3CA8-4A69-A120-BFBAB458A3AD}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{554BD4F6-2F31-4A8E-B9E6-69131E9009F1}] => (Allow) D:\Steam\Steam.exe FirewallRules: [{93D825AE-BDD9-4404-A157-BC070624ADD8}] => (Allow) D:\Tom Clancy's The Division\TheDivision.exe FirewallRules: [UDP Query User{1BD2BA74-59CE-42D7-8109-071D5FDEDFC7}C:\program files\logitech gaming software\lcore.exe] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{C2A5CA5F-2768-487F-BF18-BE506A856726}C:\program files\logitech gaming software\lcore.exe] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{696A6407-ECCE-4481-9630-5A7A83584038}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{9E427A85-29AC-4E16-A439-1339408A3CD1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E86D3ED6-514B-49CC-B329-A811575AAB56}] => (Allow) C:\Program Files (x86)\GlassWire\GWCtlSrv.exe FirewallRules: [{7CBD2C9E-ACDB-41CB-AA7C-AD3EB528A4E6}] => (Allow) C:\Program Files (x86)\GlassWire\GWCtlSrv.exe FirewallRules: [{A7058190-85F4-45C7-865F-3B1CB4513BFD}] => (Allow) D:\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [{8B1D8D43-3976-4199-A021-4996FBA37CA1}] => (Allow) D:\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [{014CD5B0-D40E-4963-844B-DE6B018BFCDD}] => (Allow) D:\Origin Games\Medal of Honor Pacific Assault\mohpa_setup.exe FirewallRules: [{8192008E-0283-4B1E-AB4C-39F21B7C7D36}] => (Allow) D:\Origin Games\Medal of Honor Pacific Assault\mohpa_setup.exe FirewallRules: [{3AFC0FE6-E887-4596-9444-6C890ACED738}] => (Allow) D:\Origin Games\Medal of Honor Pacific Assault\mohpa.exe FirewallRules: [{645BBF32-81CC-424B-8AD7-F185B5776B64}] => (Allow) D:\Origin Games\Medal of Honor Pacific Assault\mohpa.exe FirewallRules: [{10927964-0D77-4403-A403-FEBCC842358D}] => (Allow) D:\Origin Games\Mass Effect Andromeda\MassEffectAndromedaTrial.exe FirewallRules: [{2FCACA1B-70C0-446F-B9A9-E0028E7CDF41}] => (Allow) D:\Origin Games\Mass Effect Andromeda\MassEffectAndromedaTrial.exe FirewallRules: [{9F6FF8A2-44F1-4C29-AA82-04A5091069B3}] => (Allow) D:\Origin Games\Mass Effect Andromeda\MassEffectAndromeda.exe FirewallRules: [{B2B15D36-8A41-49CA-B9F4-19C172322CEF}] => (Allow) D:\Origin Games\Mass Effect Andromeda\MassEffectAndromeda.exe FirewallRules: [{F8CB53AF-71E1-4AFE-9E83-1D6FF6E42B3B}] => (Allow) D:\Steam\steamapps\common\Hitman™\Launcher.exe FirewallRules: [{0229E30D-ED1E-4BEB-B26F-EC1C9ECB96BC}] => (Allow) D:\Steam\steamapps\common\Hitman™\Launcher.exe FirewallRules: [{805CA3F7-0134-4AB7-97BC-025872FDADCF}] => (Allow) D:\Steam\steamapps\common\Wolfenstein.The.Old.Blood.DE\WolfOldBlood_x64.exe FirewallRules: [{3F85F4F0-B26A-4A0E-87AB-E48B10D963CD}] => (Allow) D:\Steam\steamapps\common\Wolfenstein.The.Old.Blood.DE\WolfOldBlood_x64.exe FirewallRules: [{0C46B51C-A4A2-4F12-AC58-0D02BABA0482}] => (Allow) C:\Program Files\UVK - Ultra Virus Killer\UVK_en64.exe FirewallRules: [{A9CD75DC-F270-4341-939E-CC3BC42ADFA2}] => (Allow) C:\Program Files\UVK - Ultra Virus Killer\UVK_en64.exe FirewallRules: [{2B9E4F7E-3494-4DB6-8AA9-55B690C54E60}] => (Allow) C:\Program Files\UVK - Ultra Virus Killer\UVK_en64.exe FirewallRules: [{0BBCB49D-21F1-456D-ABD3-19CF0A1805F0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.60.492.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{C18688B8-79CE-4482-92EE-1CBC7EFA52DB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.60.492.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{DDFB2E9F-2799-4739-A832-ED26817CAA33}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.60.492.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{681C65AA-14EA-4821-AB06-638B33A7107E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.60.492.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{20CC32D4-B3C3-405B-BDDE-B6A93153F7B6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.60.492.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{CC8865B0-AC43-4347-ADBA-419CDEB72481}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.60.492.