Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 21.10.2014
Suchlauf-Zeit: 20:48:11
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.3.1025
Malware Datenbank: v2014.10.21.09
Rootkit Datenbank: v2014.10.20.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Philipp
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 311193
Verstrichene Zeit: 15 Min, 15 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(Keine schädliche Elemente erkannt)
Module: 0
(Keine schädliche Elemente erkannt)
Registrierungsschlüssel: 2
PUP.Optional.CinemaPlus, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Cinema-Plus-1.8cV09.10, Löschen bei Neustart, [0f4eb661a1db4ee8da0aea3d29da16ea],
PUP.Optional.FastStart.A, HKU\S-1-5-21-1145738533-22672879-546596692-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS, Löschen bei Neustart, [a3baea2dd0acd2643ce7be64e1224fb1],
Registrierungswerte: 1
PUP.Optional.FastStart.A, HKU\S-1-5-21-1145738533-22672879-546596692-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS|appid, faststartff@gmail.com, Löschen bei Neustart, [a3baea2dd0acd2643ce7be64e1224fb1]
Registrierungsdaten: 0
(Keine schädliche Elemente erkannt)
Ordner: 0
(Keine schädliche Elemente erkannt)
Dateien: 2
Spyware.Password, C:\ProgramData\msklapag.exe, In Quarantäne, [6feec156d3a96ec845b29042ad54d32d],
PUP.Optional.Solimba, C:\Users\Philipp\Downloads\iTunes.exe, In Quarantäne, [a5b87d9af98370c64751e7ea46bbe719],
Physische Sektoren: 0
(Keine schädliche Elemente erkannt)
(end) Code:
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=ef519c68d293804ea405a1710ab855ef
# engine=20711
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2014-10-21 08:24:30
# local_time=2014-10-21 10:24:30 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode_1='Avira Desktop'
# compatibility_mode=1810 16777213 100 99 10987 2367610 0 0
# compatibility_mode_1='Norton Internet Security'
# compatibility_mode=3597 16777213 100 100 997290 176519655 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 94 2167816 165552920 0 0
# scanned=217601
# found=40
# cleaned=0
# scan_time=3766
sh=8987148BCD34118DCD4F4B804832EBD6D1E9C8EB ft=0 fh=0000000000000000 vn="JS/SecurityDisabler.A.Gen evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Backup\C\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\prefs_21_10_2014_19_19_23.js"
sh=216382B557BE0EEDFF4409ABF56F5121269F633D ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\4e43efc6-7800-45b6-b4fe-e59f6e133573.crx.vir"
sh=6D67A0E6853718E5D055A13007F188F98910162E ft=1 fh=cbf8662043c79601 vn="Variante von Win32/Toolbar.CrossRider.BC evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\582bcf3e-0479-4ecd-a2ab-f7d0076f474e.exe.vir"
sh=4E29D5D6EE9E5D89911172D0C630991802BBF1A5 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\7351c70c-a94e-4808-9e43-ddeeb2b401c6.crx.vir"
sh=660BB24FC1C0B8186BDED7A9B465AFF218F57A08 ft=1 fh=038dcdddd6d96f1d vn="Variante von Win32/Toolbar.CrossRider.AX evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\becff530-de66-46db-aa96-7cd7d7d8c0ab-11.exe.vir"
sh=6EBF1017EAC2A0B71741FB239C12577128ACD0EF ft=1 fh=11bc445cb49e3796 vn="Variante von Win32/Toolbar.CrossRider.AY evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\becff530-de66-46db-aa96-7cd7d7d8c0ab-2.exe.vir"
sh=660BB24FC1C0B8186BDED7A9B465AFF218F57A08 ft=1 fh=038dcdddd6d96f1d vn="Variante von Win32/Toolbar.CrossRider.AX evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\becff530-de66-46db-aa96-7cd7d7d8c0ab-3.exe.vir"
sh=EAD28A6ECD2C2337953BFB695216CF6A4A23E0D1 ft=1 fh=e91695bee99152ae vn="Variante von Win32/Toolbar.CrossRider.AX evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\becff530-de66-46db-aa96-7cd7d7d8c0ab-4.exe.vir"
sh=09A30D0E7D28074FFD7301E88527C62366425E7E ft=1 fh=1a728031137e1eff vn="Variante von Win32/Toolbar.CrossRider.AY evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\becff530-de66-46db-aa96-7cd7d7d8c0ab-5.exe.vir"
sh=216382B557BE0EEDFF4409ABF56F5121269F633D ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\becff530-de66-46db-aa96-7cd7d7d8c0ab.crx.vir"
sh=58A942F26EDD785B37E640CBF725809D3AFCFA04 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\becff530-de66-46db-aa96-7cd7d7d8c0ab.xpi.vir"
sh=9D7EFF89A85BF78E8B1C0482FB7AB0C8DC962B73 ft=1 fh=1dc3d9f245075ed3 vn="Variante von Win64/Toolbar.Crossrider.J evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\Cinema-Plus-1.8cV09.10-bho64.dll.vir"
sh=4858532A13C839AEEE394722B7CDF70DEEC34FB6 ft=1 fh=c219673d1f2b3353 vn="Variante von Win32/Toolbar.CrossRider.AY evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\Cinema-Plus-1.8cV09.10-codedownloader.exe.vir"
sh=81158EDC3F4E31D1C54F0E9FFC4043C623600E7A ft=1 fh=77aaeedc44977074 vn="Variante von Win32/Toolbar.CrossRider.AW evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\Uninstall.exe.vir"
sh=217E1397C7F4CB24E8285D0BE1206671485C671C ft=1 fh=71ffee551727a767 vn="Win32/Packed.VMDetector.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Cinema-Plus-1.8cV09.10\utils.exe.vir"
sh=6DF08E4DF85CCA813402775C1FB6F8F5DF61FD02 ft=1 fh=1ddb9ce3b8ff035b vn="Variante von Win32/AdWare.EoRezo.AU Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\mbot_fr_145\mbot_fr_145.exe.vir"
sh=86C897B1372AF5C98C8A5E0D14A22DAD6F3D8B71 ft=1 fh=c12862a3cb3e33bf vn="Variante von Win32/AdWare.EoRezo.AU Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\mbot_fr_145\mybestofferstoday_widget.exe.vir"
sh=FA0554030BC650892CEB931E3A2C05D7719FDF14 ft=1 fh=91264935b1b8ea1a vn="Win32/Systweak.K evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\RCP\RCPUninstall.exe.vir"
sh=0B35CAD1794A5BC9B291979DA38846B5A762C739 ft=1 fh=334c505ae47f7888 vn="Win32/Systweak.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\RCP\systweakasp.exe.vir"
sh=A6153F26B41EF7DE8929AAE7E9C068ED025897D3 ft=1 fh=d1940b96d2e05c2f vn="Variante von Win32/BrowseFox.N evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\surf slide\bin\df7f363e758747308cc5.dll.vir"
sh=8B4C08E751DE5D41D9974F3D2AB3A6E8CF0667EA ft=1 fh=177ef19cecb528fe vn="Win64/BrowseFox.C evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\surf slide\bin\df7f363e758747308cc564.dll.vir"
sh=B09F909AC6B9272E6754A0D4460B106789468147 ft=1 fh=92b89d148a805127 vn="Variante von Win32/BrowseFox.P evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\surf slide\bin\surfslide.BrowserAdapter.exe.vir"
sh=7A8E3FD61C05D4F72ABC86133FE54DACA4E414BF ft=1 fh=a1ffb9df9dab0682 vn="Win64/BrowseFox.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\surf slide\bin\surfslide.BrowserAdapter64.exe.vir"
sh=6D95724F7A65D8B3AFA54B5DD35B5A8777191733 ft=1 fh=668ec0f5abc7ae06 vn="Variante von Win32/BrowseFox.M evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\surf slide\bin\{df7f363e-7587-4730-8cc5-ba707bc967f9}.dll.vir"
sh=3550E4C2CB20242A8DE4A32AA1E5F3377934D612 ft=1 fh=3e2243e646035f74 vn="Win64/BrowseFox.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\surf slide\bin\{df7f363e-7587-4730-8cc5-ba707bc967f9}64.dll.vir"
sh=3C752A652810FAD17E63230280C34D310AD719A1 ft=1 fh=c71c0011566e23ef vn="Variante von Win32/AdWare.AddLyrics.BV Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\ver1BlockAndSurf\180.dll.vir"
sh=2C1C61B1476C6BEF36AA476C3E7B308FAFA45880 ft=1 fh=c71c0011b0cac4d1 vn="Variante von Win32/AdWare.AddLyrics.BP Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\ver1BlockAndSurf\BlockAndSurf.exe.vir"
sh=922629450117F924B954EDB62C26EF7FF58893EF ft=1 fh=c71c0011fef23482 vn="Variante von Win32/AdWare.AddLyrics.BS Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\ver1BlockAndSurf\l6BlockAndSurfp84.exe.vir"
sh=DC6B3BBE5664E79311F6F0FDE3EDC064EFFD1B69 ft=1 fh=87f12f8d06182dbd vn="Variante von Win32/AdWare.AddLyrics.CB Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\ver1BlockAndSurf\Uninstall.exe.vir"
sh=D60F9D365A397D85AB58BD8DEBC2EFCB72686727 ft=1 fh=c71c0011f3b7a6de vn="Variante von Win32/ELEX.AM evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe.vir"
sh=0612F3DF2BD635BA7E21AF5DA00B4104642BC910 ft=1 fh=c71c00119a9cb0f1 vn="Variante von Win32/AdWare.ConvertAd.C Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Philipp\AppData\Local\ConvertAd\ConvertAd.exe.vir"
sh=3DD99CE62F9D4ABC4F521A672B346CEC13527230 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\Extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\91.js.vir"
sh=C99485B48B80F1A57531CE69751A500641E23414 ft=1 fh=fc155b5c47ddbb36 vn="Win32/VOPackage.AD evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Philipp\AppData\Roaming\VOPackage\VOPackage.exe.vir"
sh=E2E7555ACD0F7F6827A0958817774C8E4253DC21 ft=1 fh=117f72a1057668b7 vn="Variante von Win64/Systweak.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Windows\System32\roboot64.exe.vir"
