![]() |
Win 10: Old Explorer unterbricht in kurzen Abständen Nahc Update von win 7 auf Win 10 tritt bei meinem Rechner folgenbdes Phänomen auf: Beim Aufruffen des alten Explorers oder der Systemsteuerung mit rechte Maustaste Startfenster bricht das Programm kurz danach wieder ab, es erscheint dann die vorige Oberfläche. Eine Dateisuche ist praktisch nicht möglich, da man andauernd durch die Unterbrechung wieder neu beginnen muss. Weiter kommt gelegentlich beim Starten nur ein schwarzer Bildschirm mit dem Mauszeiger: nach Neustart startet dann Win 10 wie üblich. Erlu FRST TXT: Code: Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:21-05-2016 |
Hier noch ADD TXT Code: Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x86) Version:21-05-2016 |
:hallo: Mein Name ist Jürgen und ich werde Dir bei Deinem Problem behilflich sein. Zusammen schaffen wir das...:abklatsch:
![]() Ich kann Dir niemals eine Garantie geben, dass wir alle schädlichen Dateien finden werden. Eine Formatierung ist meist der schnellere und immer der sicherste Weg, aber auch nur bei wirklicher Malware empfehlenswert. Adware & Co. können wir sehr gut entfernen. Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis Du mein clean :daumenhoc bekommst. Los geht's: Schritt 1 Downloade Dir bitte ![]()
Schritt 2 http://deeprybka.trojaner-board.de/m...mbamlogo4a.pnghttp://deeprybka.trojaner-board.de/m...mbamlogo4b.png
Schritt 3 http://filepony.de/icon/frst.pnghttp://deeprybka.trojaner-board.de/b...e/frst/sn1.PNG Bitte starte FRST erneut, markiere auch die checkbox http://deeprybka.trojaner-board.de/b...t/addition.pngund drücke auf Untersuchen. Bitte poste mir den Inhalt der beiden Logs die erstellt werden. |
Old Explorer (u.a.) unterbricht andauernd in WIN 10 Hallo, ich habe ja schon vorigen Sonntag angefragt: da zwischenzeitlich gar nichts mehr ging (dauernder kompletter Bildabbruch) habe ich eine Imagedatei von WIN 10 aufgespielt: alles funktioniert dann zunächst wunderbar- aber nur eine gewisse Zeit- dann geht das Spielchen wieder los. Eben seit dem vorletzten Suchlauf ist es wieder da: Bildunterbrechungen, der CPU wird belastet (Lüfter läuft hoch) und auch der Arbeitsspeicher ist mit 50% belastet. Hier die logs: Code: # AdwCleaner v5.118 - Bericht erstellt am 30/05/2016 um 10:23:30 Code: # AdwCleaner v5.118 - Bericht erstellt am 30/05/2016 um 10:21:31 Code: Malwarebytes Anti-Malware durchgeführt von Ernst (Administrator) auf ELINEU (30-05-2016 13:54:02) Gestartet von C:\Users\Ernst\Desktop Geladene Profile: Ernst & (Verfügbare Profile: Ernst & Administrator & Gast) Platform: Microsoft Windows 10 Home Version 1511 (X86) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\sched.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avguard.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Digital Wave Ltd.) C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe (Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe () C:\Windows\System32\SecUPDUtilSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Google Inc.) C:\Program Files\Google\Update\1.3.30.3\GoogleCrashHandler.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avgnt.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.Systray.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avshadow.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Malwarebytes) C:\desktop\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes) C:\desktop\Malwarebytes Anti-Malware\mbamservice.exe (Malwarebytes) C:\desktop\Malwarebytes Anti-Malware\mbamscheduler.exe (Microsoft Corporation) C:\Windows\WinSxS\x86_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.168_none_1a39dfbc6dff3448\TiWorker.exe konnte nicht auf den Prozess zugreifen -> explorer.exe (Microsoft Corporation) C:\Windows\System32\WerFault.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12017368 2014-02-13] (Realtek Semiconductor) HKLM\...\Run: [G Data ASM] => "C:\Program Files\G Data\InternetSecurity\DelayLoader\AutorunDelayLoader.exe" /autostart HKLM\...\Run: [Ashampoo WinOptimizer Live-Tuner2] => C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner2.exe [3516784 2015-01-12] (Ashampoo Development GmbH & Co. KG) HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [213536 2016-02-19] (Geek Software GmbH) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [157456 2015-12-17] (Apple Inc.) HKLM\...\Run: [Avira SystrayStartTrigger] => C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe [67840 2016-05-04] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [avgnt] => C:\Program Files\Avira\Antivirus\avgnt.exe [814608 2016-04-04] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2016-01-29] (NVIDIA Corporation) HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\...\Run: [MyDriveConnect.exe] => C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe [2042144 2016-04-14] (TomTom) HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\...\Run: [iCloudServices] => C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.) HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\...\Run: [iFunBox Fast App Install Handler] => C:\Program Files\i-Funbox DevTeam\iFunBox.exe [2370560 2015-04-12] (i-Funbox.com) HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\...\Run: [Dropbox Update] => C:\Users\Ernst\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-07-20] (Dropbox, Inc.) HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\...\Run: [PicPick Start] => C:\Program Files\PicPick\picpick.exe [19918280 2016-03-08] (NGWIN) HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2289664 2008-01-24] (Hewlett-Packard Company) HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\Run: [iCloudServices] => C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.) HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2007-06-27] (Nero AG) HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\Run: [ApplePhotoStreams] => C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2015-04-26] (Apple Inc.) HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [515072 2015-10-30] (Microsoft Corporation) HKU\S-1-5-21-3539214255-4280287789-3925056074-501-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2289664 2008-01-24] (Hewlett-Packard Company) HKU\S-1-5-21-3539214255-4280287789-3925056074-501-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [515072 2015-10-30] (Microsoft Corporation) HKU\S-1-5-18\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4074160 2016-04-23] (Microsoft Corporation) <==== ACHTUNG ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ernst\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-07] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ernst\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-07] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ernst\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-07] (Dropbox, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2010-01-19] ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 6.3 HD Lite Edition.lnk [2012-06-23] ShortcutTarget: PHOTOfunSTUDIO 6.3 HD Lite Edition.lnk -> C:\Program Files\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (Panasonic Corporation) Startup: C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-05-13] ShortcutTarget: Dropbox.lnk -> C:\Users\Ernst\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{1bc8b7b8-2b16-41eb-bd62-d23bb4a63b49}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{38771ef5-cbe7-406b-b95e-d17cade4807d}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{bf40525d-0b87-4751-a193-990f2fae70ce}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKU\S-1-5-21-3539214255-4280287789-3925056074-501-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> DefaultScope {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> {1F096B29-E9DA-4D64-8D63-936BE7762CC5} URL = SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://isearch.avg.com/search?cid={4898A9FD-279F-4AB5-BEB3-8F714867861C}&mid=461c0000cd1847d0811bd16d5b47c42b-8f6a348b024ad0cebf393beeb48473624affdcb3&lang=de&ds=tt014&pr=sa&d=2012-07-31 14:21:09&v=12.2.5.32&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2012-06-14] (CANON INC.) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll [2016-05-14] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-05-14] (Oracle Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2012-06-14] (CANON INC.) Toolbar: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> Kein Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - Keine Datei Toolbar: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> Kein Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - Keine Datei FireFox: ======== FF ProfilePath: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default FF SearchEngineOrder.2: FF Homepage: hxxps://www.google.de/?gws_rd=ssl FF NetworkProxy: "type", 4 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_242.dll [2016-05-13] () FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] () FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2016-01-18] (Tracker Software Products (Canada) Ltd.) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-07-03] (Foxit Corporation) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-07-03] (Foxit Corporation) FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google) FF Plugin: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-05-14] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-05-14] (Oracle Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-01-29] (NVIDIA Corporation) FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-01-29] (NVIDIA Corporation) FF Plugin: @Sibelius.com/Scorch Plugin,version=6.2.0.88 -> C:\Program Files\Sibelius Software\Scorch\npsibelius.dll [2013-03-11] () FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2016-01-18] (Tracker Software Products (Canada) Ltd.) FF Plugin: @videolan.org/vlc,version=2.1.1 -> E:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.1 -> E:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin HKU\S-1-5-21-3539214255-4280287789-3925056074-1000: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2016-01-18] (Tracker Software Products (Canada) Ltd.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll [2016-01-18] (Tracker Software Products (Canada) Ltd.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPSibelius.dll [2010-04-08] () FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\PDFNetC.dll [2010-03-31] (PDFTron Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\ScorchAxPlugin.dll [2010-04-08] () FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\ScorchPDFWrapper.dll [2010-04-08] () FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\englische-ergebnisse.xml [2012-08-12] FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\gmx-suche.xml [2012-08-12] FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\google-images.xml [2014-09-21] FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\google-maps.xml [2014-09-21] FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\lastminute.xml [2012-08-12] FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\webde-suche.xml [2012-08-12] FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2015-11-16] Chrome: ======= CHR dev: Chrome dev build erkannt! <======= ACHTUNG CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM\...\Chrome\Extension: [nphjeokkkbngjpiofnfpnafjeofjomfb] - C:\Users\Ernst\AppData\LocalLow\WOT\CHROME\WOT.crx [2012-01-12] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files\Avira\Antivirus\avmailc7.exe [970656 2016-04-04] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files\Avira\Antivirus\sched.exe [467016 2016-04-04] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\Antivirus\avguard.exe [467016 2016-04-04] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files\Avira\Antivirus\avwebg7.exe [1435704 2016-04-04] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [276424 2016-05-04] (Avira Operations GmbH & Co. KG) R2 DigitalWave.Update.Service; C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe [388968 2016-04-25] (Digital Wave Ltd.) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915600 2016-01-29] (NVIDIA Corporation) R2 HPSLPSVC; C:\Users\Ernst\AppData\Local\Temp\7zS006E\hpslpsvc32.dll [701288 2015-09-21] (Hewlett-Packard Co.) R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2008-01-24] (Hewlett-Packard Company) [Datei ist nicht signiert] R2 MBAMScheduler; C:\desktop\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\desktop\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2016-01-29] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19775632 2016-01-29] (NVIDIA Corporation) S2 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [Datei ist nicht signiert] R2 SamsungUPDUtilSvc; C:\WINDOWS\system32\SecUPDUtilSvc.exe [118576 2014-11-26] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation) R2 WO_LiveService2; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe [223600 2015-01-12] () ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.) S3 AKSUP; C:\WINDOWS\system32\drivers\aksup.sys [34472 2008-07-29] (Aladdin Knowledge Systems, Ltd.) S3 Apowersoft_AudioDevice; C:\WINDOWS\System32\drivers\Apowersoft_AudioDevice.sys [26032 2013-06-02] (Wondershare) R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [104480 2016-04-04] (Avira Operations GmbH & Co. KG) R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [27496 2012-09-04] (AVG Technologies) R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [146152 2016-04-04] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44208 2016-04-04] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [66872 2016-04-04] (Avira Operations GmbH & Co. KG) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [14920 2013-03-07] () [Datei ist nicht signiert] S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9160 2013-03-07] () [Datei ist nicht signiert] S3 FTDIBUS; C:\WINDOWS\system32\drivers\ftdibus.sys [60104 2010-07-12] (FTDI Ltd.) R2 LiveTuner2PM; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner32.sys [14088 2014-03-20] () R3 MarvinBus; C:\WINDOWS\System32\drivers\MarvinBus.sys [171520 2007-01-04] (Pinnacle Systems GmbH) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [24448 2016-03-10] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [170200 2016-05-30] (Malwarebytes) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [53120 2016-03-10] (Malwarebytes Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18576 2016-01-29] (NVIDIA Corporation) S3 NvStUSB; C:\WINDOWS\System32\drivers\nvstusb.sys [444128 2015-11-19] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad32v.sys [32912 2016-01-29] (NVIDIA Corporation) R1 RrNetCapFilterDriver; C:\WINDOWS\system32\DRIVERS\RrNetCapFilterDriver.sys [22184 2014-08-25] (Audials AG) R1 ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [31848 2016-04-04] (Avira Operations GmbH & Co. KG) R3 tbhsd; C:\WINDOWS\system32\drivers\tbhsd.sys [39048 2013-11-27] (RapidSolution Software AG) R2 tifsfilter; C:\WINDOWS\System32\DRIVERS\tifsfilt.sys [27648 2010-04-29] (Acronis) [Datei ist nicht signiert] S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation) R3 WirelessKeyboardFilter; C:\WINDOWS\System32\drivers\WirelessKeyboardFilter.sys [44776 2016-03-29] (Microsoft Corporation) R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation) S3 ZTEGsmDataCard; C:\WINDOWS\System32\drivers\zteusbgser.sys [104704 2009-04-09] (ZTE Corporation) S3 ZTEusbvoice; C:\WINDOWS\System32\drivers\ZTEusbvoice.sys [105344 2009-04-09] (ZTE Incorporated) U3 idsvc; kein ImagePath U3 wpcsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-05-30 13:54 - 2016-05-30 13:54 - 00023475 _____ C:\Users\Ernst\Desktop\FRST.txt 2016-05-30 13:53 - 2016-05-30 13:54 - 00000000 ____D C:\FRST 2016-05-30 13:52 - 2016-05-30 13:53 - 01734656 _____ (Farbar) C:\Users\Ernst\Desktop\FRST.exe 2016-05-30 13:51 - 2016-05-30 13:51 - 00018654 _____ C:\Users\Ernst\Desktop\mbam.txt 2016-05-30 10:30 - 2016-05-30 13:49 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-05-30 10:30 - 2016-05-30 10:30 - 00000898 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2016-05-30 10:30 - 2016-05-30 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-05-30 10:30 - 2016-03-10 14:09 - 00053120 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-05-30 10:30 - 2016-03-10 14:08 - 00126336 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-05-30 10:30 - 2016-03-10 14:08 - 00024448 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-05-30 10:28 - 2016-05-30 10:29 - 22851472 _____ (Malwarebytes ) C:\Users\Ernst\Desktop\mbam-setup-2.2.1.1043.exe 2016-05-30 10:20 - 2016-05-30 10:23 - 00000000 ____D C:\AdwCleaner 2016-05-30 10:17 - 2016-05-30 10:18 - 03678272 _____ C:\Users\Ernst\Desktop\AdwCleaner_5.118.exe 2016-05-29 16:24 - 2016-05-29 16:24 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2016-05-15 11:41 - 2016-05-15 11:41 - 00000000 ____D C:\Users\Ernst\Documents\MeineBackups 2016-05-15 11:28 - 2016-05-15 11:31 - 126193224 _____ C:\Users\Ernst\Downloads\TrueImage2010_d_de.exe 2016-05-15 11:21 - 2016-05-15 11:21 - 00000000 ____D C:\ProgramData\Acronis 2016-05-15 11:18 - 2016-05-15 11:18 - 00911680 _____ (Acronis) C:\WINDOWS\system32\Drivers\tdrpm258.sys 2016-05-15 11:18 - 2016-05-15 11:18 - 00160288 ____N (Acronis) C:\WINDOWS\system32\Drivers\afcdp.sys 2016-05-14 20:51 - 2016-05-14 20:51 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-05-14 20:40 - 2016-05-14 20:40 - 00000000 ____D C:\Program Files\Microsoft ASP.NET 2016-05-14 18:02 - 2016-05-14 18:02 - 00000000 ____D C:\Cortanaentfernen 2016-05-14 18:00 - 2016-05-14 18:00 - 00020468 _____ C:\Users\Ernst\Downloads\Cortana_deinstallieren.zip 2016-05-14 13:46 - 2016-05-14 13:55 - 00000000 ____D C:\Users\Ernst\AppData\Local\NVIDIA Corporation 2016-05-14 13:43 - 2016-05-14 13:54 - 00000000 ____D C:\Users\Ernst\AppData\Local\NVIDIA 2016-05-14 13:28 - 2016-01-29 14:04 - 01316184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge.dll 2016-05-14 13:28 - 2016-01-29 14:04 - 01278920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap.dll 2016-05-14 13:27 - 2016-05-14 13:27 - 00002190 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2016-05-14 13:27 - 2016-05-14 13:27 - 00000000 ____D C:\Program Files\AGEIA Technologies 2016-05-14 13:26 - 2016-01-29 10:45 - 00614848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvStreaming.exe 2016-05-14 13:25 - 2016-01-29 14:04 - 24207296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv32.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 15302712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 14497760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dum.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 11272240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 11209192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 03994560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 01060400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco3234195.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 00917048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 00912248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco3234195.