wassolldas | 25.10.2013 14:03 | Windows Security Essentials hat sich gerade eigenständig geschlossen?! Ich lasse noch Malwarebytes laufen dann kommt Combofix!
Noch eine Frage , sollte ich den PC neustarten wenn es Microsoft Security Eseentials anfordert oder könnte schlimmeres passieren?
32788R22FWJFW Datei ist in (C:.) aufgetaucht! Code:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Datenbank Version: v2013.10.25.03
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16721
Win 7 :: MARCEL-PC [Administrator]
25.10.2013 10:59:45
MBAM-log-2013-10-25 (14-14-07).txt
Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|)
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 631379
Laufzeit: 3 Stunde(n), 13 Minute(n), 13 Sekunde(n)
Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel: 34
HKCR\CLSID\{00078E95-3A4A-4137-8DE7-2824908D1C17} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\searchgol.searchgoldskBnd.1 (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\searchgol.searchgoldskBnd (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00078E95-3A4A-4137-8DE7-2824908D1C17} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00078E95-3A4A-4137-8DE7-2824908D1C17} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\CLSID\{840A13FF-B464-4782-9C96-AAF3092E55DD} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\TypeLib\{88AF4F6A-C6B7-4229-9275-824E98BF97F9} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\esrv.searchgolESrvc.1 (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\esrv.searchgolESrvc (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\CLSID\{8F547BDD-FCD4-48F8-A06F-573D6F404A3C} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\searchgol.searchgolHlpr.1 (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\searchgol.searchgolHlpr (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8F547BDD-FCD4-48F8-A06F-573D6F404A3C} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{8F547BDD-FCD4-48F8-A06F-573D6F404A3C} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{8F547BDD-FCD4-48F8-A06F-573D6F404A3C} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\CLSID\{D8E43B96-EB46-4820-92B7-232AEB735685} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\escort.escortIEPane.1 (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\escort.escortIEPane (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\Typelib\{105F25A9-C42F-48A6-998D-0494E8AE336A} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\Interface\{3860D897-7DCD-473C-9744-B21DB133AB20} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\searchgol.searchgolappCore (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\searchgol.searchgolappCore.1 (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCU\SOFTWARE\searchgol (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCU\Software\DataMngr (PUP.Optional.DataMngr.A) -> Keine Aktion durchgeführt.
HKCU\Software\BabSolution\Updater (PUP.Optional.Babylon.A) -> Keine Aktion durchgeführt.
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings (PUP.Optional.BProtector.A) -> Keine Aktion durchgeführt.
HKLM\SOFTWARE\searchgol (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKLM\SOFTWARE\Google\Chrome\Extensions\aipfmkinhleccnodemkoofnnofpbbpac (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search-Gol Chrome Toolbar (PUP.Optional.BabSolution.A) -> Keine Aktion durchgeführt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693} (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\searchgol (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\CLSID\{539F74BF-7E5C-46BD-9D45-35B1A91C9CBD} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\CLSID\{9448AC19-EB62-46D5-B7DA-B059A7DB466A} (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
HKCR\s (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
Infizierte Registrierungswerte: 4
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{00078E95-3A4A-4137-8DE7-2824908D1C17} (PUP.Optional.SearchGolTB.A) -> Daten: searchgol Toolbar -> Keine Aktion durchgeführt.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{00078E95-3A4A-4137-8DE7-2824908D1C17} (PUP.Optional.SearchGolTB.A) -> Daten: -> Keine Aktion durchgeführt.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|bProtector Start Page (PUP.BProtector) -> Daten: hxxp://www.searchgol.com/?babsrc=HP_ss&mntrId=A4397A79199C7B0B&affID=125036&tsp=5033 -> Keine Aktion durchgeführt.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|bProtectorDefaultScope (PUP.BProtector) -> Daten: {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} -> Keine Aktion durchgeführt.
Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse: 11
C:\Users\Win 7\AppData\Roaming\BabSolution (PUP.Optional.BabSolution.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\BabSolution\Shared (PUP.Optional.BabSolution.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\OpenCandy\47534D74FFDE4B93BD05950D6895C7E1 (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\OpenCandy\F6FCB0BAC953454ABFE4CE30746E40ED (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8} (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\Program Files (x86)\searchgol\searchgol (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
C:\Program Files (x86)\searchgol\searchgol\1.8.16.19 (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\bh (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
Infizierte Dateien: 35
C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\searchgolTlbr.dll (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\searchgolsrv.exe (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\bh\searchgol.dll (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\uninstall.exe (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Local\Temp\OCS\ocs_v7f.exe (PUP.Optional.DownloadSponsor.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\BabSolution\Shared\BabMaint.exe (PUP.Optional.Babylon.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\OpenCandy\47534D74FFDE4B93BD05950D6895C7E1\SearchGolTB.exe (PUP.Optional.PCFixSpeed.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\BabSolution\Shared\BUSolution.dll (PUP.Optional.BabSolution.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\BabSolution\Shared\GUninstaller.exe (PUP.Optional.BabSolution.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\BabSolution\Shared\searchgol.ico (PUP.Optional.BabSolution.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\BabSolution\Shared\SetupParams.ini (PUP.Optional.BabSolution.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\BabSolution\Shared\sqlite3.dll (PUP.Optional.BabSolution.A) -> Keine Aktion durchgeführt.
C:\Users\Win 7\AppData\Roaming\OpenCandy\F6FCB0BAC953454ABFE4CE30746E40ED\Trial-14.0.1000.89_de-DE_1004732_DE-1.exe (PUP.Optional.OpenCandy) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.dll (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\BitGuard.settings (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\bl (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\dm (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\uninstall.exe (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\00 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\01 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\02 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\03 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\10 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\11 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\12 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\13 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\20 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\21 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\22 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\ProgramData\BitGuard\2.6.1694.246\{c16c1ccb-1111-4e5c-a2f3-533ad2fec8e8}\traking_settings\23 (PUP.Optional.BitGuard.A) -> Keine Aktion durchgeführt.
C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\escortShld.dll (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\GUninstaller.exe (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\searchgolApp.dll (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\searchgolEng.dll (PUP.Optional.SearchGolTB.A) -> Keine Aktion durchgeführt.