sh=AEFC9C26D8E534F93A6BE2458C5BB4D5C4A05011 ft=1 fh=cdeb2820350448d6 vn="Win32/AnyProtect.F evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Philipp\AppData\Local\nsyF9FA.tmp"
sh=AEFC9C26D8E534F93A6BE2458C5BB4D5C4A05011 ft=1 fh=cdeb2820350448d6 vn="Win32/AnyProtect.F evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Philipp\AppData\Local\nszB6F3.tmp"
sh=BF9340C9ED0B01DA5945A9F5A388DC863BB56279 ft=0 fh=0000000000000000 vn="JS/SecurityDisabler.A.Gen evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\prefs.js"
sh=E014EA4DD182C8F94DAC84E78C92C85792D14D4F ft=0 fh=0000000000000000 vn="Win32/InstallMonetizer.AQ evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Philipp\Downloads\Freeware_Starter_Kit_fuer_Ihr_Notebook_2014.zip"
sh=FBBE31F08E493A8B0702FE72F3ABA6DF996E20C6 ft=1 fh=1055b3d0ea15ac02 vn="Win32/InstallMonetizer.AQ evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Philipp\Downloads\Freeware_Starter_Kit_fuer_Ihr_Notebook_2014\Freeware Starter Kit für Ihr Notebook\PDFCreator\PDFCreator-1_7_2_setup.exe"
sh=10F5FDFAA86B69DB53F209B2FD51458AC0B2387F ft=1 fh=703c6b964e2e6f3c vn="Win32/DownWare.W evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Philipp\Downloads\Freeware_Starter_Kit_fuer_Ihr_Notebook_2014\Freeware Starter Kit für Ihr Notebook\SUMo\sumo3.10.1.226_nork.exe" Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-10-2014
Ran by Philipp (administrator) on PHILIPP-PC on 21-10-2014 22:30:42
Running from C:\Users\Philipp\Downloads
Loaded Profile: Philipp (Available profiles: Philipp)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe
(DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkUserAgent.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Lenovo) C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CamMute.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\nis.exe
(Nitro PDF Software) C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe
() C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe
(Validity Sensors, Inc.) C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlk.exe
(Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Validity Sensors, Inc.) C:\Program Files\Lenovo Fingerprint Reader\SwipeMonitor.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe
(Lenovo Corporation) C:\Program Files\Lenovo\QuickDisplay\QuickDisplayAgent.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\nis.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe
(Lenovo Group Limited) C:\Program Files (x86)\Lenovo\QuickControl\QuickControl.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(LITE-ON TECHNOLOGY CORP.) C:\Program Files\Lenovo\USB Enhanced Performance Keyboard\Skdaemon.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
() C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Lenovo) C:\Program Files (x86)\Lenovo\Message Center Plus\MCPLaunch.exe
(Lenovo Group Limited) C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.EXE
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Peer Connect\LenovoDiscoverySvc.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Enhanced Performance Keyboard] => C:\Program Files\Lenovo\USB Enhanced Performance Keyboard\SKDaemon.exe [335360 2012-08-08] (LITE-ON TECHNOLOGY CORP.)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [901216 2013-04-29] (Conexant Systems, Inc.)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] ()
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2810608 2014-04-07] (Synaptics Incorporated)
HKLM\...\Run: [TpShocks] => C:\Windows\system32\TpShocks.exe [384344 2014-02-18] (Lenovo.)
HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [295768 2014-05-30] (Lenovo Group Limited)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-10-21] (Intel Corporation)
HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [552960 2013-05-14] (Vimicro)
HKLM-x32\...\Run: [PWMTRV] => rundll32 "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL",PwrMgrBkGndMonitor
HKLM-x32\...\Run: [Lenovo Registration] => C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4315872 2011-06-01] (Lenovo, Inc.)
HKLM-x32\...\Run: [Fastboot] => C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe [733936 2013-07-02] (Lenovo)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-08-27] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [421776 2012-09-09] (Apple Inc.)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [165168 2014-09-23] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [703736 2014-09-24] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-10] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [TaskbarNoNotification] 0
HKLM\...\Policies\Explorer: [HideSCAHealth] 0
HKU\S-1-5-21-1145738533-22672879-546596692-1001\...\Run: [ShowBatteryBar] => C:\Program Files\BatteryBar\ShowBatteryBar.exe [89600 2013-04-11] ()
HKU\S-1-5-21-1145738533-22672879-546596692-1001\...\Policies\Explorer: [TaskbarNoNotification] 0
HKU\S-1-5-21-1145738533-22672879-546596692-1001\...\Policies\Explorer: [HideSCAHealth] 0
HKU\S-1-5-21-1145738533-22672879-546596692-1001\...\MountPoints2: {1d1435dc-45ad-11e4-90ad-806e6f6e6963} - Q:\LenovoQDrive.exe
HKU\S-1-5-18\...\Policies\Explorer: [TaskbarNoNotification] 0
HKU\S-1-5-18\...\Policies\Explorer: [HideSCAHealth] 0
Startup: C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Philipp\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philipp\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philipp\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philipp\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philipp\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://home.lenovo.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://home.lenovo.com
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {398582D3-F98D-4564-9A62-DB66295FD89E} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=LNJB
SearchScopes: HKLM-x32 - {398582D3-F98D-4564-9A62-DB66295FD89E} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=LNJB
SearchScopes: HKCU - {398582D3-F98D-4564-9A62-DB66295FD89E} URL =
BHO: Cinema-Plus-1.8cV09.10 -> {11111111-1111-1111-1111-110611321185} -> C:\Program Files (x86)\Cinema-Plus-1.8cV09.10\Cinema-Plus-1.8cV09.10-bho64.dll No File
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default
FF DefaultSearchEngine: Ecosia
FF SelectedSearchEngine: Ecosia
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Pro 9\npnitromozilla.dll (Nitro PDF)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: PDF Architect 2 -> C:\Program Files (x86)\PDF Architect 2\np-previewer.dll (pdfforge GmbH)
FF SearchPlugin: C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\searchplugins\ecosia.xml
FF SearchPlugin: C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\searchplugins\google-images.xml
FF SearchPlugin: C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\searchplugins\google-maps.xml
FF SearchPlugin: C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\searchplugins\ixquickde-https.xml
FF SearchPlugin: C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\searchplugins\startpage-https---deutsch.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Avira Browser Safety - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\Extensions\abs@avira.com [2014-10-10]
FF Extension: DoNotTrackMe: Online Privacy Protection - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\Extensions\donottrackplus@abine.com [2014-10-11]
FF Extension: organizesearchenginesmaltekrausde - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\Extensions\organize-search-engines@maltekraus.de [2014-10-21]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2014-10-11]
FF Extension: Cliqz Beta - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\Extensions\cliqz@cliqz.com.xpi [2014-10-12]
FF Extension: Speed Dial - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\Extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi [2014-10-11]
FF Extension: Ecosia — The search engine that plants trees! - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\Extensions\{d04b0b40-3dab-4f0b-97a6-04ec3eddbfb0}.xpi [2014-10-09]
FF Extension: Adblock Plus - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-10-09]
FF Extension: Adblock Edge - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2014-10-09]
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.3.0.12\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.3.0.12\coFFPlgn [2014-10-21]
FF HKCU\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\Philipp\AppData\Roaming\Mozilla\Firefox\Profiles\jh0rqjqg.default\extensions\cliqz@cliqz.com
Chrome:
=======
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-09-24] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-09-24] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [160560 2014-09-23] (Avira Operations GmbH & Co. KG)
R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe [9954096 2014-04-01] (DisplayLink Corp.)