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 00878648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 00032912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad32v.sys 2016-05-14 13:25 - 2016-01-29 14:04 - 00032400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap32v.dll 2016-05-14 13:24 - 2016-05-14 13:24 - 00000000 ____D C:\NVIDIA 2016-05-14 13:20 - 2016-05-14 13:24 - 227389736 _____ (NVIDIA Corporation) C:\Users\Ernst\Downloads\341.95-desktop-win10-32bit-international.exe 2016-05-14 13:07 - 2016-05-14 13:07 - 00000000 ____D C:\Program Files\Common Files\Java 2016-05-14 13:05 - 2016-05-14 13:05 - 00738368 _____ (Oracle Corporation) C:\Users\Ernst\Downloads\JavaSetup8u91.exe 2016-05-14 11:45 - 2016-05-14 11:45 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2016-05-14 10:07 - 2016-04-30 08:46 - 02974720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-05-14 10:07 - 2016-04-23 07:28 - 05796704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-05-14 10:07 - 2016-04-23 07:28 - 01561392 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-05-14 10:07 - 2016-04-23 07:28 - 01541792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-05-14 10:07 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-05-14 10:07 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-05-14 10:07 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-05-14 10:07 - 2016-04-23 07:01 - 01714520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-05-14 10:07 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-05-14 10:07 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-05-14 10:07 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-05-14 10:07 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-05-14 10:07 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-05-14 10:07 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-05-14 10:07 - 2016-04-23 06:13 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-05-14 10:07 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-05-14 10:07 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-05-14 10:07 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-05-14 10:07 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-05-14 10:07 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-05-14 10:07 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-05-14 10:07 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-05-14 10:07 - 2016-04-23 06:03 - 01899520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-05-14 10:07 - 2016-04-02 05:20 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-05-14 10:07 - 2016-04-02 05:14 - 03197440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-05-14 10:07 - 2016-03-29 09:12 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2016-05-14 10:07 - 2016-03-29 09:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2016-05-14 10:07 - 2016-03-29 08:28 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2016-05-14 10:07 - 2016-03-29 08:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2016-05-14 10:07 - 2016-03-29 08:02 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-05-14 10:07 - 2016-03-29 07:49 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-05-14 10:07 - 2016-02-24 10:50 - 02885680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll 2016-05-14 10:07 - 2016-02-24 07:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-05-14 10:07 - 2016-02-23 11:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-05-14 10:07 - 2016-02-23 11:37 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2016-05-14 10:07 - 2016-02-23 09:43 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll 2016-05-14 10:07 - 2016-02-23 09:42 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2016-05-14 10:07 - 2016-02-23 09:16 - 00396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2016-05-14 10:07 - 2016-02-23 08:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-05-14 10:06 - 2016-05-06 07:20 - 00077664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys 2016-05-14 10:06 - 2016-05-06 06:23 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-05-14 10:06 - 2016-05-06 06:13 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-05-14 10:06 - 2016-05-06 06:10 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll 2016-05-14 10:06 - 2016-05-06 06:05 - 00487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-05-14 10:06 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2016-05-14 10:06 - 2016-05-06 05:49 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2016-05-14 10:06 - 2016-04-30 08:53 - 01152000 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-05-14 10:06 - 2016-04-23 08:06 - 01232576 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00973504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00576192 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00440512 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00248512 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00149696 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-05-14 10:06 - 2016-04-23 08:06 - 00081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00042688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-05-14 10:06 - 2016-04-23 07:28 - 00550240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-05-14 10:06 - 2016-04-23 07:28 - 00545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-05-14 10:06 - 2016-04-23 07:28 - 00278368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2016-05-14 10:06 - 2016-04-23 07:28 - 00083808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2016-05-14 10:06 - 2016-04-23 07:26 - 00792328 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2016-05-14 10:06 - 2016-04-23 07:21 - 00023776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-05-14 10:06 - 2016-04-23 07:14 - 00310112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-05-14 10:06 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-05-14 10:06 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2016-05-14 10:06 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-05-14 10:06 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-05-14 10:06 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-05-14 10:06 - 2016-04-23 07:12 - 00104800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys 2016-05-14 10:06 - 2016-04-23 07:11 - 00259424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-05-14 10:06 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-05-14 10:06 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2016-05-14 10:06 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2016-05-14 10:06 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-05-14 10:06 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2016-05-14 10:06 - 2016-04-23 07:07 - 00192704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2016-05-14 10:06 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll 2016-05-14 10:06 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2016-05-14 10:06 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2016-05-14 10:06 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2016-05-14 10:06 - 2016-04-23 07:01 - 00484704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-05-14 10:06 - 2016-04-23 07:01 - 00336224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-05-14 10:06 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-05-14 10:06 - 2016-04-23 07:00 - 01396584 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-05-14 10:06 - 2016-04-23 07:00 - 01273720 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2016-05-14 10:06 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2016-05-14 10:06 - 2016-04-23 07:00 - 00049504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll 2016-05-14 10:06 - 2016-04-23 06:55 - 00430432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2016-05-14 10:06 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-05-14 10:06 - 2016-04-23 06:29 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2016-05-14 10:06 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll 2016-05-14 10:06 - 2016-04-23 06:29 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys 2016-05-14 10:06 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe 2016-05-14 10:06 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2016-05-14 10:06 - 2016-04-23 06:27 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2016-05-14 10:06 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-05-14 10:06 - 2016-04-23 06:25 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2016-05-14 10:06 - 2016-04-23 06:24 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2016-05-14 10:06 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2016-05-14 10:06 - 2016-04-23 06:24 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys 2016-05-14 10:06 - 2016-04-23 06:24 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-05-14 10:06 - 2016-04-23 06:23 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-05-14 10:06 - 2016-04-23 06:23 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2016-05-14 10:06 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2016-05-14 10:06 - 2016-04-23 06:22 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-05-14 10:06 - 2016-04-23 06:22 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll 2016-05-14 10:06 - 2016-04-23 06:21 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2016-05-14 10:06 - 2016-04-23 06:21 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-05-14 10:06 - 2016-04-23 06:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2016-05-14 10:06 - 2016-04-23 06:21 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-05-14 10:06 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-05-14 10:06 - 2016-04-23 06:20 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2016-05-14 10:06 - 2016-04-23 06:20 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2016-05-14 10:06 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll 2016-05-14 10:06 - 2016-04-23 06:20 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2016-05-14 10:06 - 2016-04-23 06:19 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll 2016-05-14 10:06 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll 2016-05-14 10:06 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-05-14 10:06 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2016-05-14 10:06 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2016-05-14 10:06 - 2016-04-23 06:17 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-05-14 10:06 - 2016-04-23 06:17 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-05-14 10:06 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-05-14 10:06 - 2016-04-23 06:16 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2016-05-14 10:06 - 2016-04-23 06:16 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2016-05-14 10:06 - 2016-04-23 06:16 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2016-05-14 10:06 - 2016-04-23 06:15 - 00612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-05-14 10:06 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2016-05-14 10:06 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00739328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-05-14 10:06 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-05-14 10:06 - 2016-04-23 06:13 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-05-14 10:06 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2016-05-14 10:06 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-05-14 10:06 - 2016-04-23 06:12 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-05-14 10:06 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-05-14 10:06 - 2016-04-23 06:11 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2016-05-14 10:06 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-05-14 10:06 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-05-14 10:06 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-05-14 10:06 - 2016-04-23 06:07 - 01793024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-05-14 10:06 - 2016-04-23 06:05 - 01895936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-05-14 10:06 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2016-05-14 10:06 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-05-14 10:06 - 2016-04-23 06:04 - 01733632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-05-14 10:06 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2016-05-14 10:06 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-05-14 10:06 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-05-14 10:06 - 2016-04-23 06:03 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-05-14 10:06 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-05-14 10:06 - 2016-04-23 06:01 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-05-14 10:06 - 2016-04-23 04:10 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2016-05-14 10:06 - 2016-04-02 06:17 - 00297072 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2016-05-14 10:06 - 2016-04-02 06:14 - 00757192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll 2016-05-14 10:06 - 2016-04-02 06:14 - 00613112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2016-05-14 10:06 - 2016-04-02 06:14 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2016-05-14 10:06 - 2016-04-02 05:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll 2016-05-14 10:06 - 2016-04-02 05:10 - 02871296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2016-05-14 10:06 - 2016-03-29 11:41 - 00875992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-05-14 10:06 - 2016-03-29 11:41 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-05-14 10:06 - 2016-03-29 11:41 - 00228696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-05-14 10:06 - 2016-03-29 11:38 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-05-14 10:06 - 2016-03-29 11:38 - 00927072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-05-14 10:06 - 2016-03-29 11:37 - 01862008 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-05-14 10:06 - 2016-03-29 11:36 - 01820512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2016-05-14 10:06 - 2016-03-29 11:33 - 00084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2016-05-14 10:06 - 2016-03-29 11:28 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2016-05-14 10:06 - 2016-03-29 11:21 - 00922456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2016-05-14 10:06 - 2016-03-29 11:20 - 00856928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2016-05-14 10:06 - 2016-03-29 11:19 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2016-05-14 10:06 - 2016-03-29 11:13 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-05-14 10:06 - 2016-03-29 10:41 - 00203104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys 2016-05-14 10:06 - 2016-03-29 10:41 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll 2016-05-14 10:06 - 2016-03-29 10:34 - 00153952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2016-05-14 10:06 - 2016-03-29 10:26 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll 2016-05-14 10:06 - 2016-03-29 10:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll 2016-05-14 10:06 - 2016-03-29 10:24 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-05-14 10:06 - 2016-03-29 10:24 - 00063008 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe 2016-05-14 10:06 - 2016-03-29 10:23 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll 2016-05-14 10:06 - 2016-03-29 10:01 - 00541304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-05-14 10:06 - 2016-03-29 09:46 - 01861984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-05-14 10:06 - 2016-03-29 09:46 - 00771424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-05-14 10:06 - 2016-03-29 09:42 - 00287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2016-05-14 10:06 - 2016-03-29 09:30 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msorcl32.dll 2016-05-14 10:06 - 2016-03-29 09:20 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll 2016-05-14 10:06 - 2016-03-29 09:20 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll 2016-05-14 10:06 - 2016-03-29 09:13 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2016-05-14 10:06 - 2016-03-29 09:11 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-05-14 10:06 - 2016-03-29 09:11 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll 2016-05-14 10:06 - 2016-03-29 09:09 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys 2016-05-14 10:06 - 2016-03-29 09:08 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll 2016-05-14 10:06 - 2016-03-29 09:06 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll 2016-05-14 10:06 - 2016-03-29 09:05 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-05-14 10:06 - 2016-03-29 09:05 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll 2016-05-14 10:06 - 2016-03-29 09:05 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll 2016-05-14 10:06 - 2016-03-29 09:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2016-05-14 10:06 - 2016-03-29 09:02 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2016-05-14 10:06 - 2016-03-29 09:02 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll 2016-05-14 10:06 - 2016-03-29 09:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll 2016-05-14 10:06 - 2016-03-29 08:56 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-05-14 10:06 - 2016-03-29 08:53 - 00424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2016-05-14 10:06 - 2016-03-29 08:53 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll 2016-05-14 10:06 - 2016-03-29 08:53 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll 2016-05-14 10:06 - 2016-03-29 08:53 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2016-05-14 10:06 - 2016-03-29 08:52 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-05-14 10:06 - 2016-03-29 08:52 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2016-05-14 10:06 - 2016-03-29 08:52 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll 2016-05-14 10:06 - 2016-03-29 08:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2016-05-14 10:06 - 2016-03-29 08:47 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2016-05-14 10:06 - 2016-03-29 08:46 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2016-05-14 10:06 - 2016-03-29 08:44 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2016-05-14 10:06 - 2016-03-29 08:44 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2016-05-14 10:06 - 2016-03-29 08:43 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2016-05-14 10:06 - 2016-03-29 08:42 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2016-05-14 10:06 - 2016-03-29 08:41 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2016-05-14 10:06 - 2016-03-29 08:41 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2016-05-14 10:06 - 2016-03-29 08:40 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-05-14 10:06 - 2016-03-29 08:39 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll 2016-05-14 10:06 - 2016-03-29 08:39 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2016-05-14 10:06 - 2016-03-29 08:37 - 01444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll 2016-05-14 10:06 - 2016-03-29 08:37 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2016-05-14 10:06 - 2016-03-29 08:36 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-05-14 10:06 - 2016-03-29 08:36 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-05-14 10:06 - 2016-03-29 08:34 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2016-05-14 10:06 - 2016-03-29 08:32 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2016-05-14 10:06 - 2016-03-29 08:32 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2016-05-14 10:06 - 2016-03-29 08:32 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2016-05-14 10:06 - 2016-03-29 08:32 - 00601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2016-05-14 10:06 - 2016-03-29 08:31 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-05-14 10:06 - 2016-03-29 08:30 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2016-05-14 10:06 - 2016-03-29 08:29 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2016-05-14 10:06 - 2016-03-29 08:28 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2016-05-14 10:06 - 2016-03-29 08:27 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2016-05-14 10:06 - 2016-03-29 08:26 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll 2016-05-14 10:06 - 2016-03-29 08:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe 2016-05-14 10:06 - 2016-03-29 08:23 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll 2016-05-14 10:06 - 2016-03-29 08:18 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll 2016-05-14 10:06 - 2016-03-29 08:14 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2016-05-14 10:06 - 2016-03-29 08:13 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2016-05-14 10:06 - 2016-03-29 08:10 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2016-05-14 10:06 - 2016-03-29 08:07 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-05-14 10:06 - 2016-03-29 08:06 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2016-05-14 10:06 - 2016-03-29 08:06 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2016-05-14 10:06 - 2016-03-29 08:06 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2016-05-14 10:06 - 2016-03-29 08:06 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll 2016-05-14 10:06 - 2016-03-29 08:05 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2016-05-14 10:06 - 2016-03-29 08:04 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll 2016-05-14 10:06 - 2016-03-29 07:58 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-05-14 10:06 - 2016-03-29 07:55 - 00614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2016-05-14 10:06 - 2016-03-29 07:46 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2016-05-14 10:06 - 2016-03-29 07:43 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2016-05-14 10:06 - 2016-03-29 07:38 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-05-14 10:06 - 2016-03-29 07:36 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2016-05-14 10:06 - 2016-03-29 07:36 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll 2016-05-14 10:06 - 2016-03-29 07:32 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2016-05-14 10:06 - 2016-03-29 07:30 - 00782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll 2016-05-14 10:06 - 2016-03-29 07:25 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2016-05-14 10:06 - 2016-03-29 07:25 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2016-05-14 10:06 - 2016-03-29 07:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2016-05-14 10:06 - 2016-03-29 07:24 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll 2016-05-14 10:06 - 2016-03-29 07:21 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll 2016-05-14 10:06 - 2016-03-01 07:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-05-14 10:06 - 2016-02-24 10:57 - 01174368 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-05-14 10:06 - 2016-02-24 10:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2016-05-14 10:06 - 2016-02-24 10:15 - 00107872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS 2016-05-14 10:06 - 2016-02-24 10:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-05-14 10:06 - 2016-02-24 10:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2016-05-14 10:06 - 2016-02-24 10:03 - 00510880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2016-05-14 10:06 - 2016-02-24 09:59 - 00118304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe 2016-05-14 10:06 - 2016-02-24 09:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll 2016-05-14 10:06 - 2016-02-24 09:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2016-05-14 10:06 - 2016-02-24 09:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2016-05-14 10:06 - 2016-02-24 09:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll 2016-05-14 10:06 - 2016-02-24 08:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll 2016-05-14 10:06 - 2016-02-24 08:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2016-05-14 10:06 - 2016-02-24 08:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll 2016-05-14 10:06 - 2016-02-24 08:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll 2016-05-14 10:06 - 2016-02-24 08:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2016-05-14 10:06 - 2016-02-24 08:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll 2016-05-14 10:06 - 2016-02-24 08:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll 2016-05-14 10:06 - 2016-02-24 08:37 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2016-05-14 10:06 - 2016-02-24 08:37 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll 2016-05-14 10:06 - 2016-02-24 08:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll 2016-05-14 10:06 - 2016-02-24 08:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll 2016-05-14 10:06 - 2016-02-24 08:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll 2016-05-14 10:06 - 2016-02-24 08:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll 2016-05-14 10:06 - 2016-02-24 08:29 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll 2016-05-14 10:06 - 2016-02-24 08:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll 2016-05-14 10:06 - 2016-02-24 08:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll 2016-05-14 10:06 - 2016-02-24 08:27 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2016-05-14 10:06 - 2016-02-24 08:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll 2016-05-14 10:06 - 2016-02-24 08:23 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2016-05-14 10:06 - 2016-02-24 08:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll 2016-05-14 10:06 - 2016-02-24 08:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2016-05-14 10:06 - 2016-02-24 08:21 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll 2016-05-14 10:06 - 2016-02-24 08:21 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2016-05-14 10:06 - 2016-02-24 08:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2016-05-14 10:06 - 2016-02-24 08:20 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll 2016-05-14 10:06 - 2016-02-24 08:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2016-05-14 10:06 - 2016-02-24 08:18 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll 2016-05-14 10:06 - 2016-02-24 08:18 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2016-05-14 10:06 - 2016-02-24 08:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll 2016-05-14 10:06 - 2016-02-24 08:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2016-05-14 10:06 - 2016-02-24 08:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2016-05-14 10:06 - 2016-02-24 08:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2016-05-14 10:06 - 2016-02-24 08:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2016-05-14 10:06 - 2016-02-24 08:09 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll 2016-05-14 10:06 - 2016-02-24 08:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2016-05-14 10:06 - 2016-02-24 08:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2016-05-14 10:06 - 2016-02-24 08:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2016-05-14 10:06 - 2016-02-24 08:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe 2016-05-14 10:06 - 2016-02-24 08:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2016-05-14 10:06 - 2016-02-24 07:55 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll 2016-05-14 10:06 - 2016-02-24 07:51 - 01184256 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2016-05-14 10:06 - 2016-02-24 07:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2016-05-14 10:06 - 2016-02-24 07:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll 2016-05-14 10:06 - 2016-02-23 12:33 - 00354656 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll 2016-05-14 10:06 - 2016-02-23 12:33 - 00354656 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-05-14 10:06 - 2016-02-23 12:32 - 00462688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2016-05-14 10:06 - 2016-02-23 12:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll 2016-05-14 10:06 - 2016-02-23 11:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-05-14 10:06 - 2016-02-23 11:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2016-05-14 10:06 - 2016-02-23 11:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2016-05-14 10:06 - 2016-02-23 11:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-05-14 10:06 - 2016-02-23 11:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2016-05-14 10:06 - 2016-02-23 11:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2016-05-14 10:06 - 2016-02-23 11:37 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-05-14 10:06 - 2016-02-23 11:23 - 00124256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2016-05-14 10:06 - 2016-02-23 10:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2016-05-14 10:06 - 2016-02-23 10:51 - 00381280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2016-05-14 10:06 - 2016-02-23 10:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2016-05-14 10:06 - 2016-02-23 10:25 - 00722432 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll 2016-05-14 10:06 - 2016-02-23 10:25 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys 2016-05-14 10:06 - 2016-02-23 10:18 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll 2016-05-14 10:06 - 2016-02-23 10:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-05-14 10:06 - 2016-02-23 10:14 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll 2016-05-14 10:06 - 2016-02-23 10:13 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll 2016-05-14 10:06 - 2016-02-23 10:08 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys 2016-05-14 10:06 - 2016-02-23 10:07 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll 2016-05-14 10:06 - 2016-02-23 10:03 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys 2016-05-14 10:06 - 2016-02-23 10:01 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll 2016-05-14 10:06 - 2016-02-23 10:01 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2016-05-14 10:06 - 2016-02-23 09:51 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll 2016-05-14 10:06 - 2016-02-23 09:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll 2016-05-14 10:06 - 2016-02-23 09:50 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2016-05-14 10:06 - 2016-02-23 09:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-05-14 10:06 - 2016-02-23 09:48 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll 2016-05-14 10:06 - 2016-02-23 09:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2016-05-14 10:06 - 2016-02-23 09:46 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll 2016-05-14 10:06 - 2016-02-23 09:45 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2016-05-14 10:06 - 2016-02-23 09:41 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2016-05-14 10:06 - 2016-02-23 09:40 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2016-05-14 10:06 - 2016-02-23 09:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-05-14 10:06 - 2016-02-23 09:38 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2016-05-14 10:06 - 2016-02-23 09:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2016-05-14 10:06 - 2016-02-23 09:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2016-05-14 10:06 - 2016-02-23 09:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2016-05-14 10:06 - 2016-02-23 09:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-05-14 10:06 - 2016-02-23 09:28 - 00810496 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2016-05-14 10:06 - 2016-02-23 09:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-05-14 10:06 - 2016-02-23 09:24 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2016-05-14 10:06 - 2016-02-23 09:24 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2016-05-14 10:06 - 2016-02-23 09:23 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-05-14 10:06 - 2016-02-23 09:20 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll 2016-05-14 10:06 - 2016-02-23 09:14 - 00694272 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2016-05-14 10:06 - 2016-02-23 09:05 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-05-14 10:06 - 2016-02-23 08:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2016-05-14 10:06 - 2016-02-23 08:36 - 01931776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2016-05-14 10:06 - 2016-02-23 08:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-05-14 10:06 - 2016-02-09 05:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll 2016-05-14 10:06 - 2016-02-09 05:09 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2016-05-14 10:05 - 2016-04-23 06:35 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-05-14 10:05 - 2016-04-23 06:28 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2016-05-14 10:05 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll 2016-05-14 10:05 - 2016-04-23 06:27 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2016-05-14 10:05 - 2016-04-23 06:27 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-05-14 10:05 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-05-14 10:05 - 2016-04-23 06:23 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-05-14 10:05 - 2016-04-23 06:19 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-05-14 10:05 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-05-14 10:05 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml 2016-05-14 10:05 - 2016-03-29 09:28 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys 2016-05-14 10:05 - 2016-03-29 09:20 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2016-05-14 10:05 - 2016-03-29 09:20 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll 2016-05-14 10:05 - 2016-03-29 09:19 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2016-05-14 10:05 - 2016-03-29 09:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll 2016-05-14 10:05 - 2016-03-29 09:16 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2016-05-14 10:05 - 2016-03-29 09:14 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll 2016-05-14 10:05 - 2016-03-29 09:11 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll 2016-05-14 10:05 - 2016-03-29 09:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll 2016-05-14 10:05 - 2016-03-29 09:08 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll 2016-05-14 10:05 - 2016-03-29 09:06 - 00066560 _____ (Microsoft Corporation) C:\WINDO |
WS\system32\tzautoupdate.dll 2016-05-14 10:05 - 2016-03-29 09:06 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe 2016-05-14 10:05 - 2016-03-29 09:05 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll 2016-05-14 10:05 - 2016-03-29 09:05 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll 2016-05-14 10:05 - 2016-03-29 08:52 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2016-05-14 10:05 - 2016-03-29 08:27 - 00162816 _____ C:\WINDOWS\system32\MTF.dll 2016-05-14 10:05 - 2016-03-29 08:27 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2016-05-14 10:05 - 2016-03-29 08:26 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2016-05-14 10:05 - 2016-02-24 08:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll 2016-05-14 10:05 - 2016-02-24 08:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll 2016-05-14 10:05 - 2016-02-24 08:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll 2016-05-14 10:05 - 2016-02-24 08:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2016-05-14 10:05 - 2016-02-23 10:16 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll 2016-05-14 10:05 - 2016-02-23 10:05 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll 2016-05-14 10:05 - 2016-02-23 09:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll 2016-05-14 10:05 - 2016-02-23 09:44 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2016-05-14 09:22 - 2016-05-14 09:22 - 00000000 ____D C:\ProgramData\HP 2016-05-14 09:21 - 2016-05-14 09:21 - 02474920 _____ C:\Users\Ernst\Downloads\hppiw.exe 2016-05-13 19:47 - 2016-05-13 19:47 - 00000000 ____D C:\Users\Ernst\AppData\Local\Comms 2016-05-13 19:12 - 2016-05-13 19:12 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Avira 2016-05-13 19:07 - 2016-04-04 17:07 - 00146152 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2016-05-13 19:07 - 2016-04-04 17:07 - 00104480 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2016-05-13 19:07 - 2016-04-04 17:07 - 00066872 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2016-05-13 19:07 - 2016-04-04 17:07 - 00044208 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys 2016-05-13 19:07 - 2016-04-04 17:07 - 00031848 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\ssmdrv.sys 2016-05-13 19:04 - 2016-05-13 19:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-05-13 19:04 - 2016-05-13 19:04 - 00001279 _____ C:\Users\Public\Desktop\Avira Launcher.lnk 2016-05-13 19:03 - 2016-05-13 19:07 - 00000000 ____D C:\ProgramData\Avira 2016-05-13 19:03 - 2016-05-13 19:07 - 00000000 ____D C:\Program Files\Avira 2016-05-13 19:03 - 2016-05-13 19:03 - 04898016 _____ (Avira Operations GmbH & Co. KG) C:\Users\Ernst\Downloads\avira_de_av_573608a76d994__ws.exe 2016-05-13 18:29 - 2016-05-29 12:26 - 00000000 ____D C:\WINDOWS\Minidump 2016-05-13 18:00 - 2016-05-13 17:47 - 00000000 ___DC C:\WINDOWS\Panther 2016-05-13 17:58 - 2016-05-13 17:58 - 00002394 _____ C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-05-13 17:58 - 2016-05-13 17:58 - 00000000 ___RD C:\Users\Ernst\OneDrive 2016-05-13 17:57 - 2016-05-13 17:58 - 00000000 ____D C:\Windows.old 2016-05-13 17:56 - 2016-05-13 17:56 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2016-05-13 17:55 - 2015-10-29 19:42 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2016-05-13 17:55 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2016-05-13 17:55 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2016-05-13 17:54 - 2016-05-13 17:54 - 00001091 _____ C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\WINDOWS\system32\XPSViewer 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\WINDOWS\system32\msmq 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\Program Files\Reference Assemblies 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\Program Files\MSBuild 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\inetpub 2016-05-13 17:53 - 2015-10-23 18:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2016-05-13 17:53 - 2015-10-23 18:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2016-05-13 17:53 - 2015-10-23 18:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2016-05-13 17:52 - 2016-05-13 17:52 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-05-13 17:52 - 2016-05-13 17:52 - 00279376 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-05-13 17:52 - 2016-05-13 17:52 - 00000000 ____D C:\Users\Ernst\AppData\Local\Publishers 2016-05-13 17:51 - 2016-05-13 17:51 - 00000000 ____D C:\Users\Ernst\AppData\Local\ActiveSync 2016-05-13 17:49 - 2016-05-13 18:21 - 00000000 ____D C:\Users\Ernst\AppData\Local\Packages 2016-05-13 17:49 - 2016-05-13 17:49 - 00000020 ___SH C:\Users\Ernst\ntuser.ini 2016-05-13 17:49 - 2016-05-13 17:49 - 00000000 ____D C:\Users\Ernst\AppData\Local\TileDataLayer 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Vorlagen 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Startmenü 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2016-05-13 17:36 - 2016-05-13 17:36 - 00021532 _____ C:\WINDOWS\system32\emptyregdb.dat 2016-05-13 17:20 - 2016-05-13 17:20 - 00001544 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2016-05-13 17:20 - 2016-05-13 17:20 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs 2016-05-13 17:20 - 2016-05-13 17:20 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs 2016-05-13 17:12 - 2016-05-13 17:12 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2016-05-13 17:07 - 2016-05-29 15:46 - 00000000 ____D C:\Users\Ernst 2016-05-13 17:07 - 2016-05-13 17:35 - 00000000 ____D C:\Users\Gast 2016-05-13 17:07 - 2016-05-13 17:29 - 00000000 ____D C:\Users\Administrator 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Vorlagen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Startmenü 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Netzwerkumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Lokale Einstellungen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Eigene Dateien 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Druckumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Videos 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Musik 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Bilder 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\AppData\Local\Verlauf 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\AppData\Local\Anwendungsdaten 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Anwendungsdaten 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Vorlagen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Startmenü 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Netzwerkumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Lokale Einstellungen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Eigene Dateien 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Druckumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Documents\Eigene Videos 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Documents\Eigene Musik 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Documents\Eigene Bilder 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\AppData\Local\Verlauf 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\AppData\Local\Anwendungsdaten 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Anwendungsdaten 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Vorlagen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Startmenü 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Netzwerkumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Lokale Einstellungen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Eigene Dateien 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Druckumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Documents\Eigene Videos 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Documents\Eigene Musik 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Documents\Eigene Bilder 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\AppData\Local\Verlauf 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\AppData\Local\Anwendungsdaten 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Anwendungsdaten 2016-05-13 17:06 - 2016-05-30 13:52 - 02039076 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-05-13 17:04 - 2016-05-30 13:45 - 00000000 ____D C:\ProgramData\NVIDIA 2016-05-13 17:04 - 2016-05-14 13:56 - 00000253 _____ C:\WINDOWS\hpbafd.ini 2016-05-13 17:04 - 2016-01-29 12:14 - 04397624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2016-05-13 17:04 - 2016-01-29 12:14 - 03068864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc.dll 2016-05-13 17:04 - 2016-01-29 12:14 - 02563128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2016-05-13 17:04 - 2016-01-29 12:14 - 00678968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2016-05-13 17:04 - 2016-01-29 12:14 - 00381888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2016-05-13 17:04 - 2016-01-29 12:14 - 00070200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2016-05-13 17:04 - 2016-01-28 18:18 - 06150607 _____ C:\WINDOWS\system32\nvcoproc.bin 2016-05-13 17:03 - 2016-05-14 13:46 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-05-13 17:03 - 2016-05-14 13:28 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2016-05-13 17:03 - 2016-05-13 17:03 - 00000000 ____H C:\ProgramData\DP45977C.lfl 2016-05-13 17:03 - 2016-05-13 17:03 - 00000000 ____D C:\WINDOWS\system32\RTCOM 2016-05-13 17:03 - 2016-05-13 17:03 - 00000000 ____D C:\Program Files\Realtek 2016-05-13 16:03 - 2016-05-13 17:38 - 00021881 _____ C:\WINDOWS\diagerr.xml 2016-05-13 16:03 - 2016-05-13 17:38 - 00020958 _____ C:\WINDOWS\diagwrn.xml 2016-05-13 14:54 - 2016-05-13 17:23 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2016-05-12 10:14 - 2016-05-12 10:14 - 00000931 _____ C:\Users\Ernst\Documents\AL-KO B2C Ersatzteilsystem - Warenkorb.htm 2016-05-12 09:53 - 2016-05-12 10:25 - 00015872 ___SH C:\Users\Ernst\Thumbs.db 2016-05-10 21:29 - 2016-05-10 21:29 - 00000000 ____D C:\ProgramData\Baidu 2016-05-10 20:30 - 2016-05-10 20:30 - 00000000 ____D C:\Users\Ernst\Documents\video_out 2016-05-10 20:26 - 2016-05-10 20:26 - 00001161 _____ C:\Users\Ernst\Desktop\amvtransform.lnk 2016-05-10 20:25 - 2016-05-13 17:23 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Media Player Utilities 4.46 2016-05-10 20:25 - 2016-05-10 20:25 - 00000000 ____D C:\Program Files\Media Player Utilities 4.46 2016-05-10 09:14 - 2016-05-10 09:14 - 05482783 _____ C:\Users\Ernst\Documents\ehvmitteilung2016.pdf 2016-05-02 13:23 - 2016-05-02 16:31 - 00000000 ____D C:\Program Files\Mozilla Thunderbird 2016-04-30 15:24 - 2016-04-30 15:24 - 01334540 _____ (Sebastien.warin.fr ) C:\Users\Ernst\Downloads\SWYH_1.4.16069.exe ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-05-30 13:54 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-05-30 13:52 - 2016-02-13 13:57 - 00870322 _____ C:\WINDOWS\system32\perfh007.dat 2016-05-30 13:52 - 2016-02-13 13:57 - 00189546 _____ C:\WINDOWS\system32\perfc007.dat 2016-05-30 13:52 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF 2016-05-30 13:46 - 2015-03-21 11:14 - 00000266 _____ C:\WINDOWS\Tasks\AbelssoftPreloader.job 2016-05-30 13:46 - 2011-01-08 10:44 - 00001094 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-05-30 13:45 - 2016-02-13 14:30 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-05-30 13:45 - 2015-10-30 07:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2016-05-30 13:43 - 2015-07-20 12:57 - 00001224 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3539214255-4280287789-3925056074-1000UA.job 2016-05-30 13:43 - 2010-01-18 18:05 - 00000000 ____D C:\Program Files\Digital Video Converter 2016-05-30 13:18 - 2011-01-08 10:44 - 00001098 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-05-30 13:17 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\rescache 2016-05-30 12:57 - 2012-09-23 10:36 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-05-29 18:24 - 2010-06-08 20:37 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Audacity 2016-05-29 17:17 - 2011-01-23 11:06 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\vlc 2016-05-29 16:30 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps 2016-05-29 15:50 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-05-29 12:26 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\MsDtc 2016-05-29 11:36 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-05-15 12:33 - 2010-05-02 10:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis 2016-05-15 12:33 - 2010-04-29 14:38 - 00000000 ____D C:\Program Files\Common Files\Acronis 2016-05-15 11:42 - 2010-05-02 11:02 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Acronis 2016-05-15 11:22 - 2010-04-29 14:38 - 00158272 _____ (Acronis) C:\WINDOWS\system32\Drivers\snapman.sys 2016-05-15 06:43 - 2015-07-20 12:57 - 00001172 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3539214255-4280287789-3925056074-1000Core.job 2016-05-14 17:36 - 2013-11-12 09:14 - 00001153 _____ C:\Users\Ernst\Desktop\KaraFun Player 2.lnk 2016-05-14 17:36 - 2013-11-12 09:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KaraFun Player 2 2016-05-14 17:36 - 2013-11-12 09:14 - 00000000 ____D C:\Program Files\KaraFun Player 2 2016-05-14 15:22 - 2016-02-13 14:34 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-05-14 15:20 - 2015-12-13 20:32 - 00000000 ____D C:\Users\Ernst\.idlerc 2016-05-14 14:02 - 2010-01-16 19:06 - 00000000 ____D C:\Users\Ernst\AppData\Local\ElevatedDiagnostics 2016-05-14 13:57 - 2010-01-17 15:09 - 00000349 _____ C:\Users\Public\Documents\PCLECHAL.INI 2016-05-14 13:28 - 2010-01-16 14:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2016-05-14 13:27 - 2010-05-06 13:32 - 00000000 ____D C:\temp 2016-05-14 13:27 - 2010-01-16 14:45 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard 2016-05-14 13:08 - 2015-03-09 18:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2016-05-14 13:08 - 2014-10-23 21:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-05-14 13:08 - 2013-09-14 09:19 - 00000000 ____D C:\ProgramData\Oracle 2016-05-14 13:08 - 2010-02-05 19:46 - 00000000 ____D C:\Program Files\Java 2016-05-14 13:07 - 2015-10-01 17:39 - 00000000 ____D C:\Users\Ernst\.oracle_jre_usage 2016-05-14 13:07 - 2015-03-18 18:50 - 00095808 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2016-05-14 11:30 - 2011-12-07 16:35 - 00000848 _____ C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Zertifikatsmanager.lnk 2016-05-14 11:13 - 2013-09-06 18:49 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\DVDVideoSoft 2016-05-14 10:44 - 2016-02-13 05:25 - 00489088 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-05-14 10:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-05-14 10:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2016-05-14 10:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-05-14 10:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-05-14 10:41 - 2015-10-30 07:13 - 00000000 ____D C:\WINDOWS\system32\Dism 2016-05-14 10:40 - 2016-02-13 14:15 - 00000000 ____D C:\Program Files\Windows Journal 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 __RSD C:\WINDOWS\Media 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Provisioning 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Portable Devices 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Multimedia Platform 2016-05-14 10:39 - 2015-10-30 07:48 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2016-05-14 10:37 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-05-14 08:52 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppCompat 2016-05-13 19:03 - 2015-03-09 18:10 - 00000000 ____D C:\ProgramData\Package Cache 2016-05-13 19:01 - 2010-01-16 22:18 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2016-05-13 18:55 - 2011-08-07 14:34 - 00000000 ____D C:\MeWDB-X 2016-05-13 18:50 - 2013-09-30 12:57 - 00000000 ____D C:\Program Files\MMI PHARMINDEX 2016-05-13 18:40 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\spool 2016-05-13 18:37 - 2014-05-08 14:43 - 00000000 ____D C:\ProgramData\G Data 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ___SD C:\WINDOWS\system32\Configuration 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\winevt 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\setup 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\ras 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\MUI 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\IME 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\Com 2016-05-13 18:35 - 2015-10-30 07:13 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-05-13 18:35 - 2015-10-30 07:13 - 00000000 ____D C:\WINDOWS\system32\SMI 2016-05-13 18:35 - 2014-05-08 14:43 - 00000000 ____D C:\Program Files\G Data 2016-05-13 18:00 - 2015-10-30 07:48 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2016-05-13 17:56 - 2013-08-27 14:29 - 00000000 ___RD C:\Users\Ernst\Dropbox 2016-05-13 17:56 - 2013-08-27 14:25 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Dropbox 2016-05-13 17:55 - 2016-02-13 14:01 - 00000000 ____D C:\WINDOWS\OCR 2016-05-13 17:54 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2016-05-13 17:54 - 2015-10-30 07:45 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2016-05-13 17:54 - 2015-10-30 07:45 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2016-05-13 17:54 - 2015-10-30 07:45 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2016-05-13 17:54 - 2015-10-30 07:45 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2016-05-13 17:54 - 2015-10-30 07:45 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2016-05-13 17:54 - 2015-10-30 07:45 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 01014272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2016-05-13 17:53 - 2015-10-30 07:45 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2016-05-13 17:53 - 2015-10-30 07:45 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2016-05-13 17:53 - 2015-10-30 07:45 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2016-05-13 17:53 - 2015-10-30 07:45 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2016-05-13 17:39 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2016-05-13 17:39 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows NT 2016-05-13 17:37 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Registration 2016-05-13 17:35 - 2015-10-30 07:48 - 00000000 __RHD C:\Users\Public\Libraries 2016-05-13 17:28 - 2013-11-17 15:30 - 00000000 ____D C:\Program Files\SamsungPrinterLiveUpdateInstaller 2016-05-13 17:23 - 2016-03-16 21:09 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDFtoMusic 2016-05-13 17:23 - 2016-02-23 19:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-05-13 17:23 - 2016-02-23 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer 2016-05-13 17:23 - 2016-01-12 22:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AllDup 2016-05-13 17:23 - 2015-12-13 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7 2016-05-13 17:23 - 2015-12-13 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plex Media Server 2016-05-13 17:23 - 2015-11-26 16:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2016-05-13 17:23 - 2015-11-24 10:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CD to MP3 Freeware 2016-05-13 17:23 - 2015-10-30 07:13 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2016-05-13 17:23 - 2015-10-28 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ! 2016-05-13 17:23 - 2015-10-25 15:31 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center 2016-05-13 17:23 - 2015-10-18 15:57 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers 2016-05-13 17:23 - 2015-09-24 07:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!Fernzugang 2016-05-13 17:23 - 2015-09-06 10:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\POIbase 2016-05-13 17:23 - 2015-08-25 20:57 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EL-Demo Softland 2016-05-13 17:23 - 2015-08-20 07:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2016-05-13 17:23 - 2015-07-18 10:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\E.M. Free Photo Collage 2016-05-13 17:23 - 2015-06-12 12:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\i-Funbox DevTeam 2016-05-13 17:23 - 2015-06-06 11:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2016-05-13 17:23 - 2015-05-30 11:22 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVR-Capture 2016-05-13 17:23 - 2015-03-21 11:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC-Putzer 2015 2016-05-13 17:23 - 2015-02-01 10:54 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PhotoDirector 5 2016-05-13 17:23 - 2014-12-30 14:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom 2016-05-13 17:23 - 2014-12-22 09:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audials 12 2016-05-13 17:23 - 2014-10-02 14:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QGroundControl 2016-05-13 17:23 - 2014-09-16 15:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader 2016-05-13 17:23 - 2014-09-11 08:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stream What You Hear (SWYH) 2016-05-13 17:23 - 2014-07-08 19:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeOCR 2016-05-13 17:23 - 2013-12-23 09:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audials 11 2016-05-13 17:23 - 2013-12-12 15:30 - 00000000 ____D C:\WINDOWS\de 2016-05-13 17:23 - 2013-12-12 14:30 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2016-05-13 17:23 - 2013-12-12 14:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2016-05-13 17:23 - 2013-11-18 19:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon iP7200 series Benutzerregistrierung 2016-05-13 17:23 - 2013-11-05 22:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KaraFun Player 2016-05-13 17:23 - 2013-10-27 12:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2016-05-13 17:23 - 2013-09-27 20:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 9.2.2 2016-05-13 17:23 - 2013-09-12 19:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Editor 3.3 2016-05-13 17:23 - 2013-09-06 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2016-05-13 17:23 - 2013-08-31 19:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\proDAD 2016-05-13 17:23 - 2013-08-31 16:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CD-LabelPrint 2016-05-13 17:23 - 2013-08-31 15:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon iP7200 series Manual 2016-05-13 17:23 - 2013-08-31 15:51 - 00000000 ____D C:\WINDOWS\system32\STRING 2016-05-13 17:23 - 2012-02-04 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AudibleManager 2016-05-13 17:23 - 2011-08-22 16:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Telekom Fotoservice 2016-05-13 17:23 - 2011-06-01 19:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SCM Microsystems Tools 2016-05-13 17:23 - 2011-04-17 10:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle VideoSpin 2016-05-13 17:23 - 2011-03-24 20:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Handbrake 2016-05-13 17:23 - 2011-03-12 20:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPER © v2011.build.46 (Feb 12, 2011) 2016-05-13 17:23 - 2011-02-09 09:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AmazingMIDI 2016-05-13 17:23 - 2011-01-23 17:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free M4a to MP3 Converter 2016-05-13 17:23 - 2011-01-21 19:19 - 00000000 ____D C:\WINDOWS\system32\custom matrices 2016-05-13 17:23 - 2011-01-21 19:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 - Codec Pack 2016-05-13 17:23 - 2011-01-03 09:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2016-05-13 17:23 - 2010-11-16 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghostscript 2016-05-13 17:23 - 2010-11-13 18:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Neuratron 2016-05-13 17:23 - 2010-11-13 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sibelius Software 2016-05-13 17:23 - 2010-09-18 10:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreePDF 2016-05-13 17:23 - 2010-09-18 10:12 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ghostscript 2016-05-13 17:23 - 2010-08-24 21:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\svnet 2016-05-13 17:23 - 2010-06-13 15:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Essentials 2016-05-13 17:23 - 2010-06-13 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2016-05-13 17:23 - 2010-05-19 05:47 - 00000000 ____D C:\WINDOWS\WindowsMobile 2016-05-13 17:23 - 2010-05-15 17:25 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool 2016-05-13 17:23 - 2010-05-05 19:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Hollywood FX 6.0 for Studio 11 2016-05-13 17:23 - 2010-03-16 23:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iPhoto Plus 4 2016-05-13 17:23 - 2010-03-14 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyVoice 2016-05-13 17:23 - 2010-02-06 17:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AviSynth 2.5 2016-05-13 17:23 - 2010-02-06 17:09 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\multiAVCHD 2016-05-13 17:23 - 2010-02-06 16:59 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ODBC 2016-05-13 17:23 - 2010-02-06 11:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartCutter PsTs 20091004 2016-05-13 17:23 - 2010-01-30 19:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VDS-Expert QM 2016-05-13 17:23 - 2010-01-30 19:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vanBasco's Karaoke Player 2016-05-13 17:23 - 2010-01-26 21:56 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-05-13 17:23 - 2010-01-26 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-05-13 17:23 - 2010-01-19 22:11 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\P A I P 2016-05-13 17:23 - 2010-01-19 14:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2016-05-13 17:23 - 2010-01-18 19:49 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WS_FTP 2016-05-13 17:23 - 2010-01-18 18:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digital Video Converter 2016-05-13 17:23 - 2010-01-18 17:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2016-05-13 17:23 - 2010-01-17 20:55 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling 2016-05-13 17:20 - 2009-07-14 04:37 - 00000000 ____D C:\Users\Default.migrated 2016-05-13 17:14 - 2012-02-04 17:25 - 00000000 ____D C:\WINDOWS\system32\SPReview 2016-05-13 17:14 - 2012-02-04 17:25 - 00000000 ____D C:\WINDOWS\system32\EventProviders 2016-05-13 17:13 - 2016-02-13 14:15 - 00000000 ____D C:\WINDOWS\ShellNew 2016-05-13 17:13 - 2016-02-13 13:57 - 00000000 ____D C:\WINDOWS\DigitalLocker 2016-05-13 17:13 - 2015-10-30 07:48 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2016-05-13 17:13 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\System 2016-05-13 17:13 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\schemas 2016-05-13 17:13 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Help 2016-05-13 17:13 - 2013-08-31 15:52 - 00000000 ___HD C:\WINDOWS\system32\CanonIJ Uninstaller Information 2016-05-13 17:13 - 2013-08-24 23:01 - 00000000 __SHD C:\WINDOWS\system32\%APPDATA% 2016-05-13 17:13 - 2011-01-13 20:29 - 00000000 ____D C:\WINDOWS\system32\Adobe 2016-05-13 17:12 - 2016-02-23 01:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 2016-05-13 17:12 - 2015-10-30 07:48 - 00000000 __SHD C:\Program Files\Windows Sidebar 2016-05-13 17:12 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Common Files\System 2016-05-13 17:12 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2016-05-13 17:12 - 2015-09-20 21:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bullzip 2016-05-13 17:12 - 2015-09-20 07:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security 2016-05-13 17:12 - 2015-03-21 11:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie 2016-05-13 17:12 - 2015-01-31 20:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe 2016-05-13 17:12 - 2014-09-30 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo 2016-05-13 17:12 - 2013-11-18 19:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon iP7200 series 2016-05-13 17:12 - 2013-11-04 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EURACOM_4D03 2016-05-13 17:12 - 2013-08-31 15:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2016-05-13 17:12 - 2012-06-08 09:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panasonic 2016-05-13 17:12 - 2012-01-29 19:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Biet-O-Matic 2016-05-13 17:12 - 2011-06-01 19:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SCM Microsystems 2016-05-13 17:12 - 2010-11-21 12:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon 2016-05-13 17:12 - 2010-06-06 22:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aura4You 2016-05-13 17:12 - 2010-05-05 19:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Studio 11 2016-05-13 17:12 - 2010-02-18 14:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon 2016-05-13 17:12 - 2010-02-07 12:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AceBIT 2016-05-13 17:12 - 2010-01-23 11:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\T-Online 2016-05-13 17:12 - 2009-07-14 10:56 - 00000000 ___RD C:\Users\Public\Recorded TV 2016-05-13 17:12 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\Microsoft Games 2016-05-13 17:12 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\DVD Maker 2016-05-13 16:27 - 2009-07-14 06:34 - 00023168 _____ C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-05-13 16:27 - 2009-07-14 06:34 - 00023168 _____ C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-05-13 16:03 - 2016-02-13 15:27 - 00000000 ___HD C:\$WINDOWS.~BT 2016-05-13 15:36 - 2010-12-08 22:12 - 00325120 ___SH C:\Users\Ernst\Downloads\Thumbs.db 2016-05-12 10:06 - 2010-12-08 23:11 - 136686448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-05-11 21:57 - 2015-10-30 07:49 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2016-05-11 21:57 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2016-05-11 12:28 - 2013-11-09 19:20 - 00000000 ____D C:\Users\Ernst\AppData\Local\FRITZ! 2016-05-09 17:33 - 2015-10-25 15:31 - 00001370 _____ C:\Users\Ernst\Desktop\CopyTrans Control Center.lnk 2016-05-09 16:41 - 2012-05-06 18:05 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2016-05-03 13:33 - 2014-09-15 15:57 - 00000000 ____D C:\Program Files\Common Files\DVDVideoSoft 2016-05-03 13:33 - 2013-09-06 18:49 - 00000000 ____D C:\Program Files\DVDVideoSoft 2016-04-30 15:25 - 2014-09-11 08:31 - 00001023 _____ C:\Users\Public\Desktop\Stream What You Hear (SWYH).lnk 2016-04-30 15:25 - 2014-09-11 08:31 - 00000000 ____D C:\Program Files\Stream What You Hear ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-08-25 20:52 - 2015-08-25 20:52 - 0002314 _____ () C:\Program Files\INSTALL.LOG 2010-11-13 18:16 - 2010-11-13 18:16 - 0000604 ____H () C:\Program Files\STFT Notifier 2015-11-24 10:12 - 2016-03-18 08:21 - 0000040 _____ () C:\Users\Ernst\AppData\Roaming\cdr.ini 2014-05-08 14:45 - 2014-05-08 14:45 - 0000000 _____ () C:\Users\Ernst\AppData\Roaming\gdfw.log 2014-05-08 14:45 - 2015-05-28 20:48 - 0003313 _____ () C:\Users\Ernst\AppData\Roaming\gdscan.log 2010-01-16 20:02 - 2010-01-15 23:42 - 4302944 _____ () C:\Users\Ernst\AppData\Roaming\IMAG0023.AVI 2014-05-14 21:54 - 2014-05-14 22:06 - 0028268 _____ () C:\Users\Ernst\AppData\Roaming\Kommagetrennte Werte (Windows).ADR 2014-12-07 12:01 - 2014-12-07 12:03 - 0583820 _____ () C:\Users\Ernst\AppData\Roaming\Scorch_Install.log 2016-01-17 18:01 - 2016-03-07 17:53 - 0021504 _____ () C:\Users\Ernst\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2010-03-08 23:21 - 2010-03-08 23:31 - 0282624 _____ () C:\Users\Ernst\AppData\Local\filesync.metadata 2015-11-26 18:03 - 2016-02-23 23:06 - 0000600 _____ () C:\Users\Ernst\AppData\Local\PUTTY.RND 2016-05-13 17:03 - 2016-05-13 17:03 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2010-02-09 14:39 - 2016-05-14 14:02 - 0000024 _____ () C:\ProgramData\__FileUploader.log Einige Dateien in TEMP: ==================== C:\Users\Ernst\AppData\Local\Temp\avgnt.exe C:\Users\Ernst\AppData\Local\Temp\gluninstall.exe C:\Users\Ernst\AppData\Local\Temp\libeay32.dll C:\Users\Ernst\AppData\Local\Temp\msvcr120.dll C:\Users\Ernst\AppData\Local\Temp\sqlite3.dll C:\Users\Ernst\AppData\Local\Temp\WdfCoInstaller01007.