(Ende) Code:
ComboFix 13-10-24.01 - Win 7 25.10.2013 14:19:49.3.4 - x64
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.49.1031.18.8172.5599 [GMT 2:00]
ausgeführt von:: C:\Users\Win 7\Downloads\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Microsoft Security Essentials *Disabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
((((((((((((((((((((((( Dateien erstellt von 2013-09-25 bis 2013-10-25 ))))))))))))))))))))))))))))))
2013-10-25 12:28:14 . 2013-10-25 12:28:14 -------- d-----w- C:\Users\UpdatusUser\AppData\Local\temp
2013-10-25 12:28:14 . 2013-10-25 12:28:14 -------- d-----w- C:\Users\Public\AppData\Local\temp
2013-10-25 12:28:14 . 2013-10-25 12:28:14 -------- d-----w- C:\Users\Default\AppData\Local\temp
2013-10-25 12:17:33 . 2013-10-25 12:17:33 49872 ----a-w- C:\Windows\system32\drivers\yhuxvjao.sys
2013-10-25 12:13:24 . 2013-10-25 12:13:24 49872 ----a-w- C:\Windows\system32\drivers\ayesmkaa.sys
2013-10-25 11:22:15 . 2013-10-25 11:22:15 49872 ----a-w- C:\Windows\system32\drivers\rgncuiju.sys
2013-10-25 11:06:08 . 2013-10-25 11:06:08 49872 ----a-w- C:\Windows\system32\drivers\cqimxtsq.sys
2013-10-25 10:08:51 . 2013-10-25 10:08:52 49872 ----a-w- C:\Windows\system32\drivers\gjbujhav.sys
2013-10-25 09:24:36 . 2013-10-25 09:24:37 49872 ----a-w- C:\Windows\system32\drivers\bxbfmipu.sys
2013-10-25 09:09:59 . 2013-10-25 09:09:59 49872 ----a-w- C:\Windows\system32\drivers\ecepuvxl.sys
2013-10-25 09:00:19 . 2013-10-25 09:00:19 49872 ----a-w- C:\Windows\system32\drivers\ewcevppa.sys
2013-10-25 08:56:21 . 2013-10-25 08:56:26 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-10-25 08:56:21 . 2013-04-04 12:50:32 25928 ----a-w- C:\Windows\system32\drivers\mbam.sys
2013-10-25 08:51:16 . 2013-10-25 08:51:16 49872 ----a-w- C:\Windows\system32\drivers\byopinfx.sys
2013-10-25 08:50:54 . 2013-10-25 08:50:54 49872 ----a-w- C:\Windows\system32\drivers\unhahinc.sys
2013-10-25 08:49:40 . 2013-10-25 08:49:40 49872 ----a-w- C:\Windows\system32\drivers\xvuaxzer.sys
2013-10-25 08:49:19 . 2013-10-25 08:49:19 75888 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AC490973-A4CF-4483-BCF0-2969E3297B1C}\offreg.dll
2013-10-25 08:46:48 . 2013-10-14 07:12:19 10280728 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{AC490973-A4CF-4483-BCF0-2969E3297B1C}\mpengine.dll
2013-10-25 08:31:51 . 2013-10-14 07:12:19 10280728 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2013-10-24 17:05:37 . 2013-10-24 17:28:01 -------- d-sh--w- C:\Windows\SysWow64\AI_RecycleBin
2013-10-24 17:04:48 . 2013-10-24 17:28:41 -------- d-----w- C:\Users\Win 7\AppData\Roaming\Riot Games
2013-10-19 07:35:47 . 2013-10-19 07:35:00 965000 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{8AFCE219-E400-4E84-A2AF-10A0A35F8AC1}\gapaengine.dll
2013-10-18 20:36:20 . 2013-10-18 20:36:20 -------- d-----w- C:\Users\Win 7\AppData\Local\Blizzard Entertainment
2013-10-12 22:59:38 . 2013-10-12 22:59:38 -------- d-----w- C:\Users\Win 7\AppData\Local\avgchrome
2013-10-12 21:50:12 . 2013-10-12 21:50:12 -------- d-----w- C:\Users\Win 7\AppData\Local\Avg2014
2013-10-12 21:47:53 . 2013-10-12 21:47:53 -------- d-----w- C:\Users\Win 7\AppData\Roaming\TuneUp Software
2013-10-12 21:47:42 . 2013-10-12 21:48:10 -------- d-----w- C:\ProgramData\TuneUp Software
2013-10-12 21:47:38 . 2013-10-12 21:47:38 -------- d-sh--w- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-10-12 21:47:38 . 2013-10-12 21:47:38 -------- d--h--w- C:\ProgramData\Common Files
2013-10-12 21:46:33 . 2013-10-25 08:30:25 -------- d-----w- C:\Program Files (x86)\searchgol
2013-10-12 21:46:29 . 2013-10-25 08:30:33 -------- d-----w- C:\Users\Win 7\AppData\Roaming\searchgol
2013-10-12 21:46:28 . 2013-10-12 21:46:28 -------- d-----w- C:\ProgramData\BitGuard
2013-10-12 21:46:11 . 2013-10-25 08:30:33 -------- d-----w- C:\Users\Win 7\AppData\Roaming\BabSolution
2013-10-12 21:45:57 . 2013-10-12 21:45:57 -------- d-----w- C:\ProgramData\Babylon
2013-10-12 21:45:41 . 2013-10-12 21:45:48 -------- d-----w- C:\Program Files (x86)\Common Files\DVDVideoSoft
2013-10-12 21:45:40 . 2013-10-12 21:46:01 -------- d-----w- C:\Program Files (x86)\DVDVideoSoft
2013-10-12 21:45:40 . 2013-10-12 21:45:40 -------- d-----w- C:\Users\Win 7\AppData\Roaming\OpenCandy
2013-10-11 12:18:24 . 2013-07-04 12:50:39 633856 ----a-w- C:\Windows\system32\comctl32.dll
2013-10-03 08:53:58 . 2013-10-03 08:53:58 -------- d-----w- C:\FRST
2013-09-29 14:02:29 . 2013-09-29 14:02:29 -------- d-----w- C:\ProgramData\Steam
2013-09-27 19:16:00 . 2013-09-27 19:16:02 -------- d-----w- C:\Users\Win 7\AppData\Roaming\Guild Wars 2
2013-09-27 15:54:40 . 2013-09-27 15:55:35 -------- d-----w- C:\Users\Win 7\AppData\Roaming\.technic
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
2013-10-05 12:43:30 . 2013-08-18 12:32:16 290184 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr
2013-10-05 12:43:30 . 2013-08-18 12:28:49 290184 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
2013-10-05 12:43:07 . 2013-08-18 12:28:49 290184 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0
2013-09-06 14:37:16 . 2012-06-13 16:09:20 965008 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
2013-08-29 01:48:15 . 2013-10-11 12:18:12 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2013-08-28 17:27:12 . 2013-08-17 15:06:10 447752 ----a-w- C:\Windows\SysWow64\vp6vfw.dll
2013-08-18 12:37:04 . 2013-08-18 12:28:48 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
2013-08-05 02:25:45 . 2013-09-12 13:15:30 155584 ----a-w- C:\Windows\system32\drivers\ataport.sys
2013-08-02 02:14:57 . 2013-09-12 13:15:20 215040 ----a-w- C:\Windows\system32\winsrv.dll
2013-08-02 02:13:34 . 2013-09-12 13:15:24 424448 ----a-w- C:\Windows\system32\KernelBase.dll
2013-08-02 02:13:34 . 2013-09-12 13:15:22 1161216 ----a-w- C:\Windows\system32\kernel32.dll
2013-08-02 02:12:47 . 2013-09-12 13:15:20 43520 ----a-w- C:\Windows\system32\csrsrv.dll
2013-08-02 02:12:20 . 2013-09-12 13:15:19 6144 ---ha-w- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 02:12:20 . 2013-09-12 13:15:18 4608 ---ha-w- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 02:12:20 . 2013-09-12 13:15:18 4096 ---ha-w- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-02 02:12:20 . 2013-09-12 13:15:18 4096 ---ha-w- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-08-02 02:12:20 . 2013-09-12 13:15:18 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 02:12:20 . 2013-09-12 13:15:18 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-08-02 02:12:20 . 2013-09-12 13:15:18 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-08-02 02:12:20 . 2013-09-12 13:15:14 6656 ----a-w- C:\Windows\system32\apisetschema.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:19 3584 ---ha-w- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:19 3584 ---ha-w- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:18 4608 ---ha-w- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:18 3584 ---ha-w- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:18 3584 ---ha-w- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:18 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:17 4096 ---ha-w- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:17 3584 ---ha-w- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:17 3584 ---ha-w- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:17 3584 ---ha-w- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:17 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:17 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:17 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-08-02 02:12:19 . 