R2 FastbootService; C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe [140016 2013-07-02] (Lenovo)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-05-08] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-08] (Intel Corporation)
S3 Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [533760 2014-06-03] (Lenovo)
R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [197464 2014-05-30] (Lenovo Group Limited)
R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [136288 2012-08-11] (Lenovo Group Limited)
R2 lnvDiscoveryWinSvc; C:\Program Files\Lenovo\Lenovo Peer Connect\LenovoDiscoverySvc.exe [21552 2014-02-22] (Lenovo)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272776 2014-09-03] ()
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2014-01-18] ()
R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\21.6.0.32\NIS.exe [276376 2014-09-21] (Symantec Corporation)
R2 NitroDriverReadSpool9; C:\Program Files\Nitro\Pro 9\NitroPDFDriverService9x64.exe [230920 2014-05-16] (Nitro PDF Software)
R2 NitroUpdateService; C:\Program Files\Nitro\Pro 9\Nitro_UpdateService.exe [417800 2014-05-16] ()
S3 PDF Architect 2; C:\Program Files (x86)\PDF Architect 2\ws.exe [1771560 2014-06-26] (pdfforge GmbH)
S3 pdfforge CrashHandler; C:\Program Files (x86)\PDF Architect 2\crash-handler-ws.exe [861736 2014-06-26] (pdfforge GmbH)
S2 QuickControlMasterSvc; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlMasterSvc.exe [61936 2014-06-12] (Lenovo Group Limited)
R3 QuickControlService; C:\Program Files (x86)\Lenovo\QuickControl\QuickControlService.exe [316400 2014-06-12] (Lenovo Group Limited)
S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [24560 2014-06-18] ()
R2 ValBioService; C:\Program Files\Lenovo Fingerprint Reader\ValBioService.exe [22872 2014-05-06] (Validity Sensors, Inc.)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [47504 2014-05-08] (Synaptics Incorporated)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3816176 2014-01-18] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-09-24] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-09-24] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-09-24] (Avira Operations GmbH & Co. KG)
R1 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.3.0.12\Definitions\BASHDefs\20141003.001\BHDrvx64.sys [1587416 2014-10-03] (Symantec Corporation)
R3 btmaux; C:\Windows\System32\DRIVERS\btmaux.sys [140600 2014-03-26] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\System32\DRIVERS\btmhsf.sys [1423160 2014-04-19] (Motorola Solutions, Inc.)
R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1506000.020\ccSetx64.sys [162392 2014-02-21] (Symantec Corporation)
S3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-10-08] (Symantec Corporation)
S3 EraserUtilDrv11410; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11410.sys [142640 2014-10-08] (Symantec Corporation)
S3 Fastboot; C:\Windows\System32\DRIVERS\fastboot.sys [56048 2013-07-02] (Windows (R) Win 7 DDK provider)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28656 2013-04-30] (Intel Corporation)
R3 ibtusb; C:\Windows\System32\DRIVERS\ibtusb.sys [192456 2014-05-10] (Intel Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.3.0.12\Definitions\IPSDefs\20141008.001\IDSvia64.sys [633560 2014-10-08] (Symantec Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99800 2013-05-08] (Intel Corporation)
S3 NAVENG; C:\Program Files (x86)\Norton Internet Security\NortonData\21.3.0.12\Definitions\VirusDefs\20141008.016\ENG64.SYS [129752 2014-10-08] (Symantec Corporation)
S3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\NortonData\21.3.0.12\Definitions\VirusDefs\20141008.016\EX64.SYS [2137304 2014-10-08] (Symantec Corporation)
R3 NETwNs64; C:\Windows\System32\DRIVERS\Netwsw02.sys [3434976 2014-04-16] (Intel Corporation)
R3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [408136 2013-05-08] (Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [31472 2014-04-07] (Synaptics Incorporated)
S3 SRTSP; C:\Windows\System32\Drivers\NISx64\1506000.020\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1506000.020\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\NISx64\1506000.020\SYMDS64.SYS [493656 2013-10-30] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NISx64\1506000.020\SYMEFA64.SYS [1148120 2014-03-04] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-09-26] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NISx64\1506000.020\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1506000.020\SYMNETS.SYS [593112 2014-02-18] (Symantec Corporation)
R3 usb3Hub; C:\Windows\System32\DRIVERS\usb3Hub.sys [206744 2013-06-21] (Windows (R) Win 7 DDK provider)
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1070080 2013-12-31] (Vimicro Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-21 21:15 - 2014-10-21 21:15 - 02347384 _____ (ESET) C:\Users\Philipp\Downloads\esetsmartinstaller_deu.exe
2014-10-21 21:15 - 2014-10-21 21:15 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-10-21 21:12 - 2014-10-21 21:12 - 00001929 _____ () C:\Users\Philipp\Desktop\mbam.txt
2014-10-21 21:04 - 2014-10-21 21:04 - 00001937 _____ () C:\Users\Philipp\Desktop\malwarebytes.txt
2014-10-21 20:46 - 2014-10-21 21:10 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-21 20:46 - 2014-10-21 20:46 - 00001109 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-10-21 20:46 - 2014-10-21 20:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-10-21 20:46 - 2014-10-21 20:46 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-10-21 20:46 - 2014-10-21 20:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-10-21 20:46 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-10-21 20:46 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-10-21 20:46 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-10-21 20:43 - 2014-10-21 20:44 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Philipp\Downloads\mbam-setup-2.0.3.1025.exe
2014-10-21 20:36 - 2014-10-21 20:36 - 00448512 _____ (OldTimer Tools) C:\Users\Philipp\Downloads\TFC.exe
2014-10-21 20:23 - 2014-10-21 20:23 - 00000000 ____D () C:\Users\Philipp\Downloads\FRST-OlderVersion
2014-10-21 19:29 - 2014-10-21 19:29 - 00001912 _____ () C:\Users\Philipp\Desktop\JRT.txt
2014-10-21 19:27 - 2014-10-21 19:27 - 00000000 ____D () C:\Windows\ERUNT
2014-10-21 19:15 - 2014-10-21 19:15 - 01705698 _____ (Thisisu) C:\Users\Philipp\Downloads\JRT.exe
2014-10-21 19:10 - 2014-10-21 19:19 - 00000000 ____D () C:\AdwCleaner
2014-10-21 19:09 - 2014-10-21 19:09 - 01962496 _____ () C:\Users\Philipp\Downloads\AdwCleaner_4.001.exe
2014-10-21 19:09 - 2014-10-21 19:08 - 00043064 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-10-12 20:05 - 2014-10-12 20:05 - 00030128 _____ () C:\Users\Philipp\Downloads\logfiles.7z
2014-10-12 20:04 - 2014-10-12 20:05 - 00030128 _____ () C:\Users\Philipp\Downloads\Downloads.7z
2014-10-12 20:03 - 2014-10-12 20:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2014-10-12 20:03 - 2014-10-12 20:03 - 00000000 ____D () C:\Program Files (x86)\7-Zip
2014-10-12 19:23 - 2014-10-12 19:23 - 01098088 _____ () C:\Windows\Minidump\101214-25131-01.dmp
2014-10-12 19:23 - 2014-10-12 19:23 - 00000000 ____D () C:\Windows\Minidump
2014-10-12 19:22 - 2014-10-12 19:22 - 787588699 _____ () C:\Windows\MEMORY.DMP
2014-10-12 18:54 - 2014-10-12 18:54 - 00057539 _____ () C:\Users\Philipp\Downloads\gmer.log
2014-10-12 18:38 - 2014-10-12 18:38 - 00380416 _____ () C:\Users\Philipp\Downloads\Gmer-19357.exe
2014-10-12 18:34 - 2014-10-12 18:35 - 00037232 _____ () C:\Users\Philipp\Downloads\Addition.txt
2014-10-12 18:32 - 2014-10-21 22:30 - 00024294 _____ () C:\Users\Philipp\Downloads\FRST.txt
2014-10-12 18:32 - 2014-10-21 22:30 - 00000000 ____D () C:\FRST
2014-10-12 18:29 - 2014-10-21 20:23 - 02110976 _____ (Farbar) C:\Users\Philipp\Downloads\FRST64.exe
2014-10-12 18:29 - 2014-10-12 18:29 - 00000476 _____ () C:\Users\Philipp\Downloads\defogger_disable.log
2014-10-12 18:29 - 2014-10-12 18:29 - 00000000 _____ () C:\Users\Philipp\defogger_reenable
2014-10-12 18:28 - 2014-10-12 18:28 - 00050477 _____ () C:\Users\Philipp\Downloads\Defogger.exe
2014-10-11 18:12 - 2014-10-11 17:53 - 00000825 _____ () C:\Users\Philipp\Documents\indexfile.txt
2014-10-11 18:11 - 2014-10-11 18:11 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-10-11 18:11 - 2014-10-11 18:11 - 00002030 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2014-10-11 18:07 - 2014-10-11 18:07 - 00001034 _____ () C:\Users\Public\Desktop\MozBackup.lnk
2014-10-11 18:07 - 2014-10-11 18:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MozBackup
2014-10-11 18:07 - 2014-10-11 18:07 - 00000000 ____D () C:\Program Files (x86)\MozBackup
2014-10-11 18:05 - 2014-10-11 18:05 - 01125200 _____ () C:\Users\Philipp\Downloads\MozBackup - CHIP-Installer.exe
2014-10-11 17:57 - 2014-10-11 17:57 - 01055936 _____ (Adobe) C:\Users\Philipp\Downloads\install_flashplayer15x32_mssa_aaa_aih.exe
2014-10-11 17:40 - 2014-10-21 19:06 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Avaxv
2014-10-11 17:40 - 2014-10-13 17:04 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Malaon
2014-10-11 17:38 - 2014-10-12 20:08 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Deployment
2014-10-11 17:38 - 2014-10-11 17:38 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Apps\2.0
