Ordner mit fragwürdigem Inhalt erstellen sich nach Löschen neu Hallo!
Nach heute erfolgtem Upgrade von Windows 7 auf Windows 10 erstellen sich Ordner im Stammverzeichnis C:\ nach Löschen unter teils geändertem Namen neu. (z.B. Btool147, Xtransfer47, Inhalt: z.B. typical spencer.doc, weekend_assist_subject_crush.xls, basement.version.docx...).
Meine Virenscanner (Defender, Malawarebytes, Trojan Remover) finden nichts.
Ich bin mit meinem Latein am Ende und wäre für Hilfe sehr dankbar.
Hier die Logs: Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 12-10-2019
durchgeführt von Xaver (Administrator) auf XAVER-HP (Hewlett-Packard HP EliteBook 820 G1) (12-10-2019 15:39:58)
Gestartet von C:\Users\Xaver\Desktop
Geladene Profile: Xaver (Verfügbare Profile: Xaver)
Platform: Windows 10 Pro Version 1909 18363.418 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Chrome
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
() [Datei ist nicht signiert] C:\Program Files (x86)\HP HSPA+ Mobile Broadband\CommService\CommServiceEx.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Cybereason) [Datei ist nicht signiert] C:\Program Files (x86)\Cybereason\RansomFree\CybereasonRansomFree.exe
(Cybereason) [Datei ist nicht signiert] C:\Program Files (x86)\Cybereason\RansomFree\CybereasonRansomFreeServiceHost.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.301\GoogleCrashHandler.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.301\GoogleCrashHandler64.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\78.0.3904.7\remoting_host.exe
(Google LLC -> Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\78.0.3904.7\remoting_host.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(IDT, Inc.) [Datei ist nicht signiert] C:\Program Files\IDT\WDM\stacsv64.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation -> ) C:\Windows\System32\igfxTray.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel Corporation -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Intel Corporation -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Intel Corporation -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel(R) Corporation) [Datei ist nicht signiert] C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Xaver\AppData\Local\Microsoft\OneDrive\19.152.0927.0012\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Xaver\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11811.1001.18.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\fpCSEvtSvc.exe
(Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\NisSrv.exe
(PDF Complete -> PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Validity Sensors, Inc -> Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2019-03-27] (IDT, Inc.) [Datei ist nicht signiert]
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [337184 2013-08-01] (Hewlett-Packard Company -> Hewlett-Packard Company)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 3.1 eXtensible Host Controller Driver\Application\iusb3mon.exe [299520 2019-06-22] (Intel(R) USB eXtensible Host Controller Drivers -> Intel Corporation)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [6788032 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [167488 2013-09-16] (CyberLink Corp. -> CyberLink Corp.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [3314400 2019-10-12] (Simply Super Software -> Simply Super Software)
HKU\S-1-5-21-2894421384-2516563700-734694098-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.120\Installer\chrmstp.exe [2019-10-11] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2018-08-05]
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation -> Microsoft Corporation)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {01CE1F6B-AF1A-44FE-8C10-EB2F5FA8EA88} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {03282E06-2D50-4014-87D0-CCB3ED521D26} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {0484CB79-0535-4285-9BD3-C8BAF2614F26} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {055C674A-107C-4826-8F34-D8327603A727} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {1001DEBB-74B7-4A05-8822-D7D5A19DCDC7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {161ACF04-B7EE-427A-A4A8-3370A6B38492} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe
Task: {188533AF-A029-487A-81B1-9CA5240FE9F1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [655736 2019-07-31] (HP Inc. -> HP Inc.)
Task: {19D3E3D4-C2A5-43F9-ADFC-50D39502B81D} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe
Task: {1D36F890-EA79-4563-A3F6-4DDF86369C9A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136056 2019-01-02] (HP Inc. -> HP Inc.)
Task: {24C26F02-002C-41CB-ACAD-782B743299D4} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [6944304 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
Task: {31F3BFF7-B7AD-4A4E-9D01-80FFD95864CB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {34107404-2379-4E1C-89D3-D7B307EFB6C2} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18744 2019-04-15] (Intel(R) Software Development Products -> Intel Corporation)
Task: {35A6E42A-3886-4E53-BBCA-2C84E53A73D8} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {36B9AD15-B59B-4ED1-B76D-F00E0F1B603C} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {452786FA-0343-400A-85DF-67A475AE4BC2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1094008 2019-08-21] (HP Inc. -> HP Inc.)