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-05-29 12:30 ==================== Ende vom FRST.txt ============================Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:29-05-2016 02 durchgeführt von Ernst (Administrator) auf ELINEU (30-05-2016 13:54:02) Gestartet von C:\Users\Ernst\Desktop Geladene Profile: Ernst & (Verfügbare Profile: Ernst & Administrator & Gast) Platform: Microsoft Windows 10 Home Version 1511 (X86) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Prozesse (Nicht auf der Ausnahmeliste) =(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\sched.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avguard.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Digital Wave Ltd.) C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe (Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe () C:\Windows\System32\SecUPDUtilSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe () C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Google Inc.) C:\Program Files\Google\Update\1.3.30.3\GoogleCrashHandler.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avgnt.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.Systray.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avshadow.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Malwarebytes) C:\desktop\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes) C:\desktop\Malwarebytes Anti-Malware\mbamservice.exe (Malwarebytes) C:\desktop\Malwarebytes Anti-Malware\mbamscheduler.exe (Microsoft Corporation) C:\Windows\WinSxS\x86_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.168_none_1a39dfbc6dff3448\TiWorker.exe konnte nicht auf den Prozess zugreifen -> explorer.exe (Microsoft Corporation) C:\Windows\System32\WerFault.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12017368 2014-02-13] (Realtek Semiconductor) HKLM\...\Run: [G Data ASM] => "C:\Program Files\G Data\InternetSecurity\DelayLoader\AutorunDelayLoader.exe" /autostart HKLM\...\Run: [Ashampoo WinOptimizer Live-Tuner2] => C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner2.exe [3516784 2015-01-12] (Ashampoo Development GmbH & Co. KG) HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [213536 2016-02-19] (Geek Software GmbH) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [157456 2015-12-17] (Apple Inc.) HKLM\...\Run: [Avira SystrayStartTrigger] => C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe [67840 2016-05-04] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [avgnt] => C:\Program Files\Avira\Antivirus\avgnt.exe [814608 2016-04-04] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2016-01-29] (NVIDIA Corporation) HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\...\Run: [MyDriveConnect.exe] => C:\Program Files\MyDrive Connect\TomTom MyDrive Connect.exe [2042144 2016-04-14] (TomTom) HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\...\Run: [iCloudServices] => C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.) HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\...\Run: [iFunBox Fast App Install Handler] => C:\Program Files\i-Funbox DevTeam\iFunBox.exe [2370560 2015-04-12] (i-Funbox.com) HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\...\Run: [Dropbox Update] => C:\Users\Ernst\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-07-20] (Dropbox, Inc.) HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\...\Run: [PicPick Start] => C:\Program Files\PicPick\picpick.exe [19918280 2016-03-08] (NGWIN) HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2289664 2008-01-24] (Hewlett-Packard Company) HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\Run: [iCloudServices] => C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.) HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2007-06-27] (Nero AG) HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\Run: [ApplePhotoStreams] => C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2015-04-26] (Apple Inc.) HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [515072 2015-10-30] (Microsoft Corporation) HKU\S-1-5-21-3539214255-4280287789-3925056074-501-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\Run: [LightScribe Control Panel] => C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2289664 2008-01-24] (Hewlett-Packard Company) HKU\S-1-5-21-3539214255-4280287789-3925056074-501-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [515072 2015-10-30] (Microsoft Corporation) HKU\S-1-5-18\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4074160 2016-04-23] (Microsoft Corporation) <==== ACHTUNG ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ernst\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-07] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ernst\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-07] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Ernst\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-05-07] (Dropbox, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2010-01-19] ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 6.3 HD Lite Edition.lnk [2012-06-23] ShortcutTarget: PHOTOfunSTUDIO 6.3 HD Lite Edition.lnk -> C:\Program Files\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (Panasonic Corporation) Startup: C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-05-13] ShortcutTarget: Dropbox.lnk -> C:\Users\Ernst\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{1bc8b7b8-2b16-41eb-bd62-d23bb4a63b49}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{38771ef5-cbe7-406b-b95e-d17cade4807d}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{bf40525d-0b87-4751-a193-990f2fae70ce}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-3539214255-4280287789-3925056074-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKU\S-1-5-21-3539214255-4280287789-3925056074-501-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> DefaultScope {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> {1F096B29-E9DA-4D64-8D63-936BE7762CC5} URL = SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://isearch.avg.com/search?cid={4898A9FD-279F-4AB5-BEB3-8F714867861C}&mid=461c0000cd1847d0811bd16d5b47c42b-8f6a348b024ad0cebf393beeb48473624affdcb3&lang=de&ds=tt014&pr=sa&d=2012-07-31 14:21:09&v=12.2.5.32&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = SearchScopes: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2012-06-14] (CANON INC.) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll [2016-05-14] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll [2016-05-14] (Oracle Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2012-06-14] (CANON INC.) Toolbar: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> Kein Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - Keine Datei Toolbar: HKU\S-1-5-21-3539214255-4280287789-3925056074-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0 -> Kein Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - Keine Datei FireFox: ======== FF ProfilePath: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default FF SearchEngineOrder.2: FF Homepage: hxxps://www.google.de/?gws_rd=ssl FF NetworkProxy: "type", 4 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_242.dll [2016-05-13] () FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] () FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2016-01-18] (Tracker Software Products (Canada) Ltd.) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-07-03] (Foxit Corporation) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2013-07-03] (Foxit Corporation) FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google) FF Plugin: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2016-05-14] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2016-05-14] (Oracle Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation) FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-01-29] (NVIDIA Corporation) FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-01-29] (NVIDIA Corporation) FF Plugin: @Sibelius.com/Scorch Plugin,version=6.2.0.88 -> C:\Program Files\Sibelius Software\Scorch\npsibelius.dll [2013-03-11] () FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2016-01-18] (Tracker Software Products (Canada) Ltd.) FF Plugin: @videolan.org/vlc,version=2.1.1 -> E:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.1 -> E:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin HKU\S-1-5-21-3539214255-4280287789-3925056074-1000: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2016-01-18] (Tracker Software Products (Canada) Ltd.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll [2016-01-18] (Tracker Software Products (Canada) Ltd.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPSibelius.dll [2010-04-08] () FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\PDFNetC.dll [2010-03-31] (PDFTron Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\ScorchAxPlugin.dll [2010-04-08] () FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\ScorchPDFWrapper.dll [2010-04-08] () FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\englische-ergebnisse.xml [2012-08-12] FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\gmx-suche.xml [2012-08-12] FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\google-images.xml [2014-09-21] FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\google-maps.xml [2014-09-21] FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\lastminute.xml [2012-08-12] FF SearchPlugin: C:\Users\Ernst\AppData\Roaming\Mozilla\Firefox\Profiles\z3lqlojh.default\searchplugins\webde-suche.xml [2012-08-12] FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2015-11-16] Chrome: ======= CHR dev: Chrome dev build erkannt! <======= ACHTUNG CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM\...\Chrome\Extension: [nphjeokkkbngjpiofnfpnafjeofjomfb] - C:\Users\Ernst\AppData\LocalLow\WOT\CHROME\WOT.crx [2012-01-12] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files\Avira\Antivirus\avmailc7.exe [970656 2016-04-04] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files\Avira\Antivirus\sched.exe [467016 2016-04-04] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\Antivirus\avguard.exe [467016 2016-04-04] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files\Avira\Antivirus\avwebg7.exe [1435704 2016-04-04] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [276424 2016-05-04] (Avira Operations GmbH & Co. KG) R2 DigitalWave.Update.Service; C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe [388968 2016-04-25] (Digital Wave Ltd.) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915600 2016-01-29] (NVIDIA Corporation) R2 HPSLPSVC; C:\Users\Ernst\AppData\Local\Temp\7zS006E\hpslpsvc32.dll [701288 2015-09-21] (Hewlett-Packard Co.) R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2008-01-24] (Hewlett-Packard Company) [Datei ist nicht signiert] R2 MBAMScheduler; C:\desktop\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\desktop\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2016-01-29] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19775632 2016-01-29] (NVIDIA Corporation) S2 PCLEPCI; C:\Windows\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [Datei ist nicht signiert] R2 SamsungUPDUtilSvc; C:\WINDOWS\system32\SecUPDUtilSvc.exe [118576 2014-11-26] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation) R2 WO_LiveService2; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTunerService.exe [223600 2015-01-12] () ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [18688 2006-11-10] (Arcsoft, Inc.) S3 AKSUP; C:\WINDOWS\system32\drivers\aksup.sys [34472 2008-07-29] (Aladdin Knowledge Systems, Ltd.) S3 Apowersoft_AudioDevice; C:\WINDOWS\System32\drivers\Apowersoft_AudioDevice.sys [26032 2013-06-02] (Wondershare) R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [104480 2016-04-04] (Avira Operations GmbH & Co. KG) R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [27496 2012-09-04] (AVG Technologies) R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [146152 2016-04-04] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44208 2016-04-04] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [66872 2016-04-04] (Avira Operations GmbH & Co. KG) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [14920 2013-03-07] () [Datei ist nicht signiert] S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9160 2013-03-07] () [Datei ist nicht signiert] S3 FTDIBUS; C:\WINDOWS\system32\drivers\ftdibus.sys [60104 2010-07-12] (FTDI Ltd.) R2 LiveTuner2PM; C:\Program Files\Ashampoo\Ashampoo WinOptimizer 11\LiveTuner32.sys [14088 2014-03-20] () R3 MarvinBus; C:\WINDOWS\System32\drivers\MarvinBus.sys [171520 2007-01-04] (Pinnacle Systems GmbH) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [24448 2016-03-10] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [170200 2016-05-30] (Malwarebytes) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [53120 2016-03-10] (Malwarebytes Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18576 2016-01-29] (NVIDIA Corporation) S3 NvStUSB; C:\WINDOWS\System32\drivers\nvstusb.sys [444128 2015-11-19] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad32v.sys [32912 2016-01-29] (NVIDIA Corporation) R1 RrNetCapFilterDriver; C:\WINDOWS\system32\DRIVERS\RrNetCapFilterDriver.sys [22184 2014-08-25] (Audials AG) R1 ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [31848 2016-04-04] (Avira Operations GmbH & Co. KG) R3 tbhsd; C:\WINDOWS\system32\drivers\tbhsd.sys [39048 2013-11-27] (RapidSolution Software AG) R2 tifsfilter; C:\WINDOWS\System32\DRIVERS\tifsfilt.sys [27648 2010-04-29] (Acronis) [Datei ist nicht signiert] S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation) R3 WirelessKeyboardFilter; C:\WINDOWS\System32\drivers\WirelessKeyboardFilter.sys [44776 2016-03-29] (Microsoft Corporation) R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation) S3 ZTEGsmDataCard; C:\WINDOWS\System32\drivers\zteusbgser.sys [104704 2009-04-09] (ZTE Corporation) S3 ZTEusbvoice; C:\WINDOWS\System32\drivers\ZTEusbvoice.sys [105344 2009-04-09] (ZTE Incorporated) U3 idsvc; kein ImagePath U3 wpcsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-05-30 13:54 - 2016-05-30 13:54 - 00023475 _____ C:\Users\Ernst\Desktop\FRST.txt 2016-05-30 13:53 - 2016-05-30 13:54 - 00000000 ____D C:\FRST 2016-05-30 13:52 - 2016-05-30 13:53 - 01734656 _____ (Farbar) C:\Users\Ernst\Desktop\FRST.exe 2016-05-30 13:51 - 2016-05-30 13:51 - 00018654 _____ C:\Users\Ernst\Desktop\mbam.txt 2016-05-30 10:30 - 2016-05-30 13:49 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-05-30 10:30 - 2016-05-30 10:30 - 00000898 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2016-05-30 10:30 - 2016-05-30 10:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2016-05-30 10:30 - 2016-03-10 14:09 - 00053120 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-05-30 10:30 - 2016-03-10 14:08 - 00126336 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-05-30 10:30 - 2016-03-10 14:08 - 00024448 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-05-30 10:28 - 2016-05-30 10:29 - 22851472 _____ (Malwarebytes ) C:\Users\Ernst\Desktop\mbam-setup-2.2.1.1043.exe 2016-05-30 10:20 - 2016-05-30 10:23 - 00000000 ____D C:\AdwCleaner 2016-05-30 10:17 - 2016-05-30 10:18 - 03678272 _____ C:\Users\Ernst\Desktop\AdwCleaner_5.118.exe 2016-05-29 16:24 - 2016-05-29 16:24 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2016-05-15 11:41 - 2016-05-15 11:41 - 00000000 ____D C:\Users\Ernst\Documents\MeineBackups 2016-05-15 11:28 - 2016-05-15 11:31 - 126193224 _____ C:\Users\Ernst\Downloads\TrueImage2010_d_de.exe 2016-05-15 11:21 - 2016-05-15 11:21 - 00000000 ____D C:\ProgramData\Acronis 2016-05-15 11:18 - 2016-05-15 11:18 - 00911680 _____ (Acronis) C:\WINDOWS\system32\Drivers\tdrpm258.sys 2016-05-15 11:18 - 2016-05-15 11:18 - 00160288 ____N (Acronis) C:\WINDOWS\system32\Drivers\afcdp.sys 2016-05-14 20:51 - 2016-05-14 20:51 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-05-14 20:40 - 2016-05-14 20:40 - 00000000 ____D C:\Program Files\Microsoft ASP.NET 2016-05-14 18:02 - 2016-05-14 18:02 - 00000000 ____D C:\Cortanaentfernen 2016-05-14 18:00 - 2016-05-14 18:00 - 00020468 _____ C:\Users\Ernst\Downloads\Cortana_deinstallieren.zip 2016-05-14 13:46 - 2016-05-14 13:55 - 00000000 ____D C:\Users\Ernst\AppData\Local\NVIDIA Corporation 2016-05-14 13:43 - 2016-05-14 13:54 - 00000000 ____D C:\Users\Ernst\AppData\Local\NVIDIA 2016-05-14 13:28 - 2016-01-29 14:04 - 01316184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge.dll 2016-05-14 13:28 - 2016-01-29 14:04 - 01278920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap.dll 2016-05-14 13:27 - 2016-05-14 13:27 - 00002190 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2016-05-14 13:27 - 2016-05-14 13:27 - 00000000 ____D C:\Program Files\AGEIA Technologies 2016-05-14 13:26 - 2016-01-29 10:45 - 00614848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvStreaming.exe 2016-05-14 13:25 - 2016-01-29 14:04 - 24207296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv32.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 15302712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 14497760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dum.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 11272240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 11209192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 03994560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 01060400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco3234195.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 00917048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 00912248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco3234195.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 00878648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC.dll 2016-05-14 13:25 - 2016-01-29 14:04 - 00032912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad32v.sys 2016-05-14 13:25 - 2016-01-29 14:04 - 00032400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap32v.dll 2016-05-14 13:24 - 2016-05-14 13:24 - 00000000 ____D C:\NVIDIA 2016-05-14 13:20 - 2016-05-14 13:24 - 227389736 _____ (NVIDIA Corporation) C:\Users\Ernst\Downloads\341.95-desktop-win10-32bit-international.exe 2016-05-14 13:07 - 2016-05-14 13:07 - 00000000 ____D C:\Program Files\Common Files\Java 2016-05-14 13:05 - 2016-05-14 13:05 - 00738368 _____ (Oracle Corporation) C:\Users\Ernst\Downloads\JavaSetup8u91.exe 2016-05-14 11:45 - 2016-05-14 11:45 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2016-05-14 10:07 - 2016-04-30 08:46 - 02974720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-05-14 10:07 - 2016-04-23 07:28 - 05796704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-05-14 10:07 - 2016-04-23 07:28 - 01561392 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-05-14 10:07 - 2016-04-23 07:28 - 01541792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-05-14 10:07 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-05-14 10:07 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-05-14 10:07 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-05-14 10:07 - 2016-04-23 07:01 - 01714520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-05-14 10:07 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-05-14 10:07 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-05-14 10:07 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-05-14 10:07 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-05-14 10:07 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-05-14 10:07 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-05-14 10:07 - 2016-04-23 06:13 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-05-14 10:07 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2016-05-14 10:07 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-05-14 10:07 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-05-14 10:07 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-05-14 10:07 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-05-14 10:07 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-05-14 10:07 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-05-14 10:07 - 2016-04-23 06:03 - 01899520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-05-14 10:07 - 2016-04-02 05:20 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-05-14 10:07 - 2016-04-02 05:14 - 03197440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-05-14 10:07 - 2016-03-29 09:12 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2016-05-14 10:07 - 2016-03-29 09:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2016-05-14 10:07 - 2016-03-29 08:28 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2016-05-14 10:07 - 2016-03-29 08:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2016-05-14 10:07 - 2016-03-29 08:02 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-05-14 10:07 - 2016-03-29 07:49 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-05-14 10:07 - 2016-02-24 10:50 - 02885680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll 2016-05-14 10:07 - 2016-02-24 07:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-05-14 10:07 - 2016-02-23 11:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-05-14 10:07 - 2016-02-23 11:37 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2016-05-14 10:07 - 2016-02-23 09:43 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll 2016-05-14 10:07 - 2016-02-23 09:42 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2016-05-14 10:07 - 2016-02-23 09:16 - 