2014-10-10 10:42 - 2014-10-10 10:42 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-10-10 10:08 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-10-10 10:08 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-10-10 10:08 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-10-10 10:08 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-10-10 10:08 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-10-10 10:08 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-10-10 10:08 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-10-10 10:08 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-10-10 10:08 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-10-10 10:08 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-10-10 10:08 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-10-10 10:08 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-10-10 10:08 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-10-10 10:08 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-10-10 10:08 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-10-10 10:08 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-10-10 10:08 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-10-10 10:08 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-10-10 10:08 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-10-10 10:08 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-10-10 10:08 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-10-10 10:08 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-10-10 10:08 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-10-10 10:08 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-10-10 10:08 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-10-10 10:08 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-10-10 10:08 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-10-10 10:08 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-10-10 10:08 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-10-10 10:08 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-10-10 10:08 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-10-10 10:08 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-10-10 10:08 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-10-10 10:08 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-10-10 10:08 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-10-10 10:08 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-10-10 10:08 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-10-10 10:08 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-10-10 10:08 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-10-10 10:08 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-10-10 10:08 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-10-10 10:08 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-10-10 10:08 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-10-10 10:08 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-10-10 10:08 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-10-10 10:08 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-10-10 10:08 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-10-10 10:08 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-10-10 10:08 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-10-10 10:08 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-10-10 10:08 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-10-10 10:08 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-10-10 10:08 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-10-10 10:08 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-10-10 10:08 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-10-10 10:08 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-10-10 10:02 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe
2014-10-10 09:46 - 2014-10-10 09:46 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Avira
2014-10-10 09:41 - 2014-10-21 19:07 - 00000000 ____D () C:\Users\Philipp\AppData\Local\CrashDumps
2014-10-10 09:40 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-10-10 09:40 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-10-10 09:38 - 2014-09-24 12:44 - 00131608 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-10-10 09:38 - 2014-09-24 12:44 - 00119272 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-10-10 09:38 - 2014-09-24 12:44 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-10-10 09:34 - 2014-10-10 09:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-10-10 09:34 - 2014-10-10 09:38 - 00000000 ____D () C:\ProgramData\Avira
2014-10-10 09:34 - 2014-10-10 09:38 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-10-10 09:34 - 2014-10-10 09:34 - 00001148 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-10-10 09:33 - 2014-10-10 09:33 - 04714656 _____ (Avira Operations GmbH & Co. KG) C:\Users\Philipp\Downloads\avira_de_av_4464542853__ws.exe
2014-10-10 09:29 - 2014-10-10 09:29 - 00612067 _____ (CMI Limited) C:\Users\Philipp\AppData\Local\nsyF9FA.tmp
2014-10-10 09:28 - 2014-10-10 09:28 - 00056504 _____ (Corsica) C:\Windows\system32\Drivers\webinstrNew.sys
2014-10-10 09:28 - 2014-10-10 09:28 - 00000512 __RSH () C:\ProgramData\ntuser.pol
2014-10-10 09:28 - 2014-10-10 09:28 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webinstrNew_01009.Wdf
2014-10-10 09:28 - 2014-10-10 09:28 - 00000000 ____D () C:\Windows\System32\Tasks\Norton Internet Security
2014-10-10 09:27 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-10-10 09:27 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2014-10-10 09:27 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-10-10 09:27 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-10-10 09:27 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-10-10 09:27 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-10-10 09:27 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2014-10-10 09:27 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2014-10-09 20:55 - 2014-10-09 20:55 - 00000000 ____D () C:\Windows\SysWOW64\Flash
2014-10-09 20:54 - 2014-10-09 20:54 - 00612067 _____ (CMI Limited) C:\Users\Philipp\AppData\Local\nszB6F3.tmp
2014-10-09 20:54 - 2014-10-09 20:54 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\ap_movie
2014-10-09 20:47 - 2014-10-09 20:47 - 00000000 ____D () C:\ProgramData\Xunlei
2014-10-09 20:47 - 2014-10-09 20:47 - 00000000 ____D () C:\ProgramData\Thunder Network
2014-10-09 20:45 - 2014-10-09 20:45 - 00000000 ____D () C:\Users\Philipp\Documents\PDF Architect 2
2014-10-09 20:45 - 2014-10-09 20:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 2
2014-10-09 20:45 - 2014-10-09 20:45 - 00000000 ____D () C:\Program Files (x86)\PDF Architect 2
2014-10-09 20:44 - 2014-10-09 20:46 - 00000000 ____D () C:\Program Files (x86)\PDFCreator
2014-10-09 20:44 - 2014-10-09 20:44 - 00000000 ____D () C:\ProgramData\PDF Architect 2
2014-10-09 20:44 - 2014-10-09 20:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2014-10-09 20:44 - 2014-09-23 09:43 - 01070152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.OCX
2014-10-09 20:44 - 2014-09-23 09:43 - 00662288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCT2.OCX
2014-10-09 20:44 - 2014-09-23 09:43 - 00137000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMAPI32.OCX
2014-10-09 20:44 - 2014-09-23 09:43 - 00110264 _____ (pdfforge GmbH) C:\Windows\system32\pdfcmon.dll
2014-10-09 20:44 - 2014-09-23 09:43 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPIDE.DLL
2014-10-09 20:44 - 1998-07-06 18:56 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6DE.DLL
2014-10-09 20:44 - 1998-07-06 18:55 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCDE.DLL
2014-10-09 20:44 - 1998-07-06 18:55 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCC2DE.DLL
2014-10-09 20:39 - 2014-10-21 21:08 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Dropbox
2014-10-09 20:39 - 2014-10-09 20:39 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-10-09 20:38 - 2014-10-10 09:25 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\BatteryBar
2014-10-09 20:38 - 2014-10-09 20:38 - 00000000 ____D () C:\Program Files\BatteryBar
2014-10-09 20:37 - 2014-10-09 20:37 - 00000000 ____D () C:\Users\Philipp\Downloads\Freeware_Starter_Kit_fuer_Ihr_Notebook_2014
2014-10-09 20:37 - 2014-10-09 20:37 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Macromedia
2014-10-09 20:36 - 2014-10-21 21:42 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-10-09 20:36 - 2014-10-11 18:03 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-10-09 20:36 - 2014-10-11 18:03 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-09 20:36 - 2014-10-11 18:03 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-10-09 20:36 - 2014-10-10 09:45 - 00000000 ____D () C:\Program Files (x86)\Google
2014-10-09 20:36 - 2014-10-10 09:38 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Google
2014-10-09 20:36 - 2014-10-09 20:36 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-10-09 20:35 - 2014-10-11 18:03 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Adobe
2014-10-09 20:35 - 2014-10-09 20:35 - 00000000 ____D () C:\Windows\system32\Macromed
2014-10-09 20:32 - 2014-10-09 20:32 - 00000000 _____ () C:\Users\Philipp\Downloads\FileOpenerSetup.exe
2014-10-09 20:27 - 2014-10-09 20:28 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Apple Computer
2014-10-09 20:27 - 2014-10-09 20:27 - 00001794 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-10-09 20:27 - 2014-10-09 20:27 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Apple Computer
2014-10-09 20:27 - 2014-10-09 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-10-09 20:27 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2014-10-09 20:26 - 2014-10-09 20:27 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-10-09 20:26 - 2014-10-09 20:27 - 00000000 ____D () C:\Program Files\iTunes
2014-10-09 20:26 - 2014-10-09 20:27 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-10-09 20:26 - 2014-10-09 20:26 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-10-09 20:26 - 2014-10-09 20:26 - 00000000 ____D () C:\Program Files\iPod
2014-10-09 20:24 - 2014-10-09 20:24 - 00002519 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2014-10-09 20:24 - 2014-10-09 20:24 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-10-09 20:24 - 2014-10-09 20:24 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Apple
2014-10-09 20:24 - 2014-10-09 20:24 - 00000000 ____D () C:\ProgramData\Apple
2014-10-09 20:24 - 2014-10-09 20:24 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-10-09 20:24 - 2014-10-09 20:24 - 00000000 ____D () C:\Program Files\Bonjour
2014-10-09 20:24 - 2014-10-09 20:24 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-10-09 20:24 - 2014-10-09 20:24 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-10-09 20:23 - 2014-10-09 20:30 - 912748031 _____ () C:\Users\Philipp\Downloads\Freeware_Starter_Kit_fuer_Ihr_Notebook_2014.zip
2014-10-09 20:23 - 2014-10-09 20:24 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Abelssoft
2014-10-09 20:23 - 2014-10-09 20:23 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft
2014-10-09 20:23 - 2014-10-09 20:23 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Abelssoft