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47c2-B62A-B7C4CED925CB}
Task: {4CD60EE8-78C9-4ECA-990B-3E4730BEF13E} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [7192192 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
Task: {4E35C947-BE46-4E19-8A28-5EF509E9DD9B} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4F18B435-F71D-4840-A769-51BB0552A7DD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [253600 2013-12-22] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {53CFF5FE-04C6-4414-8BB0-6827D4CCB8ED} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18744 2019-04-15] (Intel(R) Software Development Products -> Intel Corporation)
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {5D32C1C1-9D99-4C09-B699-37219D321549} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {62757B56-ED24-452C-99D3-A0E0F6E55AE0} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {64EB08EE-E4A0-4600-8393-7F800A982398} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-08-03] (Google Inc -> Google Inc.)
Task: {67B0462F-7C5E-4F41-911C-3FB9A1258B7A} - System32\Tasks\Cybereason RansomFree Autostart => C:\Program Files (x86)\Cybereason\RansomFree\CybereasonRansomFree.exe [1065984 2017-11-20] (Cybereason) [Datei ist nicht signiert]
Task: {689DAD78-6898-4F25-867F-22DC5409EB35} - System32\Tasks\ISM-UpdateService-e57b59e7-5862-4250-9ce0-76fb411dc0d2 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\Bootstrap.exe [257824 2013-07-18] (Intel® Services Manager -> Intel Corporation)
Task: {6EDEA369-87C1-404A-86C3-0A4330C6DA05} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [7651984 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
Task: {73CE1543-802F-46C8-87B9-77AB386BF1A6} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {763AEC3D-5594-431C-86AE-F8C9EA03BBC4} - System32\Tasks\Cybereason RansomFree Keepalive => C:\Program Files (x86)\Cybereason\RansomFree\CybereasonRansomFree.exe [1065984 2017-11-20] (Cybereason) [Datei ist nicht signiert]
Task: {88A89191-A566-40C3-9379-E62C6BB9755C} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {8A09B3B9-F735-48C1-9645-716633FE2685} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8CEAE0A5-6E48-431C-AF2C-6A29853388AB} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {8D555CF7-AA2B-4694-897E-0746BAA98FB4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [249720 2019-08-19] (HP Inc. -> HP Inc.)
Task: {95FA61A0-7521-430D-A3FB-B4039DE8068B} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A196C596-9A31-4AEC-B38B-C518B3D7EF14} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {A198FA74-8D17-4364-8C02-095978E5FAF3} - System32\Tasks\HPCeeScheduleForXaver => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [97656 2018-09-10] (HP Inc. -> HP Inc.)
Task: {ABE1BD39-2F61-451A-94D6-FCF533CBCC7B} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {ACC6554C-0CED-4681-BD94-ED6787A419E4} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61}
Task: {AE31E0DE-CA00-4CEF-974D-1FA0DBBD4D59} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {AEB1C989-B5E9-4224-922D-B1DCC2D83D06} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B08E10C7-027D-4C49-BD3F-D256B68C373F} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40b4-8963-D3C761B18371}
Task: {B3551436-DB1B-43F3-9EDA-3E59D0BB1913} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-08-03] (Google Inc -> Google Inc.)
Task: {B7E6025B-CA8F-43DB-8F71-C19A0E4ED6EA} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BB1279A6-C301-44CD-8A71-62CC454DEA1D} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BDFC1E26-C962-4057-8F68-33ECF37D4847} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C3DFDDE7-F58A-47C8-B7AB-340D96C9DE1F} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E}
Task: {CBDE9BEE-6317-467C-9209-50617D1C1D47} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1506680 2019-06-14] (HP Inc. -> HP Inc.)
Task: {CE51ABCD-D663-4F78-9282-9BD91CCCAD6B} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D5D6A697-C6D2-4942-B001-21E4BCAE36C2} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
Task: {D99B350C-991D-4681-9E76-860F958ADBD1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DEBA1879-77A3-4C26-8B87-FD0B4B6BA6F6} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {DFA8776A-3485-4FCE-9779-3B4CFC42A57E} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {E00F5B81-461E-4999-A47A-8BEF9E74C992} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {E31D2977-1536-4B70-9BC5-3F062B3BB573} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {EBC251DF-D0AD-44CD-93FA-040F0B808891} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696 2018-12-10] (HP Inc. -> HP Inc.)