00396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2016-05-14 10:07 - 2016-02-23 08:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-05-14 10:06 - 2016-05-06 07:20 - 00077664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys 2016-05-14 10:06 - 2016-05-06 06:23 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2016-05-14 10:06 - 2016-05-06 06:13 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2016-05-14 10:06 - 2016-05-06 06:10 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll 2016-05-14 10:06 - 2016-05-06 06:05 - 00487936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2016-05-14 10:06 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2016-05-14 10:06 - 2016-05-06 05:49 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2016-05-14 10:06 - 2016-04-30 08:53 - 01152000 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-05-14 10:06 - 2016-04-23 08:06 - 01232576 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00973504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00576192 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00440512 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00248512 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00149696 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-05-14 10:06 - 2016-04-23 08:06 - 00081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-05-14 10:06 - 2016-04-23 08:06 - 00042688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-05-14 10:06 - 2016-04-23 07:28 - 00550240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2016-05-14 10:06 - 2016-04-23 07:28 - 00545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2016-05-14 10:06 - 2016-04-23 07:28 - 00278368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2016-05-14 10:06 - 2016-04-23 07:28 - 00083808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2016-05-14 10:06 - 2016-04-23 07:26 - 00792328 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2016-05-14 10:06 - 2016-04-23 07:21 - 00023776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-05-14 10:06 - 2016-04-23 07:14 - 00310112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-05-14 10:06 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-05-14 10:06 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2016-05-14 10:06 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-05-14 10:06 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-05-14 10:06 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-05-14 10:06 - 2016-04-23 07:12 - 00104800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys 2016-05-14 10:06 - 2016-04-23 07:11 - 00259424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-05-14 10:06 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-05-14 10:06 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2016-05-14 10:06 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2016-05-14 10:06 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-05-14 10:06 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2016-05-14 10:06 - 2016-04-23 07:07 - 00192704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2016-05-14 10:06 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll 2016-05-14 10:06 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2016-05-14 10:06 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2016-05-14 10:06 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll 2016-05-14 10:06 - 2016-04-23 07:01 - 00484704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-05-14 10:06 - 2016-04-23 07:01 - 00336224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-05-14 10:06 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2016-05-14 10:06 - 2016-04-23 07:00 - 01396584 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2016-05-14 10:06 - 2016-04-23 07:00 - 01273720 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2016-05-14 10:06 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2016-05-14 10:06 - 2016-04-23 07:00 - 00049504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll 2016-05-14 10:06 - 2016-04-23 06:55 - 00430432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2016-05-14 10:06 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll 2016-05-14 10:06 - 2016-04-23 06:29 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2016-05-14 10:06 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll 2016-05-14 10:06 - 2016-04-23 06:29 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys 2016-05-14 10:06 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe 2016-05-14 10:06 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2016-05-14 10:06 - 2016-04-23 06:27 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2016-05-14 10:06 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll 2016-05-14 10:06 - 2016-04-23 06:25 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2016-05-14 10:06 - 2016-04-23 06:24 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2016-05-14 10:06 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll 2016-05-14 10:06 - 2016-04-23 06:24 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys 2016-05-14 10:06 - 2016-04-23 06:24 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll 2016-05-14 10:06 - 2016-04-23 06:23 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-05-14 10:06 - 2016-04-23 06:23 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2016-05-14 10:06 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2016-05-14 10:06 - 2016-04-23 06:22 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-05-14 10:06 - 2016-04-23 06:22 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll 2016-05-14 10:06 - 2016-04-23 06:21 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2016-05-14 10:06 - 2016-04-23 06:21 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-05-14 10:06 - 2016-04-23 06:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2016-05-14 10:06 - 2016-04-23 06:21 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-05-14 10:06 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-05-14 10:06 - 2016-04-23 06:20 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2016-05-14 10:06 - 2016-04-23 06:20 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2016-05-14 10:06 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll 2016-05-14 10:06 - 2016-04-23 06:20 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2016-05-14 10:06 - 2016-04-23 06:19 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll 2016-05-14 10:06 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll 2016-05-14 10:06 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2016-05-14 10:06 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2016-05-14 10:06 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2016-05-14 10:06 - 2016-04-23 06:17 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-05-14 10:06 - 2016-04-23 06:17 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2016-05-14 10:06 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-05-14 10:06 - 2016-04-23 06:16 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2016-05-14 10:06 - 2016-04-23 06:16 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2016-05-14 10:06 - 2016-04-23 06:16 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2016-05-14 10:06 - 2016-04-23 06:15 - 00612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-05-14 10:06 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2016-05-14 10:06 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00739328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-05-14 10:06 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll 2016-05-14 10:06 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-05-14 10:06 - 2016-04-23 06:13 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-05-14 10:06 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2016-05-14 10:06 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2016-05-14 10:06 - 2016-04-23 06:12 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2016-05-14 10:06 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-05-14 10:06 - 2016-04-23 06:11 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2016-05-14 10:06 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2016-05-14 10:06 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-05-14 10:06 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-05-14 10:06 - 2016-04-23 06:07 - 01793024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-05-14 10:06 - 2016-04-23 06:05 - 01895936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-05-14 10:06 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2016-05-14 10:06 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-05-14 10:06 - 2016-04-23 06:04 - 01733632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2016-05-14 10:06 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2016-05-14 10:06 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-05-14 10:06 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-05-14 10:06 - 2016-04-23 06:03 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-05-14 10:06 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2016-05-14 10:06 - 2016-04-23 06:01 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-05-14 10:06 - 2016-04-23 04:10 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2016-05-14 10:06 - 2016-04-02 06:17 - 00297072 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2016-05-14 10:06 - 2016-04-02 06:14 - 00757192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll 2016-05-14 10:06 - 2016-04-02 06:14 - 00613112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2016-05-14 10:06 - 2016-04-02 06:14 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2016-05-14 10:06 - 2016-04-02 05:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll 2016-05-14 10:06 - 2016-04-02 05:10 - 02871296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2016-05-14 10:06 - 2016-03-29 11:41 - 00875992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-05-14 10:06 - 2016-03-29 11:41 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-05-14 10:06 - 2016-03-29 11:41 - 00228696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2016-05-14 10:06 - 2016-03-29 11:38 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-05-14 10:06 - 2016-03-29 11:38 - 00927072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-05-14 10:06 - 2016-03-29 11:37 - 01862008 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2016-05-14 10:06 - 2016-03-29 11:36 - 01820512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2016-05-14 10:06 - 2016-03-29 11:33 - 00084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2016-05-14 10:06 - 2016-03-29 11:28 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2016-05-14 10:06 - 2016-03-29 11:21 - 00922456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2016-05-14 10:06 - 2016-03-29 11:20 - 00856928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2016-05-14 10:06 - 2016-03-29 11:19 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2016-05-14 10:06 - 2016-03-29 11:13 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-05-14 10:06 - 2016-03-29 10:41 - 00203104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys 2016-05-14 10:06 - 2016-03-29 10:41 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll 2016-05-14 10:06 - 2016-03-29 10:34 - 00153952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2016-05-14 10:06 - 2016-03-29 10:26 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll 2016-05-14 10:06 - 2016-03-29 10:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll 2016-05-14 10:06 - 2016-03-29 10:24 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-05-14 10:06 - 2016-03-29 10:24 - 00063008 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe 2016-05-14 10:06 - 2016-03-29 10:23 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll 2016-05-14 10:06 - 2016-03-29 10:01 - 00541304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-05-14 10:06 - 2016-03-29 09:46 - 01861984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-05-14 10:06 - 2016-03-29 09:46 - 00771424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-05-14 10:06 - 2016-03-29 09:42 - 00287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2016-05-14 10:06 - 2016-03-29 09:30 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msorcl32.dll 2016-05-14 10:06 - 2016-03-29 09:20 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll 2016-05-14 10:06 - 2016-03-29 09:20 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll 2016-05-14 10:06 - 2016-03-29 09:13 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2016-05-14 10:06 - 2016-03-29 09:11 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-05-14 10:06 - 2016-03-29 09:11 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll 2016-05-14 10:06 - 2016-03-29 09:09 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys 2016-05-14 10:06 - 2016-03-29 09:08 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll 2016-05-14 10:06 - 2016-03-29 09:06 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll 2016-05-14 10:06 - 2016-03-29 09:05 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-05-14 10:06 - 2016-03-29 09:05 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll 2016-05-14 10:06 - 2016-03-29 09:05 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll 2016-05-14 10:06 - 2016-03-29 09:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll 2016-05-14 10:06 - 2016-03-29 09:02 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2016-05-14 10:06 - 2016-03-29 09:02 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll 2016-05-14 10:06 - 2016-03-29 09:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll 2016-05-14 10:06 - 2016-03-29 08:56 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-05-14 10:06 - 2016-03-29 08:53 - 00424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2016-05-14 10:06 - 2016-03-29 08:53 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll 2016-05-14 10:06 - 2016-03-29 08:53 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll 2016-05-14 10:06 - 2016-03-29 08:53 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2016-05-14 10:06 - 2016-03-29 08:52 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-05-14 10:06 - 2016-03-29 08:52 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2016-05-14 10:06 - 2016-03-29 08:52 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll 2016-05-14 10:06 - 2016-03-29 08:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2016-05-14 10:06 - 2016-03-29 08:47 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2016-05-14 10:06 - 2016-03-29 08:46 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2016-05-14 10:06 - 2016-03-29 08:44 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2016-05-14 10:06 - 2016-03-29 08:44 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2016-05-14 10:06 - 2016-03-29 08:43 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll 2016-05-14 10:06 - 2016-03-29 08:42 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2016-05-14 10:06 - 2016-03-29 08:41 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll 2016-05-14 10:06 - 2016-03-29 08:41 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2016-05-14 10:06 - 2016-03-29 08:40 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-05-14 10:06 - 2016-03-29 08:39 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll 2016-05-14 10:06 - 2016-03-29 08:39 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2016-05-14 10:06 - 2016-03-29 08:37 - 01444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll 2016-05-14 10:06 - 2016-03-29 08:37 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2016-05-14 10:06 - 2016-03-29 08:36 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-05-14 10:06 - 2016-03-29 08:36 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-05-14 10:06 - 2016-03-29 08:34 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2016-05-14 10:06 - 2016-03-29 08:32 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2016-05-14 10:06 - 2016-03-29 08:32 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2016-05-14 10:06 - 2016-03-29 08:32 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2016-05-14 10:06 - 2016-03-29 08:32 - 00601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2016-05-14 10:06 - 2016-03-29 08:31 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-05-14 10:06 - 2016-03-29 08:30 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2016-05-14 10:06 - 2016-03-29 08:29 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2016-05-14 10:06 - 2016-03-29 08:28 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2016-05-14 10:06 - 2016-03-29 08:27 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2016-05-14 10:06 - 2016-03-29 08:26 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll 2016-05-14 10:06 - 2016-03-29 08:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe 2016-05-14 10:06 - 2016-03-29 08:23 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll 2016-05-14 10:06 - 2016-03-29 08:18 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll 2016-05-14 10:06 - 2016-03-29 08:14 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2016-05-14 10:06 - 2016-03-29 08:13 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2016-05-14 10:06 - 2016-03-29 08:10 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2016-05-14 10:06 - 2016-03-29 08:07 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2016-05-14 10:06 - 2016-03-29 08:06 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2016-05-14 10:06 - 2016-03-29 08:06 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2016-05-14 10:06 - 2016-03-29 08:06 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2016-05-14 10:06 - 2016-03-29 08:06 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll 2016-05-14 10:06 - 2016-03-29 08:05 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2016-05-14 10:06 - 2016-03-29 08:04 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll 2016-05-14 10:06 - 2016-03-29 07:58 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-05-14 10:06 - 2016-03-29 07:55 - 00614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2016-05-14 10:06 - 2016-03-29 07:46 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll 2016-05-14 10:06 - 2016-03-29 07:43 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2016-05-14 10:06 - 2016-03-29 07:38 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-05-14 10:06 - 2016-03-29 07:36 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2016-05-14 10:06 - 2016-03-29 07:36 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll 2016-05-14 10:06 - 2016-03-29 07:32 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2016-05-14 10:06 - 2016-03-29 07:30 - 00782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll 2016-05-14 10:06 - 2016-03-29 07:25 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2016-05-14 10:06 - 2016-03-29 07:25 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2016-05-14 10:06 - 2016-03-29 07:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2016-05-14 10:06 - 2016-03-29 07:24 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll 2016-05-14 10:06 - 2016-03-29 07:21 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll 2016-05-14 10:06 - 2016-03-01 07:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-05-14 10:06 - 2016-02-24 10:57 - 01174368 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-05-14 10:06 - 2016-02-24 10:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2016-05-14 10:06 - 2016-02-24 10:15 - 00107872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS 2016-05-14 10:06 - 2016-02-24 10:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-05-14 10:06 - 2016-02-24 10:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2016-05-14 10:06 - 2016-02-24 10:03 - 00510880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2016-05-14 10:06 - 2016-02-24 09:59 - 00118304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe 2016-05-14 10:06 - 2016-02-24 09:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll 2016-05-14 10:06 - 2016-02-24 09:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2016-05-14 10:06 - 2016-02-24 09:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2016-05-14 10:06 - 2016-02-24 09:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll 2016-05-14 10:06 - 2016-02-24 08:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll 2016-05-14 10:06 - 2016-02-24 08:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2016-05-14 10:06 - 2016-02-24 08:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll 2016-05-14 10:06 - 2016-02-24 08:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll 2016-05-14 10:06 - 2016-02-24 08:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2016-05-14 10:06 - 2016-02-24 08:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll 2016-05-14 10:06 - 2016-02-24 08:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll 2016-05-14 10:06 - 2016-02-24 08:37 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2016-05-14 10:06 - 2016-02-24 08:37 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll 2016-05-14 10:06 - 2016-02-24 08:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll 2016-05-14 10:06 - 2016-02-24 08:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll 2016-05-14 10:06 - 2016-02-24 08:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll 2016-05-14 10:06 - 2016-02-24 08:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll 2016-05-14 10:06 - 2016-02-24 08:29 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll 2016-05-14 10:06 - 2016-02-24 08:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll 2016-05-14 10:06 - 2016-02-24 08:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll 2016-05-14 10:06 - 2016-02-24 08:27 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2016-05-14 10:06 - 2016-02-24 08:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll 2016-05-14 10:06 - 2016-02-24 08:23 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll 2016-05-14 10:06 - 2016-02-24 08:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll 2016-05-14 10:06 - 2016-02-24 08:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2016-05-14 10:06 - 2016-02-24 08:21 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll 2016-05-14 10:06 - 2016-02-24 08:21 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2016-05-14 10:06 - 2016-02-24 08:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2016-05-14 10:06 - 2016-02-24 08:20 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll 2016-05-14 10:06 - 2016-02-24 08:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2016-05-14 10:06 - 2016-02-24 08:18 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll 2016-05-14 10:06 - 2016-02-24 08:18 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2016-05-14 10:06 - 2016-02-24 08:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll 2016-05-14 10:06 - 2016-02-24 08:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2016-05-14 10:06 - 2016-02-24 08:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2016-05-14 10:06 - 2016-02-24 08:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2016-05-14 10:06 - 2016-02-24 08:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2016-05-14 10:06 - 2016-02-24 08:09 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll 2016-05-14 10:06 - 2016-02-24 08:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll 2016-05-14 10:06 - 2016-02-24 08:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2016-05-14 10:06 - 2016-02-24 08:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2016-05-14 10:06 - 2016-02-24 08:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe 2016-05-14 10:06 - 2016-02-24 08:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2016-05-14 10:06 - 2016-02-24 07:55 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll |
2016-05-14 10:06 - 2016-02-24 07:51 - 01184256 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2016-05-14 10:06 - 2016-02-24 07:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2016-05-14 10:06 - 2016-02-24 07:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll 2016-05-14 10:06 - 2016-02-23 12:33 - 00354656 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll 2016-05-14 10:06 - 2016-02-23 12:33 - 00354656 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2016-05-14 10:06 - 2016-02-23 12:32 - 00462688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2016-05-14 10:06 - 2016-02-23 12:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll 2016-05-14 10:06 - 2016-02-23 11:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-05-14 10:06 - 2016-02-23 11:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2016-05-14 10:06 - 2016-02-23 11:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2016-05-14 10:06 - 2016-02-23 11:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-05-14 10:06 - 2016-02-23 11:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2016-05-14 10:06 - 2016-02-23 11:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2016-05-14 10:06 - 2016-02-23 11:37 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-05-14 10:06 - 2016-02-23 11:23 - 00124256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2016-05-14 10:06 - 2016-02-23 10:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2016-05-14 10:06 - 2016-02-23 10:51 - 00381280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2016-05-14 10:06 - 2016-02-23 10:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll 2016-05-14 10:06 - 2016-02-23 10:25 - 00722432 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll 2016-05-14 10:06 - 2016-02-23 10:25 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys 2016-05-14 10:06 - 2016-02-23 10:18 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll 2016-05-14 10:06 - 2016-02-23 10:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-05-14 10:06 - 2016-02-23 10:14 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll 2016-05-14 10:06 - 2016-02-23 10:13 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll 2016-05-14 10:06 - 2016-02-23 10:08 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys 2016-05-14 10:06 - 2016-02-23 10:07 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll 2016-05-14 10:06 - 2016-02-23 10:03 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys 2016-05-14 10:06 - 2016-02-23 10:01 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll 2016-05-14 10:06 - 2016-02-23 10:01 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2016-05-14 10:06 - 2016-02-23 09:51 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll 2016-05-14 10:06 - 2016-02-23 09:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll 2016-05-14 10:06 - 2016-02-23 09:50 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2016-05-14 10:06 - 2016-02-23 09:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-05-14 10:06 - 2016-02-23 09:48 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll 2016-05-14 10:06 - 2016-02-23 09:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll 2016-05-14 10:06 - 2016-02-23 09:46 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll 2016-05-14 10:06 - 2016-02-23 09:45 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2016-05-14 10:06 - 2016-02-23 09:41 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll 2016-05-14 10:06 - 2016-02-23 09:40 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2016-05-14 10:06 - 2016-02-23 09:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-05-14 10:06 - 2016-02-23 09:38 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2016-05-14 10:06 - 2016-02-23 09:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2016-05-14 10:06 - 2016-02-23 09:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll 2016-05-14 10:06 - 2016-02-23 09:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2016-05-14 10:06 - 2016-02-23 09:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll 2016-05-14 10:06 - 2016-02-23 09:28 - 00810496 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2016-05-14 10:06 - 2016-02-23 09:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll 2016-05-14 10:06 - 2016-02-23 09:24 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2016-05-14 10:06 - 2016-02-23 09:24 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2016-05-14 10:06 - 2016-02-23 09:23 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-05-14 10:06 - 2016-02-23 09:20 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll 2016-05-14 10:06 - 2016-02-23 09:14 - 00694272 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2016-05-14 10:06 - 2016-02-23 09:05 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-05-14 10:06 - 2016-02-23 08:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2016-05-14 10:06 - 2016-02-23 08:36 - 01931776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2016-05-14 10:06 - 2016-02-23 08:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2016-05-14 10:06 - 2016-02-09 05:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll 2016-05-14 10:06 - 2016-02-09 05:09 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2016-05-14 10:05 - 2016-04-23 06:35 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll 2016-05-14 10:05 - 2016-04-23 06:28 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2016-05-14 10:05 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll 2016-05-14 10:05 - 2016-04-23 06:27 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2016-05-14 10:05 - 2016-04-23 06:27 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll 2016-05-14 10:05 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-05-14 10:05 - 2016-04-23 06:23 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-05-14 10:05 - 2016-04-23 06:19 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-05-14 10:05 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-05-14 10:05 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml 2016-05-14 10:05 - 2016-03-29 09:28 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys 2016-05-14 10:05 - 2016-03-29 09:20 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll 2016-05-14 10:05 - 2016-03-29 09:20 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll 2016-05-14 10:05 - 2016-03-29 09:19 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2016-05-14 10:05 - 2016-03-29 09:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll 2016-05-14 10:05 - 2016-03-29 09:16 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2016-05-14 10:05 - 2016-03-29 09:14 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll 2016-05-14 10:05 - 2016-03-29 09:11 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll 2016-05-14 10:05 - 2016-03-29 09:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll 2016-05-14 10:05 - 2016-03-29 09:08 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll 2016-05-14 10:05 - 2016-03-29 09:06 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll 2016-05-14 10:05 - 2016-03-29 09:06 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe 2016-05-14 10:05 - 2016-03-29 09:05 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll 2016-05-14 10:05 - 2016-03-29 09:05 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll 2016-05-14 10:05 - 2016-03-29 08:52 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2016-05-14 10:05 - 2016-03-29 08:27 - 00162816 _____ C:\WINDOWS\system32\MTF.dll 2016-05-14 10:05 - 2016-03-29 08:27 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2016-05-14 10:05 - 2016-03-29 08:26 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2016-05-14 10:05 - 2016-02-24 08:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll 2016-05-14 10:05 - 2016-02-24 08:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll 2016-05-14 10:05 - 2016-02-24 08:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll 2016-05-14 10:05 - 2016-02-24 08:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2016-05-14 10:05 - 2016-02-23 10:16 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll 2016-05-14 10:05 - 2016-02-23 10:05 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll 2016-05-14 10:05 - 2016-02-23 09:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll 2016-05-14 10:05 - 2016-02-23 09:44 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2016-05-14 09:22 - 2016-05-14 09:22 - 00000000 ____D C:\ProgramData\HP 2016-05-14 09:21 - 2016-05-14 09:21 - 02474920 _____ C:\Users\Ernst\Downloads\hppiw.exe 2016-05-13 19:47 - 2016-05-13 19:47 - 00000000 ____D C:\Users\Ernst\AppData\Local\Comms 2016-05-13 19:12 - 2016-05-13 19:12 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Avira 2016-05-13 19:07 - 2016-04-04 17:07 - 00146152 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2016-05-13 19:07 - 2016-04-04 17:07 - 00104480 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2016-05-13 19:07 - 2016-04-04 17:07 - 00066872 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2016-05-13 19:07 - 2016-04-04 17:07 - 00044208 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys 2016-05-13 19:07 - 2016-04-04 17:07 - 00031848 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\ssmdrv.sys 2016-05-13 19:04 - 2016-05-13 19:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-05-13 19:04 - 2016-05-13 19:04 - 00001279 _____ C:\Users\Public\Desktop\Avira Launcher.lnk 2016-05-13 19:03 - 2016-05-13 19:07 - 00000000 ____D C:\ProgramData\Avira 2016-05-13 19:03 - 2016-05-13 19:07 - 00000000 ____D C:\Program Files\Avira 2016-05-13 19:03 - 2016-05-13 19:03 - 04898016 _____ (Avira Operations GmbH & Co. KG) C:\Users\Ernst\Downloads\avira_de_av_573608a76d994__ws.exe 2016-05-13 18:29 - 2016-05-29 12:26 - 00000000 ____D C:\WINDOWS\Minidump 2016-05-13 18:00 - 2016-05-13 17:47 - 00000000 ___DC C:\WINDOWS\Panther 2016-05-13 17:58 - 2016-05-13 17:58 - 00002394 _____ C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-05-13 17:58 - 2016-05-13 17:58 - 00000000 ___RD C:\Users\Ernst\OneDrive 2016-05-13 17:57 - 2016-05-13 17:58 - 00000000 ____D C:\Windows.old 2016-05-13 17:56 - 2016-05-13 17:56 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2016-05-13 17:55 - 2015-10-29 19:42 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll 2016-05-13 17:55 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2016-05-13 17:55 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll 2016-05-13 17:54 - 2016-05-13 17:54 - 00001091 _____ C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\WINDOWS\system32\XPSViewer 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\WINDOWS\system32\msmq 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\Program Files\Reference Assemblies 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\Program Files\MSBuild 2016-05-13 17:54 - 2016-05-13 17:54 - 00000000 ____D C:\inetpub 2016-05-13 17:53 - 2015-10-23 18:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2016-05-13 17:53 - 2015-10-23 18:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2016-05-13 17:53 - 2015-10-23 18:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2016-05-13 17:52 - 2016-05-13 17:52 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-05-13 17:52 - 2016-05-13 17:52 - 00279376 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-05-13 17:52 - 2016-05-13 17:52 - 00000000 ____D C:\Users\Ernst\AppData\Local\Publishers 2016-05-13 17:51 - 2016-05-13 17:51 - 00000000 ____D C:\Users\Ernst\AppData\Local\ActiveSync 2016-05-13 17:49 - 2016-05-13 18:21 - 00000000 ____D C:\Users\Ernst\AppData\Local\Packages 2016-05-13 17:49 - 2016-05-13 17:49 - 00000020 ___SH C:\Users\Ernst\ntuser.ini 2016-05-13 17:49 - 2016-05-13 17:49 - 00000000 ____D C:\Users\Ernst\AppData\Local\TileDataLayer 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Vorlagen 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Startmenü 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2016-05-13 17:39 - 2016-05-13 17:39 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2016-05-13 17:36 - 2016-05-13 17:36 - 00021532 _____ C:\WINDOWS\system32\emptyregdb.dat 2016-05-13 17:20 - 2016-05-13 17:20 - 00001544 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2016-05-13 17:20 - 2016-05-13 17:20 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs 2016-05-13 17:20 - 2016-05-13 17:20 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs 2016-05-13 17:12 - 2016-05-13 17:12 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines 2016-05-13 17:07 - 2016-05-29 15:46 - 00000000 ____D C:\Users\Ernst 2016-05-13 17:07 - 2016-05-13 17:35 - 00000000 ____D C:\Users\Gast 2016-05-13 17:07 - 2016-05-13 17:29 - 00000000 ____D C:\Users\Administrator 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Vorlagen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Startmenü 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Netzwerkumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Lokale Einstellungen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Eigene Dateien 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Druckumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Videos 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Musik 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Documents\Eigene Bilder 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\AppData\Local\Verlauf 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\AppData\Local\Anwendungsdaten 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Gast\Anwendungsdaten 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Vorlagen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Startmenü 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Netzwerkumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Lokale Einstellungen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Eigene Dateien 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Druckumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Documents\Eigene Videos 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Documents\Eigene Musik 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Documents\Eigene Bilder 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\AppData\Local\Verlauf 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\AppData\Local\Anwendungsdaten 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Ernst\Anwendungsdaten 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Vorlagen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Startmenü 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Netzwerkumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Lokale Einstellungen 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Eigene Dateien 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Druckumgebung 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Documents\Eigene Videos 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Documents\Eigene Musik 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Documents\Eigene Bilder 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\AppData\Local\Verlauf 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\AppData\Local\Anwendungsdaten 2016-05-13 17:07 - 2016-05-13 17:07 - 00000000 _SHDL C:\Users\Administrator\Anwendungsdaten 2016-05-13 17:06 - 2016-05-30 13:52 - 02039076 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-05-13 17:04 - 2016-05-30 13:45 - 00000000 ____D C:\ProgramData\NVIDIA 2016-05-13 17:04 - 2016-05-14 13:56 - 00000253 _____ C:\WINDOWS\hpbafd.ini 2016-05-13 17:04 - 2016-01-29 12:14 - 04397624 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2016-05-13 17:04 - 2016-01-29 12:14 - 03068864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc.dll 2016-05-13 17:04 - 2016-01-29 12:14 - 02563128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2016-05-13 17:04 - 2016-01-29 12:14 - 00678968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe 2016-05-13 17:04 - 2016-01-29 12:14 - 00381888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2016-05-13 17:04 - 2016-01-29 12:14 - 00070200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2016-05-13 17:04 - 2016-01-28 18:18 - 06150607 _____ C:\WINDOWS\system32\nvcoproc.bin 2016-05-13 17:03 - 2016-05-14 13:46 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-05-13 17:03 - 2016-05-14 13:28 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2016-05-13 17:03 - 2016-05-13 17:03 - 00000000 ____H C:\ProgramData\DP45977C.lfl 2016-05-13 17:03 - 2016-05-13 17:03 - 00000000 ____D C:\WINDOWS\system32\RTCOM 2016-05-13 17:03 - 2016-05-13 17:03 - 00000000 ____D C:\Program Files\Realtek 2016-05-13 16:03 - 2016-05-13 17:38 - 00021881 _____ C:\WINDOWS\diagerr.xml 2016-05-13 16:03 - 2016-05-13 17:38 - 00020958 _____ C:\WINDOWS\diagwrn.xml 2016-05-13 14:54 - 2016-05-13 17:23 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2016-05-12 10:14 - 2016-05-12 10:14 - 00000931 _____ C:\Users\Ernst\Documents\AL-KO B2C Ersatzteilsystem - Warenkorb.htm 2016-05-12 09:53 - 2016-05-12 10:25 - 00015872 ___SH C:\Users\Ernst\Thumbs.db 2016-05-10 21:29 - 2016-05-10 21:29 - 00000000 ____D C:\ProgramData\Baidu 2016-05-10 20:30 - 2016-05-10 20:30 - 00000000 ____D C:\Users\Ernst\Documents\video_out 2016-05-10 20:26 - 2016-05-10 20:26 - 00001161 _____ C:\Users\Ernst\Desktop\amvtransform.lnk 2016-05-10 20:25 - 2016-05-13 17:23 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Media Player Utilities 4.46 2016-05-10 20:25 - 2016-05-10 20:25 - 00000000 ____D C:\Program Files\Media Player Utilities 4.46 2016-05-10 09:14 - 2016-05-10 09:14 - 05482783 _____ C:\Users\Ernst\Documents\ehvmitteilung2016.pdf 2016-05-02 13:23 - 2016-05-02 16:31 - 00000000 ____D C:\Program Files\Mozilla Thunderbird 2016-04-30 15:24 - 2016-04-30 15:24 - 01334540 _____ (Sebastien.warin.fr ) C:\Users\Ernst\Downloads\SWYH_1.4.16069.exe ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-05-30 13:54 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-05-30 13:52 - 2016-02-13 13:57 - 00870322 _____ C:\WINDOWS\system32\perfh007.dat 2016-05-30 13:52 - 2016-02-13 13:57 - 00189546 _____ C:\WINDOWS\system32\perfc007.dat 2016-05-30 13:52 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF 2016-05-30 13:46 - 2015-03-21 11:14 - 00000266 _____ C:\WINDOWS\Tasks\AbelssoftPreloader.job 2016-05-30 13:46 - 2011-01-08 10:44 - 00001094 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-05-30 13:45 - 2016-02-13 14:30 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-05-30 13:45 - 2015-10-30 07:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2016-05-30 13:43 - 2015-07-20 12:57 - 00001224 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3539214255-4280287789-3925056074-1000UA.job 2016-05-30 13:43 - 2010-01-18 18:05 - 00000000 ____D C:\Program Files\Digital Video Converter 2016-05-30 13:18 - 2011-01-08 10:44 - 00001098 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-05-30 13:17 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\rescache 2016-05-30 12:57 - 2012-09-23 10:36 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-05-29 18:24 - 2010-06-08 20:37 