2014-10-09 20:23 - 2014-10-09 20:23 - 00000000 ____D () C:\ProgramData\XDMessagingv4
2014-10-09 20:23 - 2014-10-09 20:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CHIP Updater
2014-10-09 20:23 - 2014-10-09 20:23 - 00000000 ____D () C:\Program Files (x86)\CHIP Updater
2014-10-09 20:23 - 2011-05-13 12:16 - 00493056 _____ ( datenhaus GmbH) C:\Windows\SysWOW64\dhRichClient3.dll
2014-10-09 20:23 - 2011-03-25 20:42 - 00338432 _____ () C:\Windows\SysWOW64\sqlite36_engine.dll
2014-10-09 20:21 - 2014-10-09 20:22 - 80521624 _____ (Apple Inc.) C:\Users\Philipp\Downloads\iTunes64Setup.exe
2014-10-09 20:18 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-10-09 20:18 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-10-09 20:14 - 2014-10-09 20:14 - 111992144 _____ (Apple Inc.) C:\Users\Philipp\Desktop\iTunesSetup.exe
2014-10-09 20:13 - 2014-10-09 20:13 - 01125200 _____ () C:\Users\Philipp\Downloads\CHIP Online Notebook Starter Kit 2014 - CHIP-Installer.exe
2014-10-09 20:11 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-10-09 20:11 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-10-09 20:11 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-10-09 20:11 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-10-09 20:11 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-10-09 20:11 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-10-09 20:11 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2014-10-09 20:11 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2014-10-09 20:10 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-10-09 20:10 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-10-09 20:10 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-10-09 20:10 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-10-09 20:10 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-10-09 20:10 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-10-09 20:10 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-10-09 20:10 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-10-09 20:10 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-10-09 20:10 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-10-09 20:10 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-10-09 20:10 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-10-09 20:10 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-10-09 20:10 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-10-09 20:10 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-10-09 20:10 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-10-09 20:10 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-10-09 20:10 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-10-09 20:10 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-10-09 20:10 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-10-09 20:10 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2014-10-09 20:10 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-10-09 20:09 - 2014-09-25 04:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-10-09 20:09 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-10-09 20:09 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-10-09 20:09 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-10-09 20:09 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-10-09 20:09 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-10-09 20:09 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-10-09 20:09 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-10-09 20:09 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-10-09 20:09 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-10-09 20:09 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-10-09 20:09 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-10-09 20:09 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-10-09 20:09 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-10-09 20:09 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-10-09 20:08 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-10-09 20:08 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-10-09 20:07 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-10-09 20:07 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-10-09 20:07 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-10-09 20:07 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-10-09 20:06 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-10-09 20:06 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-10-09 20:06 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-10-09 20:06 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-10-09 20:06 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-10-09 20:03 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-10-09 20:03 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-10-09 20:03 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-10-09 20:03 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-10-09 20:03 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-10-09 20:03 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2014-10-09 20:02 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-10-09 20:02 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-10-09 19:58 - 2014-10-21 19:19 - 00001068 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-10-09 19:58 - 2014-10-21 19:19 - 00001056 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-10-09 19:58 - 2014-10-09 19:59 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Mozilla
2014-10-09 19:58 - 2014-10-09 19:59 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Mozilla
2014-10-09 19:58 - 2014-10-09 19:58 - 00000000 ____D () C:\ProgramData\Mozilla
2014-10-09 19:58 - 2014-10-09 19:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-10-09 19:58 - 2014-10-09 19:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-10-09 19:57 - 2014-10-09 19:57 - 35095808 _____ () C:\Users\Philipp\Downloads\Firefox_Setup_de32.0.3.exe
2014-10-09 19:57 - 2014-10-09 19:57 - 35095808 _____ () C:\Users\Philipp\Downloads\Firefox_Setup_de32.0.3 (1).exe
2014-10-09 19:55 - 2014-10-10 09:37 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Opera Software
2014-10-09 19:55 - 2014-10-10 09:37 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Opera Software
2014-10-09 19:55 - 2014-10-10 09:37 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-10-09 19:54 - 2014-10-09 19:55 - 30503712 _____ (Opera Software ASA) C:\Users\Philipp\Downloads\Opera_24.0.1558.64_Setup.exe
2014-10-09 19:52 - 2014-10-09 19:52 - 00000000 ____D () C:\Users\Philipp\AppData\Local\IsolatedStorage
2014-10-09 19:51 - 2014-10-09 19:51 - 00000000 ____D () C:\Users\Philipp\AppData\Local\GestureControl
2014-10-09 18:23 - 2014-10-09 18:23 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\LSC
2014-10-09 09:30 - 2014-10-21 21:04 - 00134266 _____ () C:\Users\Public\CAFADEBUG.log
2014-10-08 18:17 - 2014-10-08 18:17 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\PwrMgr
2014-10-08 18:07 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-10-08 18:07 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2014-10-08 18:07 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-10-08 17:50 - 2014-10-08 17:50 - 00002002 _____ () C:\Users\Public\Desktop\Lenovo Solution Center.lnk
2014-10-08 17:50 - 2014-10-08 17:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_ldiagio_uefi_01009.Wdf
2014-10-08 17:02 - 2014-10-09 20:27 - 00060056 _____ () C:\Users\Philipp\AppData\Local\GDIPFONTCACHEV1.DAT
2014-10-08 17:02 - 2014-10-08 17:50 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Lenovo
2014-10-08 17:01 - 2014-10-21 19:19 - 00001010 _____ () C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-10-08 17:01 - 2014-10-08 17:01 - 00000000 ____D () C:\Users\Philipp\Documents\Meine empfangenen Dateien
2014-10-08 17:01 - 2014-10-08 17:01 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Leadertech
2014-10-08 17:01 - 2014-10-08 17:01 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Adobe
2014-10-08 17:01 - 2014-10-08 17:01 - 00000000 ____D () C:\Users\Philipp\AppData\Local\VirtualStore
2014-10-08 17:01 - 2014-10-08 17:01 - 00000000 ____D () C:\Users\Philipp\AppData\Local\Downloaded Installations
2014-10-08 17:00 - 2014-10-12 18:29 - 00000000 ____D () C:\Users\Philipp
2014-10-08 17:00 - 2014-10-08 17:00 - 00000895 _____ () C:\Users\Public\Desktop\Installieren Sie Ihre zusõtzlichen Anwendungen.lnk
2014-10-08 17:00 - 2014-10-08 17:00 - 00000020 ___SH () C:\Users\Philipp\ntuser.ini
2014-10-08 17:00 - 2014-10-08 17:00 - 00000010 _____ () C:\Windows\getvol.scp
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\Vorlagen
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\Startmenü
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\Netzwerkumgebung
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\Lokale Einstellungen
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\Eigene Dateien
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\Druckumgebung
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\Documents\Eigene Musik
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\Documents\Eigene Bilder
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\AppData\Local\Verlauf
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\AppData\Local\Anwendungsdaten
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _SHDL () C:\Users\Philipp\Anwendungsdaten
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Intel
2014-10-08 17:00 - 2014-10-08 17:00 - 00000000 _____ () C:\Windows\firstboot.dat
2014-10-08 17:00 - 2014-09-26 21:16 - 00002107 _____ () C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2014-10-08 17:00 - 2014-09-26 21:12 - 00000000 ____D () C:\Users\Philipp\AppData\Roaming\Macromedia
2014-10-08 17:00 - 2009-08-25 05:18 - 01067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2014-10-08 17:00 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-10-08 17:00 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Philipp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-10-08 16:07 - 2014-10-08 16:07 - 00000000 __SHD () C:\Users\Philipp\AppData\Local\EmieUserList
2014-10-08 16:07 - 2014-10-08 16:07 - 00000000 __SHD () C:\Users\Philipp\AppData\Local\EmieSiteList