Task: {F47D0C3F-461E-47DF-9C16-5FBA6587E645} - System32\Tasks\ISM-UpdateService-e57b59e7-5862-4250-9ce0-76fb411dc0d2-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\Bootstrap.exe [257824 2013-07-18] (Intel® Services Manager -> Intel Corporation)
Task: {F9CF26DF-2FB1-4D61-B875-3D69D4D6C47E} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1}
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForXaver.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{D04BADE8-461C-4C8A-9319-51928909D87A}: [DhcpNameServer] 192.168.178.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPCOM14/10
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM14/10
HKU\S-1-5-21-2894421384-2516563700-734694098-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPCOM14/10
HKU\S-1-5-21-2894421384-2516563700-734694098-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM14/10
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_221\bin\ssv.dll [2019-08-15] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-08-15] (Oracle America, Inc. -> Oracle Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -> HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -> HP Inc.)
Handler-x32: http - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2004-01-29] (Microsoft Corporation) [Datei ist nicht signiert]
Handler-x32: http - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2004-01-29] (Microsoft Corporation) [Datei ist nicht signiert]
Handler-x32: https - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2004-01-29] (Microsoft Corporation) [Datei ist nicht signiert]
Handler-x32: https - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2004-01-29] (Microsoft Corporation) [Datei ist nicht signiert]
Handler-x32: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL [2000-04-19] (Microsoft Corporation) [Datei ist nicht signiert]
Handler-x32: msdaipp - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2004-01-29] (Microsoft Corporation) [Datei ist nicht signiert]
Handler-x32: msdaipp - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll [2004-01-29] (Microsoft Corporation) [Datei ist nicht signiert]
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2011-11-03] (Skype Technologies SA -> Skype Technologies)
FireFox:
========
FF DefaultProfile: sceu6fhp.default
FF ProfilePath: C:\Users\Xaver\AppData\Roaming\Mozilla\Firefox\Profiles\sceu6fhp.default [2019-10-12]
FF user.js: detected! => C:\Users\Xaver\AppData\Roaming\Mozilla\Firefox\Profiles\sceu6fhp.default\user.js [2019-03-27]
FF HomepageOverride: Mozilla\Firefox\Profiles\sceu6fhp.default -> Disabled: _ceMembers_@free.easypdfcombine.com
FF HomepageOverride: Mozilla\Firefox\Profiles\sceu6fhp.default -> Disabled: _ewMembers_@free.mergedocsonline.com
FF NewTabOverride: Mozilla\Firefox\Profiles\sceu6fhp.default -> Disabled: _ceMembers_@free.easypdfcombine.com
FF NewTabOverride: Mozilla\Firefox\Profiles\sceu6fhp.default -> Disabled: _ewMembers_@free.mergedocsonline.com
FF Extension: (ETP Search Volume Study) - C:\Users\Xaver\AppData\Roaming\Mozilla\Firefox\Profiles\sceu6fhp.default\Extensions\etp-search-volume-study@shield.mozilla.org.xpi [2019-04-10]
FF Extension: (Ghostery – datenschutzorientierter Werbeblocker) - C:\Users\Xaver\AppData\Roaming\Mozilla\Firefox\Profiles\sceu6fhp.default\Extensions\firefox@ghostery.com.xpi [2019-10-11]
FF Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\Xaver\AppData\Roaming\Mozilla\Firefox\Profiles\sceu6fhp.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2019-10-11]
FF Plugin: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-08-15] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-08-15] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-07-26] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-07-26] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corporation -> Microsoft Corp.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.301\npGoogleUpdate3.dll [2019-10-09] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.301\npGoogleUpdate3.dll [2019-10-09] (Google Inc -> Google LLC)
StartMenuInternet: Firefox-839FFB11AD855824 - C:\Users\Xaver\AppData\Local\Mozilla Firefox\firefox.exe
Chrome:
=======
CHR DefaultProfile: Default
CHR StartupUrls: Default -> "hxxps://mail.google.com/mail/u/0/#inbox","hxxps://calendar.google.com/calendar/r/month/2018/5/1"
CHR Profile: C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default [2019-10-12]
CHR Extension: (Präsentationen) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-08-03]
CHR Extension: (Docs) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-08-03]
CHR Extension: (Google Drive) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-08-03]
CHR Extension: (YouTube) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-08-03]
CHR Extension: (Tabellen) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-08-03]
CHR Extension: (Chrome Remote Desktop) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-07-21]
CHR Extension: (Google Docs Offline) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-23]
CHR Extension: (AdBlock) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-10-12]
CHR Extension: (HP Network Check Launcher) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkfpchpiljkaemlpmpebnglgkomamfeo [2019-06-22]
CHR Extension: (Ghostery – datenschutzorientierter Werbeblocker) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2019-10-11]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-11]
CHR Extension: (Google Mail) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-05]
CHR Extension: (Chrome Media Router) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-10-11]
CHR Extension: (Passwortcheck-Erweiterung) - C:\Users\Xaver\AppData\Local\Google\Chrome\User Data\Default\Extensions\pncabnpcffmalkkjpajodfhijclecjno [2019-09-08]
CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo] - hxxps://clients2.google.com/service/update2/crx
==================== Dienste (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\78.0.3904.7\remoting_host.exe [72176 2019-09-08] (Google LLC -> Google Inc.)