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Audacity 2016-05-29 17:17 - 2011-01-23 11:06 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\vlc 2016-05-29 16:30 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps 2016-05-29 15:50 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-05-29 12:26 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\MsDtc 2016-05-29 11:36 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-05-15 12:33 - 2010-05-02 10:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis 2016-05-15 12:33 - 2010-04-29 14:38 - 00000000 ____D C:\Program Files\Common Files\Acronis 2016-05-15 11:42 - 2010-05-02 11:02 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Acronis 2016-05-15 11:22 - 2010-04-29 14:38 - 00158272 _____ (Acronis) C:\WINDOWS\system32\Drivers\snapman.sys 2016-05-15 06:43 - 2015-07-20 12:57 - 00001172 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3539214255-4280287789-3925056074-1000Core.job 2016-05-14 17:36 - 2013-11-12 09:14 - 00001153 _____ C:\Users\Ernst\Desktop\KaraFun Player 2.lnk 2016-05-14 17:36 - 2013-11-12 09:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KaraFun Player 2 2016-05-14 17:36 - 2013-11-12 09:14 - 00000000 ____D C:\Program Files\KaraFun Player 2 2016-05-14 15:22 - 2016-02-13 14:34 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-05-14 15:20 - 2015-12-13 20:32 - 00000000 ____D C:\Users\Ernst\.idlerc 2016-05-14 14:02 - 2010-01-16 19:06 - 00000000 ____D C:\Users\Ernst\AppData\Local\ElevatedDiagnostics 2016-05-14 13:57 - 2010-01-17 15:09 - 00000349 _____ C:\Users\Public\Documents\PCLECHAL.INI 2016-05-14 13:28 - 2010-01-16 14:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2016-05-14 13:27 - 2010-05-06 13:32 - 00000000 ____D C:\temp 2016-05-14 13:27 - 2010-01-16 14:45 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard 2016-05-14 13:08 - 2015-03-09 18:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2016-05-14 13:08 - 2014-10-23 21:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-05-14 13:08 - 2013-09-14 09:19 - 00000000 ____D C:\ProgramData\Oracle 2016-05-14 13:08 - 2010-02-05 19:46 - 00000000 ____D C:\Program Files\Java 2016-05-14 13:07 - 2015-10-01 17:39 - 00000000 ____D C:\Users\Ernst\.oracle_jre_usage 2016-05-14 13:07 - 2015-03-18 18:50 - 00095808 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2016-05-14 11:30 - 2011-12-07 16:35 - 00000848 _____ C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Zertifikatsmanager.lnk 2016-05-14 11:13 - 2013-09-06 18:49 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\DVDVideoSoft 2016-05-14 10:44 - 2016-02-13 05:25 - 00489088 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-05-14 10:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-05-14 10:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2016-05-14 10:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-05-14 10:41 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-05-14 10:41 - 2015-10-30 07:13 - 00000000 ____D C:\WINDOWS\system32\Dism 2016-05-14 10:40 - 2016-02-13 14:15 - 00000000 ____D C:\Program Files\Windows Journal 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 __RSD C:\WINDOWS\Media 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Provisioning 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Portable Devices 2016-05-14 10:40 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Multimedia Platform 2016-05-14 10:39 - 2015-10-30 07:48 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2016-05-14 10:37 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-05-14 08:52 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppCompat 2016-05-13 19:03 - 2015-03-09 18:10 - 00000000 ____D C:\ProgramData\Package Cache 2016-05-13 19:01 - 2010-01-16 22:18 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2016-05-13 18:55 - 2011-08-07 14:34 - 00000000 ____D C:\MeWDB-X 2016-05-13 18:50 - 2013-09-30 12:57 - 00000000 ____D C:\Program Files\MMI PHARMINDEX 2016-05-13 18:40 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\spool 2016-05-13 18:37 - 2014-05-08 14:43 - 00000000 ____D C:\ProgramData\G Data 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ___SD C:\WINDOWS\system32\Configuration 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\winevt 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\setup 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\ras 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\MUI 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\IME 2016-05-13 18:35 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\Com 2016-05-13 18:35 - 2015-10-30 07:13 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-05-13 18:35 - 2015-10-30 07:13 - 00000000 ____D C:\WINDOWS\system32\SMI 2016-05-13 18:35 - 2014-05-08 14:43 - 00000000 ____D C:\Program Files\G Data 2016-05-13 18:00 - 2015-10-30 07:48 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2016-05-13 17:56 - 2013-08-27 14:29 - 00000000 ___RD C:\Users\Ernst\Dropbox 2016-05-13 17:56 - 2013-08-27 14:25 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Dropbox 2016-05-13 17:55 - 2016-02-13 14:01 - 00000000 ____D C:\WINDOWS\OCR 2016-05-13 17:54 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2016-05-13 17:54 - 2015-10-30 07:45 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll 2016-05-13 17:54 - 2015-10-30 07:45 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb 2016-05-13 17:54 - 2015-10-30 07:45 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb 2016-05-13 17:54 - 2015-10-30 07:45 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb 2016-05-13 17:54 - 2015-10-30 07:45 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb 2016-05-13 17:54 - 2015-10-30 07:45 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 01014272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys 2016-05-13 17:53 - 2015-10-30 07:45 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe 2016-05-13 17:53 - 2015-10-30 07:45 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe 2016-05-13 17:53 - 2015-10-30 07:45 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2016-05-13 17:53 - 2015-10-30 07:45 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2016-05-13 17:53 - 2015-10-30 07:45 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof 2016-05-13 17:39 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2016-05-13 17:39 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows NT 2016-05-13 17:37 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Registration 2016-05-13 17:35 - 2015-10-30 07:48 - 00000000 __RHD C:\Users\Public\Libraries 2016-05-13 17:28 - 2013-11-17 15:30 - 00000000 ____D C:\Program Files\SamsungPrinterLiveUpdateInstaller 2016-05-13 17:23 - 2016-03-16 21:09 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDFtoMusic 2016-05-13 17:23 - 2016-02-23 19:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-05-13 17:23 - 2016-02-23 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer 2016-05-13 17:23 - 2016-01-12 22:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AllDup 2016-05-13 17:23 - 2015-12-13 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7 2016-05-13 17:23 - 2015-12-13 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plex Media Server 2016-05-13 17:23 - 2015-11-26 16:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2016-05-13 17:23 - 2015-11-24 10:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CD to MP3 Freeware 2016-05-13 17:23 - 2015-10-30 07:13 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2016-05-13 17:23 - 2015-10-28 18:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ! 2016-05-13 17:23 - 2015-10-25 15:31 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center 2016-05-13 17:23 - 2015-10-18 15:57 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers 2016-05-13 17:23 - 2015-09-24 07:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!Fernzugang 2016-05-13 17:23 - 2015-09-06 10:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\POIbase 2016-05-13 17:23 - 2015-08-25 20:57 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EL-Demo Softland 2016-05-13 17:23 - 2015-08-20 07:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2016-05-13 17:23 - 2015-07-18 10:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\E.M. Free Photo Collage 2016-05-13 17:23 - 2015-06-12 12:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\i-Funbox DevTeam 2016-05-13 17:23 - 2015-06-06 11:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2016-05-13 17:23 - 2015-05-30 11:22 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVR-Capture 2016-05-13 17:23 - 2015-03-21 11:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC-Putzer 2015 2016-05-13 17:23 - 2015-02-01 10:54 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PhotoDirector 5 2016-05-13 17:23 - 2014-12-30 14:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom 2016-05-13 17:23 - 2014-12-22 09:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audials 12 2016-05-13 17:23 - 2014-10-02 14:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QGroundControl 2016-05-13 17:23 - 2014-09-16 15:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader 2016-05-13 17:23 - 2014-09-11 08:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stream What You Hear (SWYH) 2016-05-13 17:23 - 2014-07-08 19:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeOCR 2016-05-13 17:23 - 2013-12-23 09:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audials 11 2016-05-13 17:23 - 2013-12-12 15:30 - 00000000 ____D C:\WINDOWS\de 2016-05-13 17:23 - 2013-12-12 14:30 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2016-05-13 17:23 - 2013-12-12 14:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU 2016-05-13 17:23 - 2013-11-18 19:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon iP7200 series Benutzerregistrierung 2016-05-13 17:23 - 2013-11-05 22:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KaraFun Player 2016-05-13 17:23 - 2013-10-27 12:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2016-05-13 17:23 - 2013-09-27 20:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 9.2.2 2016-05-13 17:23 - 2013-09-12 19:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Editor 3.3 2016-05-13 17:23 - 2013-09-06 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2016-05-13 17:23 - 2013-08-31 19:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\proDAD 2016-05-13 17:23 - 2013-08-31 16:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CD-LabelPrint 2016-05-13 17:23 - 2013-08-31 15:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon iP7200 series Manual 2016-05-13 17:23 - 2013-08-31 15:51 - 00000000 ____D C:\WINDOWS\system32\STRING 2016-05-13 17:23 - 2012-02-04 17:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AudibleManager 2016-05-13 17:23 - 2011-08-22 16:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Telekom Fotoservice 2016-05-13 17:23 - 2011-06-01 19:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SCM Microsystems Tools 2016-05-13 17:23 - 2011-04-17 10:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle VideoSpin 2016-05-13 17:23 - 2011-03-24 20:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Handbrake 2016-05-13 17:23 - 2011-03-12 20:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPER © v2011.build.46 (Feb 12, 2011) 2016-05-13 17:23 - 2011-02-09 09:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AmazingMIDI 2016-05-13 17:23 - 2011-01-23 17:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free M4a to MP3 Converter 2016-05-13 17:23 - 2011-01-21 19:19 - 00000000 ____D C:\WINDOWS\system32\custom matrices 2016-05-13 17:23 - 2011-01-21 19:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 - Codec Pack 2016-05-13 17:23 - 2011-01-03 09:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2016-05-13 17:23 - 2010-11-16 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghostscript 2016-05-13 17:23 - 2010-11-13 18:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Neuratron 2016-05-13 17:23 - 2010-11-13 18:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sibelius Software 2016-05-13 17:23 - 2010-09-18 10:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreePDF 2016-05-13 17:23 - 2010-09-18 10:12 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ghostscript 2016-05-13 17:23 - 2010-08-24 21:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\svnet 2016-05-13 17:23 - 2010-06-13 15:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Essentials 2016-05-13 17:23 - 2010-06-13 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2016-05-13 17:23 - 2010-05-19 05:47 - 00000000 ____D C:\WINDOWS\WindowsMobile 2016-05-13 17:23 - 2010-05-15 17:25 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool 2016-05-13 17:23 - 2010-05-05 19:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinnacle Hollywood FX 6.0 for Studio 11 2016-05-13 17:23 - 2010-03-16 23:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iPhoto Plus 4 2016-05-13 17:23 - 2010-03-14 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyVoice 2016-05-13 17:23 - 2010-02-06 17:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AviSynth 2.5 2016-05-13 17:23 - 2010-02-06 17:09 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\multiAVCHD 2016-05-13 17:23 - 2010-02-06 16:59 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ODBC 2016-05-13 17:23 - 2010-02-06 11:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartCutter PsTs 20091004 2016-05-13 17:23 - 2010-01-30 19:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VDS-Expert QM 2016-05-13 17:23 - 2010-01-30 19:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vanBasco's Karaoke Player 2016-05-13 17:23 - 2010-01-26 21:56 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-05-13 17:23 - 2010-01-26 21:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2016-05-13 17:23 - 2010-01-19 22:11 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\P A I P 2016-05-13 17:23 - 2010-01-19 14:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2016-05-13 17:23 - 2010-01-18 19:49 - 00000000 ____D C:\Users\Ernst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WS_FTP 2016-05-13 17:23 - 2010-01-18 18:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digital Video Converter 2016-05-13 17:23 - 2010-01-18 17:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2016-05-13 17:23 - 2010-01-17 20:55 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling 2016-05-13 17:20 - 2009-07-14 04:37 - 00000000 ____D C:\Users\Default.migrated 2016-05-13 17:14 - 2012-02-04 17:25 - 00000000 ____D C:\WINDOWS\system32\SPReview 2016-05-13 17:14 - 2012-02-04 17:25 - 00000000 ____D C:\WINDOWS\system32\EventProviders 2016-05-13 17:13 - 2016-02-13 14:15 - 00000000 ____D C:\WINDOWS\ShellNew 2016-05-13 17:13 - 2016-02-13 13:57 - 00000000 ____D C:\WINDOWS\DigitalLocker 2016-05-13 17:13 - 2015-10-30 07:48 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2016-05-13 17:13 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\System 2016-05-13 17:13 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\schemas 2016-05-13 17:13 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Help 2016-05-13 17:13 - 2013-08-31 15:52 - 00000000 ___HD C:\WINDOWS\system32\CanonIJ Uninstaller Information 2016-05-13 17:13 - 2013-08-24 23:01 - 00000000 __SHD C:\WINDOWS\system32\%APPDATA% 2016-05-13 17:13 - 2011-01-13 20:29 - 00000000 ____D C:\WINDOWS\system32\Adobe 2016-05-13 17:12 - 2016-02-23 01:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 2016-05-13 17:12 - 2015-10-30 07:48 - 00000000 __SHD C:\Program Files\Windows Sidebar 2016-05-13 17:12 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Common Files\System 2016-05-13 17:12 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2016-05-13 17:12 - 2015-09-20 21:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bullzip 2016-05-13 17:12 - 2015-09-20 07:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security 2016-05-13 17:12 - 2015-03-21 11:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie 2016-05-13 17:12 - 2015-01-31 20:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe 2016-05-13 17:12 - 2014-09-30 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo 2016-05-13 17:12 - 2013-11-18 19:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon iP7200 series 2016-05-13 17:12 - 2013-11-04 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EURACOM_4D03 2016-05-13 17:12 - 2013-08-31 15:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2016-05-13 17:12 - 2012-06-08 09:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panasonic 2016-05-13 17:12 - 2012-01-29 19:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Biet-O-Matic 2016-05-13 17:12 - 2011-06-01 19:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SCM Microsystems 2016-05-13 17:12 - 2010-11-21 12:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon 2016-05-13 17:12 - 2010-06-06 22:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aura4You 2016-05-13 17:12 - 2010-05-05 19:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Studio 11 2016-05-13 17:12 - 2010-02-18 14:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon 2016-05-13 17:12 - 2010-02-07 12:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AceBIT 2016-05-13 17:12 - 2010-01-23 11:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\T-Online 2016-05-13 17:12 - 2009-07-14 10:56 - 00000000 ___RD C:\Users\Public\Recorded TV 2016-05-13 17:12 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\Microsoft Games 2016-05-13 17:12 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\DVD Maker 2016-05-13 16:27 - 2009-07-14 06:34 - 00023168 _____ C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-05-13 16:27 - 2009-07-14 06:34 - 00023168 _____ C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-05-13 16:03 - 2016-02-13 15:27 - 00000000 ___HD C:\$WINDOWS.~BT 2016-05-13 15:36 - 2010-12-08 22:12 - 00325120 ___SH C:\Users\Ernst\Downloads\Thumbs.db 2016-05-12 10:06 - 2010-12-08 23:11 - 136686448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-05-11 21:57 - 2015-10-30 07:49 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2016-05-11 21:57 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2016-05-11 12:28 - 2013-11-09 19:20 - 00000000 ____D C:\Users\Ernst\AppData\Local\FRITZ! 2016-05-09 17:33 - 2015-10-25 15:31 - 00001370 _____ C:\Users\Ernst\Desktop\CopyTrans Control Center.lnk 2016-05-09 16:41 - 2012-05-06 18:05 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2016-05-03 13:33 - 2014-09-15 15:57 - 00000000 ____D C:\Program Files\Common Files\DVDVideoSoft 2016-05-03 13:33 - 2013-09-06 18:49 - 00000000 ____D C:\Program Files\DVDVideoSoft 2016-04-30 15:25 - 2014-09-11 08:31 - 00001023 _____ C:\Users\Public\Desktop\Stream What You Hear (SWYH).lnk 2016-04-30 15:25 - 2014-09-11 08:31 - 00000000 ____D C:\Program Files\Stream What You Hear ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-08-25 20:52 - 2015-08-25 20:52 - 0002314 _____ () C:\Program Files\INSTALL.LOG 2010-11-13 18:16 - 2010-11-13 18:16 - 0000604 ____H () C:\Program Files\STFT Notifier 2015-11-24 10:12 - 2016-03-18 08:21 - 0000040 _____ () C:\Users\Ernst\AppData\Roaming\cdr.ini 2014-05-08 14:45 - 2014-05-08 14:45 - 0000000 _____ () C:\Users\Ernst\AppData\Roaming\gdfw.log 2014-05-08 14:45 - 2015-05-28 20:48 - 0003313 _____ () C:\Users\Ernst\AppData\Roaming\gdscan.log 2010-01-16 20:02 - 2010-01-15 23:42 - 4302944 _____ () C:\Users\Ernst\AppData\Roaming\IMAG0023.AVI 2014-05-14 21:54 - 2014-05-14 22:06 - 0028268 _____ () C:\Users\Ernst\AppData\Roaming\Kommagetrennte Werte (Windows).ADR 2014-12-07 12:01 - 2014-12-07 12:03 - 0583820 _____ () C:\Users\Ernst\AppData\Roaming\Scorch_Install.log 2016-01-17 18:01 - 2016-03-07 17:53 - 0021504 _____ () C:\Users\Ernst\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2010-03-08 23:21 - 2010-03-08 23:31 - 0282624 _____ () C:\Users\Ernst\AppData\Local\filesync.metadata 2015-11-26 18:03 - 2016-02-23 23:06 - 0000600 _____ () C:\Users\Ernst\AppData\Local\PUTTY.RND 2016-05-13 17:03 - 2016-05-13 17:03 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2010-02-09 14:39 - 2016-05-14 14:02 - 0000024 _____ () C:\ProgramData\__FileUploader.log Einige Dateien in TEMP: ==================== C:\Users\Ernst\AppData\Local\Temp\avgnt.exe C:\Users\Ernst\AppData\Local\Temp\gluninstall.exe C:\Users\Ernst\AppData\Local\Temp\libeay32.dll C:\Users\Ernst\AppData\Local\Temp\msvcr120.dll C:\Users\Ernst\AppData\Local\Temp\sqlite3.dll C:\Users\Ernst\AppData\Local\Temp\WdfCoInstaller01007.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-05-29 12:30 ==================== Ende vom FRST.txt ============================[/CODE] Code: Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x86) Version:29-05-2016 02 |
Welches Image? Von einer sauberen Neuinstallation oder ein Backup nach einiger Zeit? Ich nur Malwarefuzzy, wenn PC sauber und trotzdem noch mit Problemen, nicht meine Baustelle. ;) Jetzt bitte Suchscan durchführen: Schritt 1 ESET Online Scanner
|
Eset log Code: ESETSmartInstaller@High as downloader log: Das Image wurde kurz nach dem Update Win7-Win 10 erstellt. Wenn es installiert wird, funktioniert alles wunderbar- nach einigen Tagen fängt dann das problem mit dem Explorer etc. an. |
Offensichtlich kann Malware als Ursache ausgeschlossen werden. Lesestoff zum Downloadverhalten: CHIP-Installer - was ist das? - Anleitungen |
Alle Zeitangaben in WEZ +1. Es ist jetzt 19:54 Uhr. |
Copyright ©2000-2025, Trojaner-Board