2014-10-08 16:04 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-10-08 16:04 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-10-08 16:04 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-10-08 16:04 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-10-08 16:04 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-10-08 16:04 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-10-08 16:04 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-10-08 16:04 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-10-08 16:04 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-10-08 16:04 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-10-08 16:04 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-10-08 16:04 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-10-08 16:04 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-10-08 16:04 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-09-26 21:22 - 2014-09-26 21:22 - 00003864 _____ () C:\Windows\System32\Tasks\ISM-UpdateService-e57b59e7-5862-4250-9ce0-76fb411dc0d2
2014-09-26 21:22 - 2014-09-26 21:22 - 00003616 _____ () C:\Windows\System32\Tasks\ISM-UpdateService-e57b59e7-5862-4250-9ce0-76fb411dc0d2-Logon
2014-09-26 21:22 - 2014-09-26 21:22 - 00000000 ____D () C:\ProgramData\Intel(R) Update Manager
2014-09-26 21:21 - 2014-09-26 21:21 - 00002033 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) WiDi.lnk
2014-09-26 21:21 - 2014-09-26 21:21 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_usb3Hub_01009.Wdf
2014-09-26 21:21 - 2014-09-26 21:21 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iwdbus_01009.Wdf
2014-09-26 21:21 - 2014-09-26 21:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Corporation
2014-09-26 21:21 - 2014-09-26 21:21 - 00000000 ____D () C:\Program Files\Intel Corporation
2014-09-26 21:19 - 2014-09-26 21:19 - 00001991 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk
2014-09-26 21:19 - 2014-09-26 21:19 - 00000000 ____D () C:\Users\Public\Symantec
2014-09-26 21:19 - 2014-09-26 21:19 - 00000000 ____D () C:\Program Files (x86)\SymSilent
2014-09-26 21:19 - 2014-09-26 21:19 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-09-26 21:19 - 2013-07-19 00:47 - 00002040 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo PC Experience.lnk
2014-09-26 21:18 - 2014-10-10 09:22 - 00003234 _____ () C:\Windows\System32\Tasks\Norton WSC Integration
2014-09-26 21:18 - 2014-09-26 21:18 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
2014-09-26 21:18 - 2014-09-26 21:18 - 00008222 _____ () C:\Windows\system32\Drivers\SYMEVENT64x86.CAT
2014-09-26 21:18 - 2014-09-26 21:18 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared
2014-09-26 21:17 - 2014-10-10 09:22 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security
2014-09-26 21:17 - 2014-10-10 09:22 - 00000000 ____D () C:\Windows\system32\Drivers\NISx64
2014-09-26 21:17 - 2014-10-08 17:02 - 00000000 ____D () C:\ProgramData\Norton
2014-09-26 21:17 - 2014-09-26 21:17 - 00000000 ____D () C:\Program Files (x86)\Norton Internet Security
2014-09-26 21:16 - 2014-09-26 21:16 - 00002107 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2014-09-26 21:16 - 2014-09-26 21:16 - 00002107 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2014-09-26 21:16 - 2014-09-26 21:16 - 00001943 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nitro Pro 9.lnk
2014-09-26 21:16 - 2014-09-26 21:16 - 00000000 ____D () C:\ProgramData\Nitro
2014-09-26 21:16 - 2014-09-26 21:16 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2014-09-26 21:16 - 2014-09-26 21:16 - 00000000 ____D () C:\Program Files\Nitro
2014-09-26 21:16 - 2014-09-26 21:16 - 00000000 ____D () C:\Program Files\Common Files\Nitro
2014-09-26 21:16 - 2014-09-26 21:16 - 00000000 ____D () C:\Program Files (x86)\Nitro
2014-09-26 21:16 - 2014-09-26 21:16 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive
2014-09-26 21:16 - 2014-05-16 03:38 - 00029704 _____ (Nitro PDF Software) C:\Windows\system32\nitrolocalmon9.dll
2014-09-26 21:16 - 2014-05-16 03:38 - 00017928 _____ (Nitro PDF Software) C:\Windows\system32\nitrolocalui9.dll
2014-09-26 21:15 - 2014-09-26 21:15 - 00000143 _____ () C:\Windows\eyesight1.cmd
2014-09-26 21:15 - 2014-09-26 21:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gesture Control
2014-09-26 21:15 - 2014-09-26 21:15 - 00000000 ____D () C:\ProgramData\eyeSight
2014-09-26 21:15 - 2014-09-26 21:15 - 00000000 ____D () C:\Program Files (x86)\eyeSight
2014-09-26 21:15 - 2013-07-17 09:41 - 00001345 _____ () C:\Windows\eyesight1.lnk
2014-09-26 21:15 - 2010-03-03 18:54 - 00001423 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Free Skype voice and video calls.lnk
2014-09-26 21:13 - 2014-10-21 21:06 - 00000000 ____D () C:\ProgramData\Validity
2014-09-26 21:13 - 2014-10-08 18:17 - 629145600 ___SH () C:\Windows\lenovo_fastboot.img
2014-09-26 21:13 - 2014-10-08 17:50 - 00000000 ____D () C:\Windows\System32\Tasks\TVT
2014-09-26 21:13 - 2014-09-26 21:15 - 00196608 _____ () C:\Windows\ocsetup_install_OEMHelpCustomization.etl
2014-09-26 21:13 - 2014-09-26 21:14 - 00028728 _____ () C:\Windows\ocsetup_cbs_install_OEMHelpCustomization.txt
2014-09-26 21:13 - 2014-09-26 21:13 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_wbf_vfs_lvcmn_01_09_00.Wdf
2014-09-26 21:13 - 2014-09-26 21:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fingerprint Reader
2014-09-26 21:13 - 2014-09-26 21:13 - 00000000 ____D () C:\Program Files\Synaptics Incorporated
2014-09-26 21:13 - 2014-09-26 21:13 - 00000000 ____D () C:\Program Files (x86)\Lenovo Registration
2014-09-26 21:13 - 2013-07-02 08:33 - 00056048 ____N (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\Fastboot.sys
2014-09-26 21:13 - 2013-06-26 11:54 - 00002254 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Evernote Installer.lnk
2014-09-26 21:12 - 2014-10-11 18:08 - 00000000 ____D () C:\ProgramData\Adobe
2014-09-26 21:12 - 2014-10-11 18:08 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-09-26 21:12 - 2014-10-09 09:31 - 00000000 ____D () C:\Windows\System32\Tasks\Lenovo
2014-09-26 21:12 - 2014-10-08 17:50 - 00000000 ____D () C:\Program Files\Lenovo Fingerprint Reader
2014-09-26 21:12 - 2014-09-26 21:12 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-09-26 21:12 - 2014-09-26 21:12 - 00000000 ____D () C:\Users\Public\Lenovo
2014-09-26 21:12 - 2014-09-26 21:12 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-09-26 21:12 - 2014-09-26 21:12 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-09-26 21:11 - 2014-10-08 17:50 - 00000000 ____D () C:\Windows\Downloaded Installations
2014-09-26 21:11 - 2014-09-26 21:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2014-09-26 21:11 - 2014-09-26 21:11 - 00003020 _____ () C:\Windows\System32\Tasks\PMTask
2014-09-26 21:11 - 2014-09-26 21:11 - 00000000 ____D () C:\Program Files\Common Files\Lenovo
2014-09-26 21:10 - 2014-09-26 21:19 - 00000000 ___HD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools
2014-09-26 21:10 - 2014-09-26 21:10 - 00015396 _____ () C:\Windows\system32\results.xml
2014-09-26 21:10 - 2014-09-26 21:10 - 00000000 ____D () C:\Program Files\ThinkPad
2014-09-26 21:10 - 2014-09-26 21:10 - 00000000 ____D () C:\Program Files (x86)\ThinkPad
2014-09-26 21:10 - 2014-06-24 00:05 - 02853664 _____ (Lenovo Group Limited) C:\Windows\system32\PWMCP64V.cpl
2014-09-26 21:10 - 2014-06-24 00:05 - 02692896 ____N (Lenovo Group Limited) C:\Windows\PWMBTHLV.EXE
2014-09-26 21:10 - 2014-06-24 00:05 - 00020736 _____ (Lenovo Group Limited) C:\Windows\system32\Drivers\TPPWR64V.SYS
2014-09-26 21:08 - 2014-09-26 21:08 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_btmhsf_01011.Wdf
2014-09-26 21:08 - 2014-09-26 21:08 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_btmaux_01009.Wdf
2014-09-26 21:07 - 2014-09-26 21:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
2014-09-26 21:07 - 2014-09-26 21:07 - 00000000 ____D () C:\Program Files (x86)\Dolby Home Theater v4
2014-09-26 21:06 - 2013-05-16 05:18 - 00004656 _____ () C:\Windows\system32\Drivers\SamSfPa.dat
2014-09-26 21:06 - 2012-12-03 19:27 - 00202400 _____ (Conexant Systems Inc.) C:\Windows\system32\CxAudMsg64.exe
2014-09-26 21:06 - 2011-09-01 09:23 - 00447104 _____ (Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
2014-09-26 21:05 - 2014-09-26 21:07 - 00000000 ____D () C:\Program Files\CONEXANT
2014-09-26 21:05 - 2014-09-26 21:05 - 00000000 ____D () C:\ProgramData\Conexant
2014-09-26 21:05 - 2013-05-15 09:27 - 00406208 _____ (Conexant Systems, Inc.) C:\Windows\system32\CSpkExt64.dll
2014-09-26 21:05 - 2013-05-14 09:43 - 01684184 _____ (Conexant Systems Inc.) C:\Windows\system32\Drivers\CHDRT64.sys
2014-09-26 21:05 - 2013-04-18 10:02 - 01788000 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64AP83.dll
2014-09-26 21:05 - 2013-02-08 23:02 - 02817632 _____ (Conexant Systems, Inc.) C:\Windows\system32\UCI64A35.DLL
2014-09-26 21:05 - 2013-01-25 07:57 - 02730016 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-09-26 21:05 - 2012-08-31 13:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\EEP64A.dll
2014-09-26 21:05 - 2012-08-31 13:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\EED64A.dll
2014-09-26 21:05 - 2012-08-31 13:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\EEL64A.dll
2014-09-26 21:05 - 2012-08-31 13:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\EEA64A.dll
2014-09-26 21:05 - 2012-08-31 13:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\EEG64A.dll
2014-09-26 21:05 - 2012-06-29 07:04 - 00050848 _____ (Conexant Systems Inc.) C:\Windows\system32\CxPageMaster64.dll
2014-09-26 21:05 - 2012-01-16 04:42 - 00666240 _____ (Conexant Systems, Inc.) C:\Windows\system32\C3DHPExt64.dll
2014-09-26 21:05 - 2011-01-18 02:35 - 00030893 _____ () C:\Windows\system32\Drivers\Mixer.ini
2014-09-26 21:04 - 2014-09-26 21:04 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
2014-09-26 21:04 - 2014-09-26 21:04 - 00000000 ____D () C:\ProgramData\Intel.sav
2014-09-26 21:04 - 2014-09-26 21:04 - 00000000 ____D () C:\Program Files\Common Files\Intel
2014-09-26 21:04 - 2014-09-26 21:04 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-09-26 21:03 - 2014-10-10 09:34 - 00000000 ____D () C:\ProgramData\Package Cache
2014-09-26 21:02 - 2014-09-26 21:02 - 00000000 ____D () C:\Windows\SysWOW64\sda
2014-09-26 21:02 - 2014-09-26 21:02 - 00000000 ____D () C:\Program Files (x86)\Vimicro