R2 CommService; C:\Program Files (x86)\HP HSPA+ Mobile Broadband\CommService\CommServiceEx.exe [69120 2019-03-27] () [Datei ist nicht signiert]
R2 CybereasonRansomFree; C:\Program Files (x86)\Cybereason\RansomFree\CybereasonRansomFreeServiceHost.exe [13824 2017-11-20] (Cybereason) [Datei ist nicht signiert]
R2 fpCsEvtSvc; C:\WINDOWS\system32\fpCSEvtSvc.exe [22496 2017-12-12] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [681760 2013-08-01] (Hewlett-Packard Company -> Hewlett-Packard Company)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [358264 2019-08-07] (HP Inc. -> HP Inc.)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [529696 2019-10-12] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [370560 2019-10-12] (Intel Corporation -> Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [Datei ist nicht signiert]
S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-07-26] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
S3 Intel(R) SUR QC SAM; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18744 2019-04-15] (Intel(R) Software Development Products -> Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-07-26] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [310880 2018-09-05] (Intel Corporation -> )
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1143432 2013-07-18] (PDF Complete -> PDF Complete Inc)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3892256 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [3943664 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [233712 2018-02-06] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5796168 2019-09-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2019-03-27] (IDT, Inc.) [Datei ist nicht signiert]
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255640 2019-01-02] (Synaptics Incorporated -> Synaptics Incorporated)
R2 valWBFPolicyService; C:\WINDOWS\system32\valWBFPolicyService.exe [82904 2017-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [4059744 2018-09-05] (Intel Corporation -> Intel® Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ======================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 Accelerometer; C:\WINDOWS\System32\drivers\Accelerometer.sys [53904 2019-07-22] (HP Inc. -> HP)
S3 btmhsf; C:\WINDOWS\System32\DRIVERS\btmhsf.sys [1566152 2018-05-16] (Intel Corporation -> Motorola Solutions, Inc.)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2019-08-27] (Malwarebytes Corporation -> Malwarebytes)
R3 ew_usbenumfilter; C:\WINDOWS\System32\drivers\ew_usbenumfilter.sys [15744 2019-03-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R0 hpdskflt; C:\WINDOWS\System32\drivers\hpdskflt.sys [41104 2019-07-22] (HP Inc. -> HP)
R3 HpqKbFiltr; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [25912 2013-06-26] (Hewlett-Packard Company -> Hewlett-Packard Company)
R3 huawei_cdcacm; C:\WINDOWS\system32\DRIVERS\ew_jucdcacm.sys [111104 2019-03-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 huawei_enumerator; C:\WINDOWS\System32\drivers\ew_jubusenum.sys [92672 2019-03-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 huawei_ext_ctrl; C:\WINDOWS\System32\drivers\ew_juextctrl.sys [30720 2019-03-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 huawei_wwanecm; C:\WINDOWS\System32\drivers\ew_juwwanecm.sys [249344 2019-03-27] (Microsoft Windows Hardware Compatibility Publisher -> MBB Technologies Co., Ltd.)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-03-27] (Martin Malik - REALiX -> REALiX(tm))
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [239392 2019-10-12] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 ikbevent; C:\WINDOWS\System32\DRIVERS\ikbevent.sys [21408 2013-07-23] (Intel(R) Smart Connect software -> )
R3 imsevent; C:\WINDOWS\System32\DRIVERS\imsevent.sys [21920 2013-07-23] (Intel(R) Smart Connect software -> )
R3 ISCT; C:\WINDOWS\System32\drivers\ISCTD64.sys [47008 2019-10-12] (Intel(R) Smart Connect software -> )
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [199768 2019-10-12] (Malwarebytes Corporation -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [224408 2019-10-12] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [73584 2019-10-12] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [275232 2019-10-12] (Malwarebytes Corporation -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [116832 2019-10-12] (Malwarebytes Corporation -> Malwarebytes)
R3 MEIx64; C:\WINDOWS\System32\drivers\TeeDriverx64.sys [201296 2019-03-27] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3521016 2019-10-12] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
U5 RTSPER; C:\Windows\System32\Drivers\RTSPER.sys [865216 2019-03-27] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
S3 SmbDrv; C:\WINDOWS\system32\drivers\Smb_driver_AMDASF.sys [30448 2013-09-04] (Synaptics Incorporated -> Synaptics Incorporated)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [56840 2019-10-12] (Synaptics Incorporated -> Synaptics Incorporated)
R3 SPUVCbv; C:\WINDOWS\System32\Drivers\SPUVCbv64.sys [919072 2019-10-12] (SUNPLUS INNOVATION TECHNOLOGY INC. -> Sunplus Innovation Technology Inc.)