2013-09-12 13:15:15 4096 ---ha-w- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-08-02 02:12:18 . 2013-09-12 13:15:18 5120 ---ha-w- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-08-02 02:12:18 . 2013-09-12 13:15:16 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-08-02 02:12:18 . 2013-09-12 13:15:16 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-02 02:12:18 . 2013-09-12 13:15:16 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-08-02 02:12:18 . 2013-09-12 13:15:16 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-08-02 02:12:18 . 2013-09-12 13:15:16 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-08-02 02:12:18 . 2013-09-12 13:15:15 3072 ---ha-w- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-08-02 01:50:42 . 2013-09-12 13:15:21 274944 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:19 5120 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:19 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:18 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:18 4096 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:18 4096 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:18 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:18 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:18 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:18 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:17 4096 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:17 4096 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:17 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:17 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:17 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:17 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:17 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:17 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:16 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:16 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:15 6656 ----a-w- C:\Windows\SysWow64\apisetschema.dll
2013-08-02 01:48:15 . 2013-09-12 13:15:15 4096 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
2013-08-02 01:48:14 . 2013-09-12 13:15:16 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
2013-08-02 01:48:14 . 2013-09-12 13:15:16 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
2013-08-02 01:48:14 . 2013-09-12 13:15:16 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
2013-08-02 01:48:14 . 2013-09-12 13:15:15 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
2013-08-02 01:09:17 . 2013-09-12 13:15:20 338432 ----a-w- C:\Windows\system32\conhost.exe
2013-08-02 00:59:09 . 2013-09-12 13:15:21 112640 ----a-w- C:\Windows\system32\smss.exe
2013-08-02 00:43:05 . 2013-09-12 13:15:16 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43:05 . 2013-09-12 13:15:15 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43:05 . 2013-09-12 13:15:15 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43:05 . 2013-09-12 13:15:15 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
[-] 2013-07-04 12:50:39 . 9028D1621C43DF8DFBD1C76860412A11 . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7601.18201_none_97c9d703ee91c7f1\comctl32.dll
[-] 2013-07-04 12:50:39 . 9028D1621C43DF8DFBD1C76860412A11 . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_a4d3b9377117c3df\comctl32.dll
[-] 2013-07-04 12:10:29 . 4F3C5CE9EF990E1C62B7E7EBA0EBA1C2 . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7601.22376_none_980cc5cd07e3aa05\comctl32.dll
[-] 2013-07-04 12:10:29 . 4F3C5CE9EF990E1C62B7E7EBA0EBA1C2 . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.22376_none_a6ba9bf96e3dcd13\comctl32.dll
[7] 2010-11-20 13:25:58 . 14DFDEAF4E589ED3F1FF187A86B9408C . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\erdnt\cache64\comctl32.dll
[7] 2010-11-20 13:25:58 . 14DFDEAF4E589ED3F1FF187A86B9408C . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7601.17514_none_97c2246fee970dbb\comctl32.dll
[7] 2010-11-20 13:25:58 . 14DFDEAF4E589ED3F1FF187A86B9408C . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_a4d6a923711520a9\comctl32.dll
[7] 2010-11-20 12:51:44 . 7FA8FDC2C2A27817FD0F624E78D3B50C . 2030080 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac\comctl32.dll
[7] 2010-08-24 00:55:24 . B0CB1D2D5FFA6335DD94B1B531756412 . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7600.20787_none_961cb3b90ac4540e\comctl32.dll
[7] 2010-08-24 00:55:24 . B0CB1D2D5FFA6335DD94B1B531756412 . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.20787_none_a6357652551c0c2c\comctl32.dll
[7] 2010-08-24 00:46:42 . 882C1C473BE598DF08730DA11C5B2B27 . 2030080 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.20787_none_e3967e4730ab1731\comctl32.dll
[7] 2010-08-21 06:31:06 . BC052EFAD10ACA1AD69545B629F50D99 . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7600.16661_none_95a2b509f19be458\comctl32.dll
[7] 2010-08-21 06:31:06 . BC052EFAD10ACA1AD69545B629F50D99 . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.16661_none_a44e1fc257f685f6\comctl32.dll
[7] 2010-08-21 06:12:27 . 113921FC4A80A3DDF646852998B836D0 . 2030080 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7\comctl32.dll
[7] 2009-07-14 01:40:22 . 7E8AB50AB7F2F81F30DCC8A98025B73A . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7600.16385_none_959110a7f1a88a21\comctl32.dll
[7] 2009-07-14 01:40:22 . 7E8AB50AB7F2F81F30DCC8A98025B73A . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.16385_none_a44af8ec57f961cf\comctl32.dll
[7] 2009-07-14 01:24:56 . C093E7835C1372D6D70A6675EDAA97B5 . 2030080 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_fa645303170382f6\comctl32.dll
[-] 2013-07-04 12:50:39 . 9028D1621C43DF8DFBD1C76860412A11 . 633856 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\system32\comctl32.dll
[-] 2013-07-09 14:47:30 . 434CCE8E7150CD1324C5FAA088D1D061 . 186880 . . [6.1.7601.22380 (win7sp1_ldr.130709-0109)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22380_none_d45f6e88cac8f85b\cryptsvc.dll
[-] 2013-07-09 05:46:20 . 6B400F211BEE880A37A1ED0368776BF4 . 184320 . . [6.1.7601.18205 (win7sp1_gdr.130708-1532)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18205_none_d431528fb165f7bc\cryptsvc.dll
[-] 2013-05-13 05:51:01 . D8129C49798CBBFB2E4351D4B7B8EF9C . 184320 . . [6.1.7601.18151 (win7sp1_gdr.130512-1533)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_d3f73fe5b19220ee\cryptsvc.dll
[-] 2013-05-11 05:18:23 . 8122252F0A4ACFA92FA0C1D50D18493B . 186880 . . [6.1.7601.22322 (win7sp1_ldr.130510-1534)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_d4a24ea4ca968363\cryptsvc.dll
[-] 2013-05-10 05:49:28 . 7FDC4626B01106A8EF328C88C7C0DEE3 . 184320 . . [6.1.7601.18150 (win7sp1_gdr.130509-1534)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_d3f63f9bb1930797\cryptsvc.dll
[-] 2013-05-10 05:18:53 . CA13C4F92BEE66DB48E58AB3223DDF6E . 186880 . . [6.1.7601.22321 (win7sp1_ldr.130509-1534)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_d4a14e5aca976a0c\cryptsvc.dll
[7] 2012-06-04 07:52:35 . 7E7D2DACF65D750D466F36BD3D09AE20 . 186880 . . [6.1.7601.22010 (win7sp1_ldr.120601-1503)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_d4ab184aca903d4f\cryptsvc.dll
[7] 2012-06-02 05:41:28 . 9C01375BE382E834CC26D1B7EAF2C4FE . 184320 . . [6.1.7601.17856 (win7sp1_gdr.120601-1505)] .. C:\Windows\erdnt\cache64\cryptsvc.dll
[7] 2012-06-02 05:41:28 . 9C01375BE382E834CC26D1B7EAF2C4FE . 184320 . . [6.1.7601.17856 (win7sp1_gdr.120601-1505)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_d3fc6569b18d7211\cryptsvc.dll