2014-09-26 21:02 - 2014-09-26 21:02 - 00000000 ____D () C:\Program Files (x86)\USB Camera
2014-09-26 21:02 - 2014-02-26 05:26 - 00002065 _____ () C:\Windows\vm331Rmv.ini
2014-09-26 21:02 - 2014-02-26 05:26 - 00002065 _____ () C:\Windows\SysWOW64\vm331Rmv.ini
2014-09-26 21:02 - 2013-12-31 04:20 - 01070080 _____ (Vimicro Corporation) C:\Windows\system32\Drivers\vm331avs.sys
2014-09-26 21:02 - 2013-12-27 10:12 - 00358912 _____ (Vimicro Corporation) C:\Windows\system32\VmCoinst.dll
2014-09-26 21:02 - 2013-05-08 09:35 - 00408136 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsPer.sys
2014-09-26 21:02 - 2013-04-25 12:12 - 09889352 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsPerIcon.dll
2014-09-26 21:02 - 2013-01-17 08:33 - 01078272 _____ () C:\Windows\system32\331prx64.ax
2014-09-26 21:02 - 2013-01-17 08:33 - 00667648 _____ () C:\Windows\SysWOW64\vmprp331.ax
2014-09-26 21:02 - 2010-06-30 11:38 - 00000356 _____ () C:\Windows\system\vm331avs.rsf
2014-09-26 21:01 - 2014-10-08 17:50 - 00000000 ____D () C:\Program Files\Synaptics
2014-09-26 21:01 - 2014-09-26 21:02 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-09-26 21:01 - 2014-09-26 21:01 - 00001346 _____ () C:\Windows\Synaptics.log
2014-09-26 21:01 - 2014-09-26 21:01 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2014-09-26 21:01 - 2014-09-26 21:01 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2014-09-26 21:01 - 2014-04-07 06:01 - 00745712 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2014-09-26 21:01 - 2014-04-07 06:01 - 00554224 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys
2014-09-26 21:01 - 2014-04-07 06:01 - 00405232 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCom.dll
2014-09-26 21:01 - 2014-04-07 06:01 - 00254704 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll
2014-09-26 21:01 - 2014-04-07 06:01 - 00208112 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo20.dll
2014-09-26 21:01 - 2014-04-07 06:01 - 00031472 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2014-09-26 21:01 - 2014-01-07 07:20 - 00001741 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Ultranav (Touchpad Clickpad Trackpad TrackPoint Mouse).lnk
2014-09-26 21:01 - 2013-03-27 09:51 - 00842312 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2014-09-26 21:01 - 2013-03-27 09:51 - 00108104 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2014-09-26 21:01 - 2013-03-27 09:51 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2014-09-26 21:00 - 2014-10-08 17:50 - 00000000 ____D () C:\Program Files\Lenovo
2014-09-26 21:00 - 2014-09-26 21:00 - 00000000 ____D () C:\Program Files\Lenovo USB Graphics
2014-09-26 21:00 - 2014-09-26 21:00 - 00000000 ____D () C:\Program Files\DisplayLink Core Software
2014-09-26 20:59 - 2014-10-08 17:01 - 00000000 ____D () C:\Program Files (x86)\Lenovo
2014-09-26 20:59 - 2014-09-26 21:10 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-26 20:59 - 2014-01-08 00:53 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL
2014-09-26 20:59 - 2014-01-08 00:53 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL
2014-09-26 20:58 - 2014-10-08 17:01 - 00000042 _____ () C:\Windows\SysWOW64\Drivers\17AA_Lenovo_ThinkPad_S3-S440_20AYCTO1WW.MRK
2014-09-26 20:58 - 2014-09-26 20:58 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf
2014-09-26 20:58 - 2014-01-08 00:53 - 25971712 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 21658624 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 21007360 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 20954112 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 19950592 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 19202560 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 09081856 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 07944704 _____ (Intel Corporation) C:\Windows\system32\ig75icd64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 07596504 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 06280704 _____ (Intel Corporation) C:\Windows\SysWOW64\ig75icd32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 04472320 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 04220416 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys
2014-09-26 20:58 - 2014-01-08 00:53 - 03556864 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 03207680 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 02881536 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 02813952 _____ () C:\Windows\system32\iglhxa64.cpa
2014-09-26 20:58 - 2014-01-08 00:53 - 02384896 _____ () C:\Windows\system32\GfxRes.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 02065920 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 01815040 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 01127424 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 01123328 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00906200 _____ (Intel Corporation) C:\Windows\system32\igfxstarter.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00845272 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00771544 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00770520 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00755160 _____ (Intel Corporation) C:\Windows\system32\GfxUIHotKeyMenu.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00729088 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00624640 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00548864 _____ (Intel Corporation) C:\Windows\system32\igfxpph.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00530904 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00527872 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00527360 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00526848 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00526336 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00525824 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00525312 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00524800 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00524288 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00523776 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00522240 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00521728 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00517632 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00516096 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00514048 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00513536 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00493056 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00397784 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00396760 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00391128 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00371200 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc
2014-09-26 20:58 - 2014-01-08 00:53 - 00347648 _____ () C:\Windows\system32\igdmd64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00346624 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00329216 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00320512 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00290816 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00280064 _____ () C:\Windows\SysWOW64\igdmd32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00279040 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl
2014-09-26 20:58 - 2014-01-08 00:53 - 00279000 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00267407 _____ () C:\Windows\system32\Gfxres.th-TH.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00265216 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00253466 _____ () C:\Windows\system32\Gfxres.el-GR.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00243712 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00235401 _____ () C:\Windows\system32\Gfxres.ru-RU.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00224256 _____ (Intel Corporation) C:\Windows\system32\hccutils.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00222208 _____ () C:\Windows\system32\igdde64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00214528 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00201128 _____ () C:\Windows\system32\Gfxres.ar-SA.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00198725 _____ () C:\Windows\system32\Gfxres.ja-JP.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00194560 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00192758 _____ () C:\Windows\system32\Gfxres.he-IL.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00182784 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3383.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00182272 _____ () C:\Windows\SysWOW64\igdde32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00180936 _____ () C:\Windows\system32\Gfxres.ko-KR.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00180850 _____ () C:\Windows\system32\Gfxres.it-IT.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00179712 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00178473 _____ () C:\Windows\system32\Gfxres.es-ES.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00178290 _____ () C:\Windows\system32\Gfxres.fr-FR.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00178123 _____ () C:\Windows\system32\Gfxres.de-DE.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00176838 _____ () C:\Windows\system32\Gfxres.ro-RO.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00175862 _____ () C:\Windows\system32\Gfxres.hu-HU.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00175571 _____ () C:\Windows\system32\Gfxres.tr-TR.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00175067 _____ () C:\Windows\system32\Gfxres.nl-NL.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00174802 _____ () C:\Windows\system32\Gfxres.pl-PL.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00174269 _____ () C:\Windows\system32\Gfxres.pt-BR.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00173792 _____ () C:\Windows\system32\Gfxres.fi-FI.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00173276 _____ () C:\Windows\system32\Gfxres.sk-SK.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00173059 _____ () C:\Windows\system32\Gfxres.sv-SE.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00172833 _____ () C:\Windows\system32\Gfxres.pt-PT.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00172554 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00171691 _____ () C:\Windows\system32\Gfxres.hr-HR.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00168215 _____ () C:\Windows\system32\Gfxres.sl-SI.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00166833 _____ () C:\Windows\system32\Gfxres.nb-NO.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00166220 _____ () C:\Windows\system32\Gfxres.da-DK.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00163328 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00161534 _____ () C:\Windows\system32\Gfxres.en-US.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00160256 _____ () C:\Windows\system32\igdail64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00155136 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00154805 _____ () C:\Windows\system32\Gfxres.zh-TW.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00153048 _____ (Intel Corporation) C:\Windows\system32\difx64.exe