R3 STHDA; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [551936 2019-03-27] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
R3 usb3Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys [206744 2013-06-21] (Intel Wireless Display -> Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46688 2019-10-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [350136 2019-10-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-12] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [32832 2019-10-12] (HP Inc. -> HP)
U3 idsvc; kein ImagePath
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2019-10-12 15:41 - 2019-10-12 15:41 - 008166712 _____ (ESET spol. s r.o.) C:\Users\Xaver\Downloads\ESETOnlineScanner_DEU.exe
2019-10-12 15:41 - 2019-10-12 15:41 - 000000000 __SHD C:\Users\Xaver\Desktop\0K, this directory is for Ransomware detection (just leave it here)
2019-10-12 15:41 - 2019-10-12 15:41 - 000000000 ___HD C:\Users\Yr74c
2019-10-12 15:41 - 2019-10-12 15:41 - 000000000 ___HD C:\Users\Xaver\Documents\Uversion73
2019-10-12 15:41 - 2019-10-12 15:41 - 000000000 ___HD C:\Users\Xaver\Documents\2019 02 22 Osorted205
2019-10-12 15:41 - 2019-10-12 15:41 - 000000000 ___HD C:\Users\Ak2vk
2019-10-12 15:39 - 2019-10-12 15:41 - 000040766 _____ C:\Users\Xaver\Desktop\FRST.txt
2019-10-12 15:18 - 2019-10-12 15:18 - 000224408 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2019-10-12 15:18 - 2019-10-12 15:18 - 000199768 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2019-10-12 15:18 - 2019-10-12 15:18 - 000116832 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2019-10-12 15:18 - 2019-10-12 15:18 - 000073584 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2019-10-12 15:14 - 2019-10-12 15:14 - 000275232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-10-12 15:14 - 2019-10-12 15:14 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-10-12 15:14 - 2019-10-12 15:14 - 000000000 ___HD C:\OneDriveTemp
2019-10-12 15:05 - 2019-10-12 15:05 - 000001927 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2019-10-12 15:05 - 2019-10-12 15:05 - 000001927 _____ C:\ProgramData\Desktop\Malwarebytes.lnk
2019-10-12 15:05 - 2019-10-12 15:05 - 000000000 ____D C:\Users\Xaver\AppData\Local\mbamtray
2019-10-12 15:05 - 2019-10-12 15:05 - 000000000 ____D C:\Users\Xaver\AppData\Local\mbam
2019-10-12 15:05 - 2019-10-12 15:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2019-10-12 15:05 - 2019-10-12 15:05 - 000000000 ____D C:\ProgramData\Malwarebytes
2019-10-12 15:05 - 2019-10-12 15:05 - 000000000 ____D C:\Program Files\Malwarebytes
2019-10-12 15:05 - 2019-08-27 05:50 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2019-10-12 15:05 - 2019-06-26 13:00 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2019-10-12 15:03 - 2019-10-12 15:04 - 066367928 _____ (Malwarebytes ) C:\Users\Xaver\Downloads\mb3-setup-37469.37469-3.8.3.2965-1.0.627-1.0.12633.exe
2019-10-12 14:56 - 2019-10-12 14:57 - 000035006 _____ C:\Users\Xaver\Downloads\Addition.txt
2019-10-12 14:53 - 2019-10-12 15:40 - 000000000 ____D C:\FRST
2019-10-12 14:53 - 2019-10-12 14:57 - 000146768 _____ C:\Users\Xaver\Downloads\FRST.txt
2019-10-12 14:53 - 2019-10-12 14:53 - 001616384 _____ (Farbar) C:\Users\Xaver\Desktop\FRST64.exe
2019-10-12 14:42 - 2019-10-12 14:42 - 000000000 ____D C:\WINDOWS\Panther
2019-10-12 14:40 - 2019-10-12 14:40 - 000000000 ____D C:\Users\Xaver\AppData\Local\D3DSCache
2019-10-12 14:38 - 2019-10-12 14:42 - 000000000 ____D C:\Program Files (x86)\Trojan Remover
2019-10-12 14:38 - 2019-10-12 14:38 - 000000000 ____D C:\Users\Xaver\Documents\Simply Super Software
2019-10-12 14:38 - 2019-10-12 14:38 - 000000000 ____D C:\Users\Xaver\AppData\Roaming\Simply Super Software
2019-10-12 14:38 - 2019-10-12 14:38 - 000000000 ____D C:\ProgramData\Simply Super Software
2019-10-12 14:38 - 2019-10-12 14:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trojan Remover
2019-10-12 14:24 - 2019-10-12 14:24 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2019-10-12 12:38 - 2019-10-12 12:38 - 000000000 ____D C:\Users\Xaver\AppData\Local\PeerDistRepub
2019-10-12 12:36 - 2019-10-12 12:36 - 000134344 _____ (Intel Corporation) C:\WINDOWS\system32\NicCo4.dll
2019-10-12 12:21 - 2019-10-12 12:21 - 000000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2019-10-12 12:20 - 2019-10-12 12:20 - 039861728 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 038903808 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 034823872 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 033471392 _____ (Intel Corporation) C:\WINDOWS\system32\igd11dxva64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 029101472 _____ (Intel Corporation) C:\WINDOWS\system32\common_clang64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 019861416 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\common_clang32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 016450944 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 015478400 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 013483304 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 013062688 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 011748264 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 008734632 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig75icd32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 007972144 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys
2019-10-12 12:20 - 2019-10-12 12:20 - 006695128 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 005683552 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 005262760 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 005136392 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 004930912 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 004368816 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 004268440 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 004240120 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 003972016 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmcl32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 002393072 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 002141824 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 001858544 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 001816848 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 001814216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 001590624 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 001178568 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 001021008 _____ C:\WINDOWS\system32\igfxSDK.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000964976 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000961392 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000830871 _____ C:\WINDOWS\system32\DisplayAudiox64.cab