[7] 2012-06-02 05:32:25 . 456107D69D4EE850A559434F19EFEE65 . 183808 . . [6.1.7600.21225 (win7_ldr.120601-1507)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.21225_none_d2beeccacd6d6c07\cryptsvc.dll
[7] 2012-06-02 05:25:12 . BAF19B633933A9FB4883D27D66C39E9A . 182272 . . [6.1.7600.17035 (win7_gdr.120601-1506)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.17035_none_d22a7e2db457eb07\cryptsvc.dll
[7] 2012-04-24 05:59:45 . F02786B66375292E58C8777082D4396D . 182272 . . [6.1.7600.17008 (win7_gdr.120423-1505)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.17008_none_d24deecfb43ce339\cryptsvc.dll
[7] 2012-04-24 05:37:37 . 4F5414602E2544A4554D95517948B705 . 184320 . . [6.1.7601.17827 (win7sp1_gdr.120423-1504)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17827_none_d41dd577b1743795\cryptsvc.dll
[7] 2012-04-24 05:36:46 . CE8BF1423AEE47DA5275FBC8AD3BD642 . 183808 . . [6.1.7600.21199 (win7_ldr.120423-1503)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.21199_none_d2773c98cda297d3\cryptsvc.dll
[7] 2012-04-24 05:22:32 . B7337E9C9E5936355BB700AA33E0936E . 186880 . . [6.1.7601.21979 (win7sp1_ldr.120423-1503)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.21979_none_d473633acab895c2\cryptsvc.dll
[7] 2010-11-20 13:25:59 . 15597883FBE9B056F276ADA3AD87D9AF . 177152 . . [6.1.7601.17514 (win7sp1_rtm.101119-1850)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_d4259ed3b16ed82a\cryptsvc.dll
[7] 2009-07-14 01:40:24 . 8C57411B66282C01533CB776F98AD384 . 175104 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.16385_none_d1f48b0bb4805490\cryptsvc.dll
[-] 2013-07-09 05:46:20 . 6B400F211BEE880A37A1ED0368776BF4 . 184320 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\system32\cryptsvc.dll
[-] 2013-08-29 02:19:46 . 786D234A90FCAC72633AE6FC52653A49 . 1162240 . . [6.1.7601.22436 (win7sp1_ldr.130828-1532)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22436_none_f259cda386173c9c\kernel32.dll
[-] 2013-08-02 06:22:04 . C525D51A79B01342344F02E38866CF60 . 1162240 . . [6.1.7601.22411 (win7sp1_ldr.130801-1934)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22411_none_f26a6c09860b8607\kernel32.dll
[-] 2013-08-02 02:13:34 . D8973E71F1B35CD3F3DEA7C12D49D0F0 . 1161216 . . [6.1.7601.18229 (win7sp1_gdr.130801-1533)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.18229_none_f1ddffbc6ceecfbf\kernel32.dll
[-] 2013-07-08 05:14:41 . 38E54D419A2962E24D35D868E4724AE7 . 1162240 . . [6.1.7601.22379 (win7sp1_ldr.130707-1535)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22379_none_f2318ceb8634fb3e\kernel32.dll
[7] 2013-01-04 14:14:42 . 9DD828EFBD17246275E8A74D58E836AC . 1162752 . . [6.1.7600.21416 (win7_ldr.130103-1434)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21416_none_f0890ca988e09e80\kernel32.dll
[7] 2013-01-04 05:36:09 . B844114B247D8EF1E5E4E93A282D2E6F . 1162240 . . [6.1.7601.22209 (win7sp1_ldr.130103-1434)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22209_none_f27d3a7985fc3a80\kernel32.dll
[7] 2013-01-04 05:30:34 . 43DB3433F141F01E53D1C5AA0F434098 . 1161216 . . [6.1.7600.17206 (win7_gdr.130103-1435)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17206_none_f00a3de46fbae59e\kernel32.dll
[7] 2012-11-30 05:52:53 . B3BEA6420D482356E53B7C728E05C637 . 1163264 . . [6.1.7601.22177 (win7sp1_ldr.121129-1432)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22177_none_f22f888b8636ce42\kernel32.dll
[7] 2012-11-30 05:43:53 . E3BC37881D92EB59EE0BA3B854A54D1E . 1161216 . . [6.1.7600.17179 (win7_gdr.121129-1434)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17179_none_efc18d686ff0f813\kernel32.dll
[7] 2012-11-30 05:41:07 . 65C113214F7B05820F6D8A65B1485196 . 1161216 . . [6.1.7601.18015 (win7sp1_gdr.121129-1432)] .. C:\Windows\erdnt\cache64\kernel32.dll
[7] 2012-11-30 05:41:07 . 65C113214F7B05820F6D8A65B1485196 . 1161216 . . [6.1.7601.18015 (win7sp1_gdr.121129-1432)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.18015_none_f1e4cab46cea5424\kernel32.dll
[7] 2012-11-30 05:38:48 . B6B1AB98BA656BA1D8E0CA03F59DED51 . 1162752 . . [6.1.7600.21386 (win7_ldr.121129-1435)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21386_none_f03d5b4f891964f0\kernel32.dll
[7] 2012-10-04 17:41:16 . 1DC3504CA4C57900F1557E9A3F01D272 . 1161216 . . [6.1.7601.17965 (win7sp1_gdr.121004-0333)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17965_none_f1aee2f66d12ac97\kernel32.dll
[7] 2012-10-04 17:37:46 . F3C594D0DA3ACFA6C7B781A490AB4282 . 1162240 . . [6.1.7601.22125 (win7sp1_ldr.121004-0334)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22125_none_f263979386100fdf\kernel32.dll
[7] 2012-10-04 17:32:16 . 1DDCACAB8DA5399E5521051923016B18 . 1161216 . . [6.1.7600.17135 (win7_gdr.121004-0336)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17135_none_efe8cbf06fd422f3\kernel32.dll
[7] 2012-10-04 17:29:16 . 6EED0D77C20137948979EA47360A890B . 1162752 . . [6.1.7600.21335 (win7_ldr.121004-0335)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21335_none_f0726aa188f1bfe4\kernel32.dll
[7] 2012-08-20 19:02:39 . 1BDA5DB0C493B390C2DFD09139140DE1 . 1163776 . . [6.1.7600.21306 (win7_ldr.120820-0424)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21306_none_f093daaf88d88568\kernel32.dll
[7] 2012-08-20 18:48:35 . EAF41CFBA5281834CBC383C710AC7965 . 1162240 . . [6.1.7601.17932 (win7sp1_gdr.120820-0419)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17932_none_f1cc51dc6cfd0cbf\kernel32.dll
[7] 2012-08-20 18:24:09 . 624B34180C79D67C470C155DB81FFB8E . 1163264 . . [6.1.7601.22091 (win7sp1_ldr.120820-0419)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22091_none_f213e511864c70f3\kernel32.dll
[7] 2012-08-18 15:37:49 . 8E7F88A62E1AA28F15C0D6784E4C78B6 . 1162240 . . [6.1.7600.17107 (win7_gdr.120817-0952)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17107_none_f00b3c486fba01ce\kernel32.dll
[7] 2011-07-16 05:37:12 . B9B42A302325537D7B9DC52D47F33A73 . 1162752 . . [6.1.7601.17651 (win7sp1_gdr.110715-1504)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17651_none_f1b5ac086d0e33d5\kernel32.dll
[7] 2011-07-16 05:28:00 . 27AC02D8EE4C02E7648C41CB880151DA . 1163264 . . [6.1.7601.21772 (win7sp1_ldr.110715-1506)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.21772_none_f22aa945863b24d8\kernel32.dll
[7] 2011-07-16 05:21:32 . DDBD24DC04DA5FD0EDF45CF72B7C01E2 . 1162240 . . [6.1.7600.16850 (win7_gdr.110715-1503)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.16850_none_efce4eb86fe8ae92\kernel32.dll
[7] 2011-07-16 05:21:15 . 06835B46D9676BEDD80AF25ACF6845FD . 1162240 . . [6.1.7600.21010 (win7_ldr.110715-1502)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21010_none_f083035588e611da\kernel32.dll
[7] 2010-11-20 13:26:42 . 7A6326D96D53048FDEC542DF23D875A0 . 1161216 . . [6.1.7601.17514 (win7sp1_rtm.101119-1850)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17514_none_f1e3eab06ceb12ef\kernel32.dll
[7] 2009-07-14 01:41:13 . 5B4B379AD10DEDA4EDA01B8C6961B193 . 1162240 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.16385_none_efb2d6e86ffc8f55\kernel32.dll
[-] 2013-08-02 02:13:34 . D8973E71F1B35CD3F3DEA7C12D49D0F0 . 1161216 . . [6.1.7601.18015 (win7sp1_gdr.121129-1432)] .. C:\Windows\system32\kernel32.dll
[-] 2013-06-06 05:50:51 . 796B47A4B82EF1C39F13435B88834C48 . 41472 . . [6.1.7601.18177 (win7sp1_gdr.130605-1534)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.18177_none_07bb20dd7154003d\lpk.dll