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{DD6FE0C0-3C73-4898-BA1C-9C2BE90E313D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.60.492.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe FirewallRules: [{30422505-0B4F-4FFF-B4C6-9C0217F965B5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.60.492.0_x86__zpdnekdrzrea0\SpotifyWebHelper.exe FirewallRules: [{7E9D53A8-BC3E-434A-AF49-8C3123375CA6}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= 04-08-2017 17:19:50 DVDVideoSoftRestorePoint 05-08-2017 19:39:29 paint.net 4.0.17 08-08-2017 22:11:08 Windows Update 08-08-2017 22:11:16 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/09/2017 12:59:44 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: svchost.exe, Version: 10.0.15063.0, Zeitstempel: 0x02799ef5 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.15063.447, Zeitstempel: 0xa329d3a8 Ausnahmecode: 0xc0000409 Fehleroffset: 0x00000000000aa020 ID des fehlerhaften Prozesses: 0x1d4c Startzeit der fehlerhaften Anwendung: 0x01d310fdeb8e3c4e Pfad der fehlerhaften Anwendung: c:\windows\system32\svchost.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: e0c6f511-0d2a-4ede-a645-68993eeccf5a Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/06/2017 03:20:46 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MasterofSound) Description: Bei der Aktivierung der App „Microsoft.BingWeather_8wekyb3d8bbwe!App“ ist folgender Fehler aufgetreten: -2144927148. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Systemfehler: ============= Error: (08/10/2017 03:49:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "NitroUpdateService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/10/2017 03:49:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Origin Web Helper Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/10/2017 03:49:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "PnkBstrA" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/10/2017 03:49:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/10/2017 03:49:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Malwarebytes Anti-Ransomware Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts. Error: (08/10/2017 03:49:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "GlassWire Control Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/10/2017 03:49:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Cyberlink RichVideo64 Service(CRVS)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/10/2017 03:49:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "NVIDIA Telemetry Container" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 1000 Millisekunden durchgeführt: Neustart des Diensts. Error: (08/10/2017 03:49:57 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "PnkBstrB" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/10/2017 03:49:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Message Queuing" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-6700K CPU @ 4.00GHz Prozentuale Nutzung des RAM: 18% Installierter physikalischer RAM: 32708.33 MB Verfügbarer physikalischer RAM: 26684.56 MB Summe virtueller Speicher: 65476.33 MB Verfügbarer virtueller Speicher: 58955.05 MB ==================== Laufwerke ================================ Drive c: (System) (Fixed) (Total:237.81 GB) (Free:122.46 GB) NTFS Drive d: (Programme) (Fixed) (Total:447.13 GB) (Free:3.33 GB) NTFS Drive e: (Daten) (Fixed) (Total:931.51 GB) (Free:824.47 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: 7769FEEC) Partition: GPT. ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 447.1 GB) (Disk ID: 286BAED8) Partition 1: (Not Active) - (Size=447.1 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 931.5 GB) (Disk ID: 12832DE9) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
Themen zu Sicherheitsmail von web.de bekommen |
account, anti, automatische, automatischen, blockiert, browser, chromium, cleaner, festgestellt, file, gesperrt, heute, interne, internet, leer, log file, login, malwarebytes, morgen, nichts, ordner, passwort, schutz, security, sperre, zugriff |