2019-10-12 12:20 - 2019-10-12 12:20 - 000755336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000705144 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000463728 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000445952 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCpHDCPSvc.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000438728 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000416304 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000398848 _____ C:\WINDOWS\system32\igfxTray.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000398472 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000393216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000389792 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000388520 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000370560 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000351232 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000318520 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000312208 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000297072 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000273248 _____ C:\WINDOWS\system32\igfxCPL.cpl
2019-10-12 12:20 - 2019-10-12 12:20 - 000266080 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000265296 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000255112 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000242208 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000235064 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v5058.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000233472 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000229232 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000228728 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000225120 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000222640 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000205400 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000192936 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000184112 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000183000 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000181744 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000173480 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000172400 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2019-10-12 12:20 - 2019-10-12 12:20 - 000160344 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000160312 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000111752 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000104056 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000103264 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000100944 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000099960 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000095368 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000085048 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000055288 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000052792 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000029320 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000029232 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000027784 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000027696 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000022688 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000022688 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2019-10-12 12:20 - 2019-10-12 12:20 - 000004846 _____ C:\WINDOWS\system32\iglhxs64.vp
2019-10-12 12:19 - 2019-10-12 12:19 - 000056840 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys
2019-10-12 12:15 - 2019-10-12 12:42 - 000000000 ____D C:\WINDOWS\Minidump
2019-10-12 11:38 - 2019-10-12 11:38 - 004535040 _____ C:\WINDOWS\system32\Drivers\Netwfw02.dat
2019-10-12 11:38 - 2019-10-12 11:38 - 003521016 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Netwbw02.sys
2019-10-12 11:38 - 2019-10-12 11:38 - 000529696 _____ (Intel Corporation) C:\WINDOWS\system32\ibtsiva.exe
2019-10-12 11:38 - 2019-10-12 11:38 - 000438560 _____ (Intel Corporation) C:\WINDOWS\system32\ibtproppage.dll
2019-10-12 11:38 - 2019-10-12 11:38 - 000239392 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ibtusb.sys
2019-10-12 11:36 - 2019-10-12 11:36 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2019-10-12 11:36 - 2019-10-12 11:36 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2019-10-12 11:36 - 2019-10-12 11:36 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines
2019-10-12 11:35 - 2019-10-12 11:37 - 028759024 _____ (Intel) C:\Users\Xaver\Downloads\Intel-Driver-and-Support-Assistant-Installer.exe
2019-10-12 11:35 - 2019-10-12 11:35 - 000919072 _____ (Sunplus Innovation Technology Inc.) C:\WINDOWS\system32\Drivers\SPUVCBv64.sys
2019-10-12 11:35 - 2019-10-12 11:35 - 000342048 _____ (SunplusIT) C:\WINDOWS\system32\VCamPPage_x64.dll
2019-10-12 11:35 - 2019-10-12 11:35 - 000286752 _____ (SunplusIT) C:\WINDOWS\SysWOW64\VCamPPage.dll
2019-10-12 11:35 - 2019-10-12 11:35 - 000000000 ____D C:\ProgramData\USOShared
2019-10-12 11:34 - 2019-10-12 11:34 - 000047008 _____ C:\WINDOWS\system32\Drivers\ISCTD64.sys
2019-10-12 11:34 - 2019-10-12 11:34 - 000032832 _____ (HP) C:\WINDOWS\system32\Drivers\WirelessButtonDriver64.sys
2019-10-12 11:34 - 2019-03-18 15:20 - 005739008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2019-10-12 11:34 - 2019-03-18 15:19 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2019-10-12 11:34 - 2019-03-18 15:07 - 006359552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2019-10-12 11:34 - 2019-03-18 15:01 - 005496832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 022628352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 019811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 018019840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 009928504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 008010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 007848192 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 007600664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 006517640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 006425600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 006232064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 006227624 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 006164480 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 006084048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 005915648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 005865272 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizimg.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 005764872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 005105152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 004612520 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 004481536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 004129616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 004046336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 004012544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 003964056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 003947008 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 003742032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 003727360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-10-12 11:32 - 2019-10-12 11:32 - 003701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 003590968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-10-12 11:32 - 2019-10-12 11:32 - 003553280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 003386880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 003365376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 003184128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 003105280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002821120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002799616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-10-12 11:32 - 2019-10-12 11:32 - 002772032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002762504 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-10-12 11:32 - 2019-10-12 11:32 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-10-12 11:32 - 2019-10-12 11:32 - 002723328 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-12 11:32 - 2019-10-12 11:32 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002590208 _____ C:\WINDOWS\system32\dwmscene.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002456064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002422592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-10-12 11:32 - 2019-10-12 11:32 - 002314648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002258856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002236144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002190864 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002160640 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002138472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-10-12 11:32 - 2019-10-12 11:32 - 002132280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002069504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 002000168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001957008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001952360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001913296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001857024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001845408 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001819136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001788728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-12 11:32 - 2019-10-12 11:32 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001730560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001716752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001692160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001664928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001664376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001616784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001616608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001611792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001607680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001543168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 001510752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001505320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001501712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-10-12 11:32 - 2019-10-12 11:32 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001439744 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 001386000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001383856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-12 11:32 - 2019-10-12 11:32 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001297936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001273392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001261800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001244944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 001178816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001152016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001150240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001054872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001047968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001043984 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001029432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-10-12 11:32 - 2019-10-12 11:32 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\assignedaccessmanagersvc.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000957240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-10-12 11:32 - 2019-10-12 11:32 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000904208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 000890472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000880088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-10-12 11:32 - 2019-10-12 11:32 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000856576 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-10-12 11:32 - 2019-10-12 11:32 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000833312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000829536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 000827408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000816648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000792296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000774672 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-10-12 11:32 - 2019-10-12 11:32 - 000759488 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000758584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000741392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000732176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-10-12 11:32 - 2019-10-12 11:32 - 000722944 _____ (Microsoft Corporation) |