[-] 2013-06-06 05:17:54 . 22FC61B8E1EBA296FF416C3678E26DD3 . 41472 . . [6.1.7601.22350 (win7sp1_ldr.130605-1534)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.22350_none_08535d608a67b3eb\lpk.dll
[7] 2012-12-16 17:19:39 . 838BF2634A38B344B27AC080D76B28C2 . 41472 . . [6.1.7600.21402 (win7_ldr.121216-0103)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.21402_none_06a50ea48d16f1d1\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\erdnt\cache64\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.16385_none_05c80a1f743763f3\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.16402_none_061b8a8773f9358d\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.16444_none_05f24b6b7417d7ff\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.16763_none_05dbb0fb7428edff\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.17159_none_05ec6077741b94cf\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.17194_none_05bc1f55744085e0\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.20498_none_0649d7dc8d5a6bb3\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.20553_none_067018008d3e7a63\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.20905_none_06a82fc88d1415f8\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.21362_none_06642d368d479c50\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.17514_none_07f91de77125e78d\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.17563_none_07c20e01714f59eb\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.17991_none_079fa54171696fac\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.18032_none_07e15d357138149f\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.21664_none_084cab168a6c130c\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.22153_none_08565a728a6505a2\lpk.dll
[7] 2009-07-14 01:41:19 . D202223587518B13D72D68937B7E3F70 . 41984 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.22195_none_082d1b568a83a814\lpk.dll
[-] 2013-06-06 05:50:51 . 796B47A4B82EF1C39F13435B88834C48 . 41472 . . [6.1.7601.18177 (win7sp1_gdr.130605-1534)] .. C:\Windows\system32\lpk.dll
[-] 2013-09-22 23:23:06 . 9958430CE5BFC43D693D6138C31788CC . 19494912 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20831_none_7a2f961aac5be5be\mshtml.dll
[-] 2013-09-22 22:54:55 . F026C6F104758D0EB215B017016FAE27 . 19252224 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16721_none_91070c5892ad50c1\mshtml.dll
[-] 2013-08-10 05:21:17 . CC4AE7E2ECAEE7612B3C0D3AB302375C . 19246592 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16686_none_91176c1892a04cff\mshtml.dll
[-] 2013-08-10 05:13:22 . C2793FDC1EDB82635C538630FE192CC9 . 19488768 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20794_none_7a40236aac4eaeba\mshtml.dll
[-] 2013-07-26 05:12:31 . 396889142BD839DB8A055A0BE0AD2F79 . 19239424 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16660_none_9115f43492a1808b\mshtml.dll
[-] 2013-07-26 03:59:17 . 865EB4E69DAF2DE052E8D020F4F7D313 . 19482112 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20768_none_7a3cc76cac51c939\mshtml.dll
[-] 2013-06-12 05:10:54 . 884691F819503DD2191A2641CC827A52 . 19482112 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20742_none_7a3b4f88ac52fcc5\mshtml.dll
[-] 2013-06-11 23:25:30 . 9586EC4E1CC39CCBA26A5E7DFE774C9E . 19238912 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16635_none_9112816e92a4b4ab\mshtml.dll
[-] 2013-06-08 14:07:17 . 5C41AF3F4B83340D2783CE8FDE30566A . 19233792 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16618_none_91103c8292a6cee0\mshtml.dll
[-] 2013-06-08 12:23:17 . D8FEA3117BEA18064DA7F0668FA94F38 . 19479552 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20723_none_7a39382cac54e3b8\mshtml.dll
[-] 2013-05-21 12:04:36 . C56EF4C50A1FEED0CC9B7AE068CBBBBB . 19231232 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16576_none_91213bba929917b7\mshtml.dll
[-] 2013-05-17 01:34:09 . DBB793D8B7ED6747F121D5831E749B6A . 19480576 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20719_none_7a37af32ac566427\mshtml.dll
[-] 2013-05-17 00:58:20 . 945C49FA10B96570DFE37CFB145A1D10 . 19233792 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16614_none_911097a292a6685c\mshtml.dll
[-] 2013-05-05 22:35:07 . E139A28843F52F383D414BF0AAEF6CE4 . 17819136 . . [9.00.8112.20594 (WIN7_IE9_LDR_ESCROW.130505-1438)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.4.8112.20594_none_88223f130e20ed2d\mshtml.dll
[-] 2013-05-05 21:36:54 . 7212340908E00AD2F28E58EA04CEB852 . 17818624 . . [9.00.8112.16484 (WIN7_IE9_GDR_ESCROW.130505-1338)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.4.8112.16484_none_87a37233f4fb3172\mshtml.dll
[-] 2013-04-05 01:51:15 . F63D8615292792D36EDF24913636685D . 17818624 . . [9.00.8112.16483 (WIN7_IE9_GDR.130404-1558)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.4.8112.16483_none_87a271e9f4fc181b\mshtml.dll
[-] 2013-04-05 00:33:51 . 43FEF944FF64BE0354A5C129C98EB13D . 17818624 . . [9.00.8112.20593 (WIN7_IE9_LDR.130404-1458)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.4.8112.20593_none_88213ec90e21d3d6\mshtml.dll
[-] 2013-02-22 07:12:34 . 0E860BF2BCDDD94202A6AB9A10EE95EB . 17817600 . . [9.00.8112.20586 (WIN7_IE9_LDR.130221-2052)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.4.8112.20586_none_882f0f930e1703ea\mshtml.dll
[-] 2013-02-22 06:57:13 . 1154FEFC73880A2EF44295EF0DBDC59F . 17817088 . . [9.00.8112.16476 (WIN7_IE9_GDR.130221-2047)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.4.8112.16476_none_87b042b3f4f1482f\mshtml.dll
[7] 2013-02-02 08:04:08 . 1CD82D510D370CB04BB6BD1C660AA96F . 17815040 . . [9.00.8112.20580 (WIN7_IE9_LDR.130201-2112)] .. C:\Windows\winsxs\amd64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.4.8112.20580_none_88290dd70e1c6be0\mshtml.dll
[-] 2013-09-22 22:54:55 . F026C6F104758D0EB215B017016FAE27 . 19252224 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\system32\mshtml.dll
[-] 2013-09-08 02:27:14 . 9A9F9F1A77D6A80EE28B57664F00013E . 327168 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.18254_none_164e004b440bdabf\mswsock.dll
[-] 2013-09-07 02:24:39 . BDDB1FD258B92DEE00F222D3304B5D9C . 327168 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.22444_none_16e26ee85d215bbf\mswsock.dll
[7] 2010-11-20 13:27:10 . 1D5185A4C7E6695431AE4B55C3D7D333 . 326144 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\erdnt\cache64\mswsock.dll
[7] 2010-11-20 13:27:10 . 1D5185A4C7E6695431AE4B55C3D7D333 . 326144 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.17514_none_16795c7543eb48cf\mswsock.dll
[7] 2009-07-14 01:41:34 . FC76FE3C1E1FDB761244D4F74EF560FD . 320000 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7600.16385_none_144848ad46fcc535\mswsock.dll
[-] 2013-09-08 02:27:14 . 9A9F9F1A77D6A80EE28B57664F00013E . 327168 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\system32\mswsock.dll
[-] 2013-09-22 23:23:28 . 1377A310439639A610097ED56975AE19 . 2248704 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20831_none_68d576fc2c057c88\wininet.dll
[-] 2013-09-22 22:55:10 . D28B35DE88D27EFB27DF4B1E8319E3C0 . 2241024 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16721_none_7faced3a1256e78b\wininet.dll
[-] 2013-08-10 05:22:18 . AAFA952E774DDDB0956D3BDFAE5B5B99 . 2241024 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16686_none_7fbd4cfa1249e3c9\wininet.dll
[-] 2013-08-10 05:14:47 . 0A380C8E396975463E3F643E88AE8BDF . 2248704 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20794_none_68e6044c2bf84584\wininet.dll