2014-09-26 20:58 - 2014-01-08 00:53 - 00152993 _____ () C:\Windows\system32\Gfxres.zh-CN.resources
2014-09-26 20:58 - 2014-01-08 00:53 - 00142848 _____ () C:\Windows\SysWOW64\igdail32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00137728 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00133120 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00094208 _____ () C:\Windows\system32\IccLibDll_x64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00066560 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00044025 _____ () C:\Windows\system32\iglhxo64.vp
2014-09-26 20:58 - 2014-01-08 00:53 - 00043816 _____ () C:\Windows\system32\iglhxc64_dev.vp
2014-09-26 20:58 - 2014-01-08 00:53 - 00043494 _____ () C:\Windows\system32\iglhxc64.vp
2014-09-26 20:58 - 2014-01-08 00:53 - 00043298 _____ () C:\Windows\system32\iglhxg64_dev.vp
2014-09-26 20:58 - 2014-01-08 00:53 - 00043256 _____ () C:\Windows\system32\iglhxg64.vp
2014-09-26 20:58 - 2014-01-08 00:53 - 00042079 _____ () C:\Windows\system32\iglhxo64_dev.vp
2014-09-26 20:58 - 2014-01-08 00:53 - 00029696 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00025600 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00012288 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll
2014-09-26 20:58 - 2014-01-08 00:53 - 00002940 _____ () C:\Windows\system32\iglhxs64.vp
2014-09-26 20:58 - 2014-01-08 00:53 - 00001125 _____ () C:\Windows\system32\iglhxa64.vp
2014-09-26 20:58 - 2013-12-30 23:06 - 00450520 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys
2014-09-26 20:58 - 2013-10-21 04:25 - 00790000 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3xhc.sys
2014-09-26 20:58 - 2013-10-21 04:25 - 00368624 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hub.sys
2014-09-26 20:58 - 2013-10-21 04:25 - 00041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll
2014-09-26 20:58 - 2013-10-21 04:25 - 00020464 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hcs.sys
2014-09-26 20:58 - 2013-02-27 09:37 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2014-09-26 20:55 - 2014-10-08 17:51 - 00000000 ____D () C:\ProgramData\Intel
2014-09-26 20:55 - 2014-09-26 21:04 - 00000000 ____D () C:\Program Files\Intel
2014-09-26 20:55 - 2014-09-26 20:57 - 00075099 _____ () C:\Windows\winredism.log
2014-09-26 20:55 - 2013-05-21 19:45 - 00008192 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll
2014-09-26 20:54 - 2014-09-26 21:22 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-09-26 20:54 - 2014-09-26 20:58 - 00000000 ____D () C:\Intel
2014-09-26 20:54 - 2014-09-26 20:54 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2014-09-26 20:54 - 2013-05-08 22:23 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll
2014-09-26 20:54 - 2013-05-08 22:23 - 00099800 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys
2014-09-26 20:53 - 2014-09-26 20:53 - 00000000 ____D () C:\Program Files\MLPS
2014-09-26 20:53 - 2014-09-26 20:53 - 00000000 ____D () C:\Program Files\DIFX
2014-09-26 20:52 - 2014-09-26 21:04 - 00032216 _____ () C:\Windows\DPINST.LOG
2014-09-26 20:51 - 2014-09-26 20:51 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-09-26 20:50 - 2014-09-26 20:50 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-09-26 20:48 - 2014-10-11 17:40 - 02094734 _____ () C:\Windows\WindowsUpdate.log
2014-09-26 20:45 - 2014-09-26 20:45 - 00000000 ____D () C:\Windows\CSC
2014-09-26 20:42 - 2014-09-26 20:42 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-09-26 20:42 - 2014-09-26 20:42 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-09-26 20:42 - 2014-09-26 20:42 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-09-26 20:42 - 2014-09-26 20:42 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-09-26 20:41 - 2014-09-26 20:41 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-09-26 20:41 - 2014-09-26 20:41 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-09-26 20:41 - 2014-09-26 20:41 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-09-26 20:40 - 2014-09-26 20:40 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-09-26 20:40 - 2014-09-26 20:40 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-09-26 20:40 - 2014-09-26 20:40 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-09-26 20:40 - 2014-09-26 20:40 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-09-26 20:40 - 2014-09-26 20:40 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-09-26 20:40 - 2014-09-26 20:40 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-09-26 20:40 - 2014-09-26 20:40 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-09-26 20:38 - 2014-09-26 20:38 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2014-09-26 20:38 - 2014-09-26 20:38 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2014-09-26 20:38 - 2014-09-26 20:38 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTAM.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINMAL.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINDEV.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBEN.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINTAM.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINORI.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINMAR.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINMAL.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINKAN.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINHIN.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINDEV.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINBEN.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTEL.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINPUN.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINORI.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINMAR.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINKAN.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINHIN.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINGUJ.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINEN.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBE2.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBE1.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINASA.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINTEL.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINPUN.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINGUJ.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINBE2.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINBE1.DLL
2014-09-26 20:38 - 2014-09-26 20:38 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINASA.DLL
2014-09-26 20:37 - 2014-09-26 20:37 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2014-09-26 20:37 - 2014-09-26 20:37 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2014-09-26 20:37 - 2014-09-26 20:37 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2014-09-26 20:37 - 2014-09-26 20:37 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2014-09-26 20:37 - 2014-09-26 20:37 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2014-09-26 20:37 - 2014-09-26 20:37 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2014-09-26 20:37 - 2014-09-26 20:37 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2014-09-26 20:37 - 2014-09-26 20:37 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2014-09-26 20:37 - 2014-09-26 20:37 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-09-26 20:36 - 2014-09-26 20:37 - 00404551 _____ () C:\Windows\KB2685813.log
2014-09-26 20:36 - 2014-09-26 20:36 - 00393930 _____ () C:\Windows\KB2685811.log
2014-09-26 20:30 - 2014-09-26 20:30 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-09-26 20:30 - 2014-09-26 20:30 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2014-09-26 20:29 - 2014-09-26 20:29 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-09-26 20:29 - 2014-09-26 20:29 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-09-26 20:28 - 2014-09-26 20:28 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-09-26 20:28 - 2014-09-26 20:28 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-09-26 20:28 - 2014-09-26 20:28 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-09-26 20:28 - 2014-09-26 20:28 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-09-26 20:28 - 2014-09-26 20:28 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-09-26 20:28 - 2014-09-26 20:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2014-09-26 20:28 - 2014-09-26 20:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-09-26 20:27 - 2014-09-26 20:27 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-09-26 20:27 - 2014-09-26 20:27 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-09-26 20:27 - 2014-09-26 20:27 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-09-26 20:27 - 2014-09-26 20:27 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-09-26 20:27 - 2014-09-26 20:27 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-09-26 20:27 - 2014-09-26 20:27 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-09-26 20:27 - 2014-09-26 20:27 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-09-26 20:27 - 2014-09-26 20:27 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-09-26 20:27 - 2014-09-26 20:27 - 00007680 _____ (Microsoft Corporation) |