[-] 2013-07-26 05:13:37 . AC155DD9BD1E6D3B740826A4D1C68AAE . 2241024 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16660_none_7fbbd516124b1755\wininet.dll
[-] 2013-07-26 04:00:11 . 5C49F5A791B944AD8247473ABD35602D . 2248704 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20768_none_68e2a84e2bfb6003\wininet.dll
[-] 2013-06-12 05:12:14 . 09BF0D9701F9D846BBC5ABED003851CB . 2248704 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20742_none_68e1306a2bfc938f\wininet.dll
[-] 2013-06-11 23:26:20 . FAF6EC2460AD5FBBD38D8E1AE28B0D77 . 2241024 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16635_none_7fb86250124e4b75\wininet.dll
[-] 2013-05-21 12:04:37 . 27A9000C534AA9BADC9EE74940F50C6D . 2242048 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16576_none_7fc71c9c1242ae81\wininet.dll
[-] 2013-05-17 01:34:23 . 7E43B93C0E9C138AC1008F646B06E919 . 2248704 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20719_none_68dd90142bfffaf1\wininet.dll
[-] 2013-05-17 00:59:03 . 12716D987D475B051F35895659159705 . 2241024 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16614_none_7fb67884124fff26\wininet.dll
[-] 2013-04-05 01:00:30 . 563C71A913CAC0C3DE5FFCD36EDB43A0 . 1392128 . . [9.00.8112.16483 (WIN7_IE9_GDR.130404-1558)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16483_none_764852cb74a5aee5\wininet.dll
[-] 2013-04-04 23:41:26 . 7FD2D2BE22F9A319AB2FD23DD2C9968A . 1392640 . . [9.00.8112.20593 (WIN7_IE9_LDR.130404-1458)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20593_none_76c71faa8dcb6aa0\wininet.dll
[-] 2013-02-22 06:37:04 . E6A459C8E90C4A873C923C44F3D9510B . 1392640 . . [9.00.8112.20586 (WIN7_IE9_LDR.130221-2052)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20586_none_76d4f0748dc09ab4\wininet.dll
[-] 2013-02-22 06:20:51 . A4F6142CABA82FB7293ECE5FF864B440 . 1392128 . . [9.00.8112.16476 (WIN7_IE9_GDR.130221-2047)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16476_none_76562395749adef9\wininet.dll
[7] 2013-02-02 07:16:31 . 4E0669B513805A7C2A303C8EDEDC8E03 . 1392128 . . [9.00.8112.20580 (WIN7_IE9_LDR.130201-2112)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20580_none_76ceeeb88dc602aa\wininet.dll
[7] 2013-02-02 06:47:19 . FA274190682AA41A46B285208ED46A74 . 1392128 . . [9.00.8112.16470 (WIN7_IE9_GDR.130201-2100)] .. C:\Windows\erdnt\cache64\wininet.dll
[7] 2013-02-02 06:47:19 . FA274190682AA41A46B285208ED46A74 . 1392128 . . [9.00.8112.16470 (WIN7_IE9_GDR.130201-2100)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16470_none_765021d974a046ef\wininet.dll
[7] 2013-01-09 01:12:03 . 435E9C764E1EF70058580996452BE6A2 . 1392128 . . [9.00.8112.16464 (WIN7_IE9_GDR.130108-1522)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16464_none_765ef2ed7494905a\wininet.dll
[7] 2013-01-08 23:55:17 . 43A6A68F1F41B13CA4D580D40DFA57EE . 1392128 . . [9.00.8112.20573 (WIN7_IE9_LDR.130108-1406)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20573_none_76dcbf828dbb32be\wininet.dll
[7] 2012-11-14 06:04:11 . 5121DB613E10A46A3C5085B479026AA7 . 1392128 . . [9.00.8112.16457 (WIN7_IE9_GDR.121113-1947)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16457_none_766cc3b77489c06e\wininet.dll
[7] 2012-11-14 04:01:19 . 5CAF48F12E8CBD96D520F4EFD5B97F76 . 1392128 . . [9.00.8112.20565 (WIN7_IE9_LDR.121113-1824)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20565_none_76e990028db1497b\wininet.dll
[7] 2012-10-08 11:23:52 . A19DB004D954BBC9C4EC125711E1D1C2 . 1392128 . . [9.00.8112.16455 (WIN7_IE9_GDR.121008-0139)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16455_none_766ac323748b8dc0\wininet.dll
[7] 2012-10-08 10:11:05 . 789EAD6F3CE42F3322818988400986E9 . 1392128 . . [9.00.8112.20562 (WIN7_IE9_LDR.121008-0121)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20562_none_76e68f248db3fd76\wininet.dll
[7] 2012-08-24 10:21:18 . 3D165C53E40236A68B7102D1A622D4E0 . 1392128 . . [9.00.8112.16450 (WIN7_IE9_GDR.120824-0038)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16450_none_7665c1b174900f0d\wininet.dll
[7] 2012-08-24 09:53:25 . 456D4E9006DF149C250D40B813290471 . 1392128 . . [9.00.8112.20557 (WIN7_IE9_LDR.120824-0052)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20557_none_76f660828da76038\wininet.dll
[7] 2012-07-15 13:33:19 . 5A45FA344F4AD99D903F4B20E43B89EC . 1392128 . . [9.00.8112.16447 (WIN7_IE9_GDR.120602-0255)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16447_none_767793a37481a47d\wininet.dll
[7] 2012-06-29 03:49:11 . 8EA68FD3780DDDD5072F8CB830B3CB3D . 1392128 . . [9.00.8112.16448 (WIN7_IE9_GDR.120628-1849)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16448_none_767893ed7480bdd4\wininet.dll
[7] 2012-06-29 01:51:43 . 8BA7EDA2656ED7FBC93BDD5CB02B8D4E . 1392128 . . [9.00.8112.20554 (WIN7_IE9_LDR.120628-1705)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20554_none_76f35fa48daa1433\wininet.dll
[7] 2012-05-15 04:01:31 . CE5BFBD9685EE37DB942211450AAEA8F . 1188864 . . [8.00.7601.17842 (win7sp1_gdr.120514-1332)] .. C:\Windows\SoftwareDistribution\Download\40aebec4cb410f41f3a488507ba1e946\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17842_none_7aa6d57e2f8ead3e\wininet.dll
[7] 2012-05-15 03:59:23 . 8DE6FAB55DFDA754CA952B654D1C5784 . 1198592 . . [8.00.7600.21215 (win7_ldr.120514-1332)] .. C:\Windows\SoftwareDistribution\Download\40aebec4cb410f41f3a488507ba1e946\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21215_none_796d5e074b6b0c90\wininet.dll
[7] 2012-05-15 03:57:07 . 507FBE142C77A32C1AE56CA35B6A7307 . 1189888 . . [8.00.7601.21995 (win7sp1_ldr.120514-1333)] .. C:\Windows\SoftwareDistribution\Download\40aebec4cb410f41f3a488507ba1e946\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21995_none_7afd638b48d224c2\wininet.dll
[7] 2012-05-15 03:56:59 . 8D3BC4F666B994382CE1B02E1BFEE0F6 . 1197568 . . [8.00.7600.17024 (win7_gdr.120514-1332)] .. C:\Windows\SoftwareDistribution\Download\40aebec4cb410f41f3a488507ba1e946\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17024_none_78d7ef2032567239\wininet.dll
[7] 2012-02-28 06:51:34 . 2F6A29DAE9BAC86BE14CD2FF1261FDD5 . 1198080 . . [8.00.7600.21158 (win7_ldr.120227-1506)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21158_none_79451d4f4b88cb32\wininet.dll
[7] 2012-02-28 06:39:37 . DE03C917EDED2A999C942A4F943D3068 . 1188864 . . [8.00.7601.17785 (win7sp1_gdr.120227-1503)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17785_none_7a7e94c62fac6be0\wininet.dll
[7] 2012-02-28 06:35:54 . 063FB03BDCD3431E87550C7E7F0913EE . 1197568 . . [8.00.7600.16968 (win7_gdr.120227-1503)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16968_none_78b0d87632731417\wininet.dll
[7] 2012-02-28 06:27:38 . 05ED629EB0A11CAFB87EFB7847943312 . 1189376 . . [8.00.7601.21931 (win7sp1_ldr.120227-1506)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21931_none_7b3a41eb48a517c0\wininet.dll
[7] 2010-12-21 06:16:14 . E71DB117DBDA6B33646F37936C17D226 . 1197056 . . [8.00.7600.16723 (win7_gdr.101220-1503)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16723_none_78d712e832572b52\wininet.dll
[7] 2010-12-21 06:09:07 . 1D3466E7E9D63F8B2B84A8AD5E833C29 . 1198080 . . [8.00.7600.20862 (win7_ldr.101220-1501)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20862_none_79346fb94b962189\wininet.dll
[7] 2010-11-20 13:27:28 . F6C5302E1F4813D552F41A0AC82455E5 . 1188864 . . [8.00.7601.17514 (win7sp1_rtm.101119-1850)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17514_none_7ac940242f7494a4\wininet.dll
[7] 2009-07-14 01:41:56 . B1037F0131C9A010D611F6914E03CD92 . 1193472 . . [8.00.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\amd64_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16385_none_78982c5c3286110a\wininet.dll
[-] 2013-09-22 22:55:10 . D28B35DE88D27EFB27DF4B1E8319E3C0 . 2241024 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\system32\wininet.dll
[-] 2013-07-04 11:54:13 . 700BD5A6AA5381D1D8ADC4045149DBF6 . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7601.22376_none_3bee2a494f8638cf\comctl32.dll
[-] 2013-07-04 11:54:13 . 700BD5A6AA5381D1D8ADC4045149DBF6 . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.22376_none_ee67d2d082b9f619\comctl32.dll
[-] 2013-07-04 11:50:56 . 75F5E1FE8D55CF8E577E0EC5F2290D3F . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\SysWOW64\comctl32.dll
[-] 2013-07-04 11:50:56 . 75F5E1FE8D55CF8E577E0EC5F2290D3F . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7601.18201_none_3bab3b80363456bb\comctl32.dll
[-] 2013-07-04 11:50:56 . 75F5E1FE8D55CF8E577E0EC5F2290D3F . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18201_none_ec80f00e8593ece5\comctl32.dll
[7] 2010-11-20 12:18:23 . BDAC1AA64495D0F7E1FF810EBBF1F018 . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\erdnt\cache86\comctl32.dll
[7] 2010-11-20 12:18:23 . BDAC1AA64495D0F7E1FF810EBBF1F018 . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7601.17514_none_3ba388ec36399c85\comctl32.dll
[7] 2010-11-20 12:18:23 . BDAC1AA64495D0F7E1FF810EBBF1F018 . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll
[7] 2010-11-20 11:55:09 . 352B3DC62A0D259A82A052238425C872 . 1680896 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
[7] 2010-08-21 06:52:02 . BF5D71B4A40687A90C8B47F776758A6F . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7600.20787_none_39fe18355266e2d8\comctl32.dll
[7] 2010-08-21 06:52:02 . BF5D71B4A40687A90C8B47F776758A6F . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.20787_none_ede2ad2969983532\comctl32.dll
[7] 2010-08-21 06:43:03 . 70EF5DFEF7069164EACF7140C2CC6344 . 1680896 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.20787_none_2b43b51e45274037\comctl32.dll
[7] 2010-08-21 05:33:24 . D3EAD1CF16BA729A7F7C9A5D94AA7C05 . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7600.16661_none_39841986393e7322\comctl32.dll
[7] 2010-08-21 05:33:24 . D3EAD1CF16BA729A7F7C9A5D94AA7C05 . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.16661_none_ebfb56996c72aefc\comctl32.dll
[7] 2010-08-21 05:21:32 . 4B8DD8541C0E26602005DD0137333615 . 1680896 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll
[7] 2009-07-14 01:15:07 . B62AA1BB1F63839051441D2C6DD7B775 . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-shell-comctl32-v5_31bf3856ad364e35_6.1.7600.16385_none_39727524394b18eb\comctl32.dll
[7] 2009-07-14 01:15:07 . B62AA1BB1F63839051441D2C6DD7B775 . 530432 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7600.16385_none_ebf82fc36c758ad5\comctl32.dll
[7] 2009-07-14 01:03:50 . 0FA436A553408CBEBA070E3182658DE3 . 1680896 . . [5.82 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll
[-] 2013-07-09 13:57:37 . 6DB499DEFCC827317C5371164A7CDB27 . 142848 . . [6.1.7601.22380 (win7sp1_ldr.130709-0109)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22380_none_7840d305126b8725\cryptsvc.dll
[-] 2013-07-09 04:46:31 . 7CA1BECEA5DE2643ADDAD32670E7A4C9 . 140288 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\SysWOW64\cryptsvc.dll
[-] 2013-07-09 04:46:31 . 7CA1BECEA5DE2643ADDAD32670E7A4C9 . 140288 . . [6.1.7601.18205 (win7sp1_gdr.130708-1532)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18205_none_7812b70bf9088686\cryptsvc.dll
[-] 2013-05-13 04:45:55 . 3897DFF247D9ED0006190349DE264E14 . 140288 . . [6.1.7601.18151 (win7sp1_gdr.130512-1533)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18151_none_77d8a461f934afb8\cryptsvc.dll
[-] 2013-05-11 04:59:05 . AC04D05309BB2C418D0D80B9FB014642 . 142848 . . [6.1.7601.22322 (win7sp1_ldr.130510-1534)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22322_none_7883b3211239122d\cryptsvc.dll
[-] 2013-05-10 05:06:21 . E122AA1C9A3CC46FF9DDDE46E5EB0C58 . 142848 . . [6.1.7601.22321 (win7sp1_ldr.130509-1534)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22321_none_7882b2d71239f8d6\cryptsvc.dll
[-] 2013-05-10 04:49:59 . 33ADF6E0853AB39EA1723BE82842C1D3 . 140288 . . [6.1.7601.18150 (win7sp1_gdr.130509-1534)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.18150_none_77d7a417f9359661\cryptsvc.dll
[7] 2012-06-02 04:52:32 . 063DD65889D21035311463337BD268E7 . 142336 . . [6.1.7601.22010 (win7sp1_ldr.120601-1503)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.22010_none_788c7cc71232cc19\cryptsvc.dll
[7] 2012-06-02 04:45:21 . F2FDE6C8DBAAD44CC58D1E07E4AF4EED . 139264 . . [6.1.7600.17035 (win7_gdr.120601-1506)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.17035_none_760be2a9fbfa79d1\cryptsvc.dll
[7] 2012-06-02 04:41:59 . EA8C26ECF1656D9647EF044F115EC6DA . 141312 . . [6.1.7600.21225 (win7_ldr.120601-1507)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.21225_none_76a05147150ffad1\cryptsvc.dll
[7] 2012-06-02 04:36:29 . 96C0E38905CFD788313BE8E11DAE3F2F . 140288 . . [6.1.7601.17856 (win7sp1_gdr.120601-1505)] .. C:\Windows\erdnt\cache86\cryptsvc.dll
[7] 2012-06-02 04:36:29 . 96C0E38905CFD788313BE8E11DAE3F2F . 140288 . . [6.1.7601.17856 (win7sp1_gdr.120601-1505)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17856_none_77ddc9e5f93000db\cryptsvc.dll
[7] 2012-04-24 04:47:04 . 520A108A2657F4BCA7FCED9CA7D885DE . 139264 . . [6.1.7600.17008 (win7_gdr.120423-1505)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.17008_none_762f534bfbdf7203\cryptsvc.dll
[7] 2012-04-24 04:36:42 . 06E771AA596B8761107AB57E99F128D7 . 140288 . . [6.1.7601.17827 (win7sp1_gdr.120423-1504)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17827_none_77ff39f3f916c65f\cryptsvc.dll
[7] 2012-04-24 04:33:53 . F522279B4717E2BFF269C771FAC2B78E . 141312 . . [6.1.7600.21199 (win7_ldr.120423-1503)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.21199_none_7658a1151545269d\cryptsvc.dll
[7] 2012-04-24 04:28:22 . 21993009E0CCB9B4FA195F14D3408626 . 142336 . . [6.1.7601.21979 (win7sp1_ldr.120423-1503)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.21979_none_7854c7b7125b248c\cryptsvc.dll
[7] 2010-11-20 12:18:24 . A585BEBF7D054BD9618EDA0922D5484A . 136192 . . [6.1.7601.17514 (win7sp1_rtm.101119-1850)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7601.17514_none_7807034ff91166f4\cryptsvc.dll
[7] 2009-07-14 01:15:07 . 9C231178CE4FB385F4B54B0A9080B8A4 . 135680 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.1.7600.16385_none_75d5ef87fc22e35a\cryptsvc.dll
[-] 2013-08-29 01:57:20 . EE751CBD5D0C332FDF3DF7187B612416 . 1114112 . . [6.1.7601.22436 (win7sp1_ldr.130828-1532)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22436_none_fcae77f5ba77fe97\kernel32.dll
[-] 2013-08-02 05:55:39 . 61579F821AB5FF7FA2966D64D1070BA8 . 1114112 . . [6.1.7601.22411 (win7sp1_ldr.130801-1934)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22411_none_fcbf165bba6c4802\kernel32.dll
[-] 2013-08-02 01:50:41 . 365A5034093AD9E04F433046C4CDF6AB . 1114112 . . [6.1.7601.18015 (win7sp1_gdr.121129-1432)] .. C:\Windows\SysWOW64\kernel32.dll
[-] 2013-08-02 01:50:41 . 365A5034093AD9E04F433046C4CDF6AB . 1114112 . . [6.1.7601.18015 (win7sp1_gdr.121129-1432)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.18229_none_fc32aa0ea14f91ba\kernel32.dll
[-] 2013-07-08 05:05:01 . 2997A7BC59E3EEFE8E86D1B0F3A3D748 . 1114112 . . [6.1.7601.22379 (win7sp1_ldr.130707-1535)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22379_none_fc86373dba95bd39\kernel32.dll
[7] 2013-01-04 04:52:09 . 7E55988F5CB3BA67E2732370E8D71BBB . 1114112 . . [6.1.7601.22209 (win7sp1_ldr.130103-1434)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22209_none_fcd1e4cbba5cfc7b\kernel32.dll
[7] 2013-01-04 04:51:08 . 385BE92E3106491BBB542F8F1C06C606 . 1114112 . . [6.1.7600.17206 (win7_gdr.130103-1435)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17206_none_fa5ee836a41ba799\kernel32.dll
[7] 2013-01-04 04:51:07 . F9F6CD9EF1F6C896A56B5259B81027D9 . 1114112 . . [6.1.7600.21416 (win7_ldr.130103-1434)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21416_none_faddb6fbbd41607b\kernel32.dll
[7] 2012-11-30 05:06:48 . C95793F4BE3471AEED92F5BF367BE69E . 1114112 . . [6.1.7600.17179 (win7_gdr.121129-1434)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17179_none_fa1637baa451ba0e\kernel32.dll
[7] 2012-11-30 04:57:47 . 9CC2571E3646B9A24296AD7ADCC71682 . 1114112 . . [6.1.7601.22177 (win7sp1_ldr.121129-1432)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22177_none_fc8432ddba97903d\kernel32.dll
[7] 2012-11-30 04:53:59 . AC0B6F41882FC6ED186962D770EBF1D2 . 1114112 . . [6.1.7601.18015 (win7sp1_gdr.121129-1432)] .. C:\Windows\erdnt\cache86\kernel32.dll
[7] 2012-11-30 04:53:59 . AC0B6F41882FC6ED186962D770EBF1D2 . 1114112 . . [6.1.7601.18015 (win7sp1_gdr.121129-1432)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.18015_none_fc397506a14b161f\kernel32.dll
[7] 2012-11-30 04:51:54 . E747ADB6223DBBE1BB138F08A09ADAD6 . 1114112 . . [6.1.7600.21386 (win7_ldr.121129-1435)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21386_none_fa9205a1bd7a26eb\kernel32.dll
[7] 2012-10-04 16:56:24 . DE7A37CB1F48526A78A2D42786411578 . 1114112 . . [6.1.7600.21335 (win7_ldr.121004-0335)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21335_none_fac714f3bd5281df\kernel32.dll
[7] 2012-10-04 16:54:17 . A6778FC49011313995A4D718F624CC74 . 1114112 . . [6.1.7600.17135 (win7_gdr.121004-0336)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17135_none_fa3d7642a434e4ee\kernel32.dll
[7] 2012-10-04 16:47:40 . D4F3176082566CEFA633B4945802D4C4 . 1114112 . . [6.1.7601.17965 (win7sp1_gdr.121004-0333)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17965_none_fc038d48a1736e92\kernel32.dll
[7] 2012-10-04 16:36:32 . 5FA395364EE727E4BEE6B1406C207F98 . 1114112 . . [6.1.7601.22125 (win7sp1_ldr.121004-0334)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22125_none_fcb841e5ba70d1da\kernel32.dll
[7] 2012-08-20 17:51:24 . 85660067ECD49B6E302347EFCC2F72A5 . 1114112 . . [6.1.7600.21306 (win7_ldr.120820-0424)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21306_none_fae88501bd394763\kernel32.dll
[7] 2012-08-20 17:37:18 . 9B98D47916EAD4F69EF51B56B0C2323C . 1114112 . . [6.1.7601.17932 (win7sp1_gdr.120820-0419)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17932_none_fc20fc2ea15dceba\kernel32.dll
[7] 2012-08-20 17:31:14 . 305681B4B695D4A888B941965FFC2C17 . 1114112 . . [6.1.7601.22091 (win7sp1_ldr.120820-0419)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.22091_none_fc688f63baad32ee\kernel32.dll
[7] 2012-08-18 11:17:55 . 33616DACC75C9E105DAE944120DB4274 . 1114112 . . [6.1.7600.17107 (win7_gdr.120817-0952)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.17107_none_fa5fe69aa41ac3c9\kernel32.dll
[7] 2011-07-16 04:49:33 . D3CB12854171DF61D117D7C2BF22C675 . 1114112 . . [6.1.7601.21772 (win7sp1_ldr.110715-1506)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.21772_none_fc7f5397ba9be6d3\kernel32.dll
[7] 2011-07-16 04:30:27 . 4EA99F1644627B1EBAD99D0B93CDEE1C . 1048576 . . [6.1.7600.16850 (win7_gdr.110715-1503)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.16850_none_fa22f90aa449708d\kernel32.dll
[7] 2011-07-16 04:24:22 . 99C3F8E9CC59D95666EB8D8A8B4C2BEB . 1114112 . . [6.1.7601.17651 (win7sp1_gdr.110715-1504)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17651_none_fc0a565aa16ef5d0\kernel32.dll
[7] 2011-07-16 04:21:33 . 2113248DB2D1AF9CA790B09F3E6C6E85 . 1114112 . . [6.1.7600.21010 (win7_ldr.110715-1502)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.21010_none_fad7ada7bd46d3d5\kernel32.dll
[7] 2010-11-20 12:08:56 . E80758CF485DB142FCA1EE03A34EAD05 . 837632 . . [6.1.7601.17514 (win7sp1_rtm.101119-1850)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7601.17514_none_fc389502a14bd4ea\kernel32.dll
[7] 2009-07-14 01:11:23 . 606ECB76A424CC535407E7A24E2A34BC . 836608 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-kernel32_31bf3856ad364e35_6.1.7600.16385_none_fa07813aa45d5150\kernel32.dll
[-] 2013-06-06 05:07:13 . 84CA3579EEB69D8E1EE67E4F721BF71C . 25600 . . [6.1.7601.22350 (win7sp1_ldr.130605-1534)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.22350_none_12a807b2bec875e6\lpk.dll
[-] 2013-06-06 04:57:01 . CC23295DA8F7B5C53F93804D2F5D30EB . 25600 . . [6.1.7601.18177 (win7sp1_gdr.130605-1534)] .. C:\Windows\SysWOW64\lpk.dll
[-] 2013-06-06 04:57:01 . CC23295DA8F7B5C53F93804D2F5D30EB . 25600 . . [6.1.7601.18177 (win7sp1_gdr.130605-1534)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.18177_none_120fcb2fa5b4c238\lpk.dll
[7] 2012-12-16 16:34:04 . BF6CDA72E4112DAC01E2ED8911C3FD74 . 25600 . . [6.1.7600.21402 (win7_ldr.121216-0103)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.21402_none_10f9b8f6c177b3cc\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\erdnt\cache86\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.16385_none_101cb471a89825ee\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.16402_none_107034d9a859f788\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.16444_none_1046f5bda87899fa\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.16763_none_10305b4da889affa\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.17159_none_10410ac9a87c56ca\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.17194_none_1010c9a7a8a147db\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.20498_none_109e822ec1bb2dae\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.20553_none_10c4c252c19f3c5e\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.20905_none_10fcda1ac174d7f3\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7600.21362_none_10b8d788c1a85e4b\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.17514_none_124dc839a586a988\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.17563_none_1216b853a5b01be6\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.17991_none_11f44f93a5ca31a7\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.18032_none_12360787a598d69a\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.21664_none_12a15568beccd507\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.22153_none_12ab04c4bec5c79d\lpk.dll
[7] 2009-07-14 01:11:23 . 384721EF4024890092625E20CADFAF85 . 25600 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\wow64_microsoft-windows-gdi_31bf3856ad364e35_6.1.7601.22195_none_1281c5a8bee46a0f\lpk.dll
[-] 2013-09-22 23:36:31 . 9D6D52AED095BC8C9023AA739E978EAC . 14364672 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20831_none_8484406ce0bca7b9\mshtml.dll
[-] 2013-09-22 23:27:53 . A7221924181C8EB92B64C5A2D888BEA5 . 14335488 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\SysWOW64\mshtml.dll
[-] 2013-09-22 23:27:53 . A7221924181C8EB92B64C5A2D888BEA5 . 14335488 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16721_none_9b5bb6aac70e12bc\mshtml.dll
[-] 2013-08-10 04:32:01 . A0FAB45701EFAA4EDA60B7614ED431BE . 14362624 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20794_none_8494cdbce0af70b5\mshtml.dll
[-] 2013-08-10 03:58:23 . 5D2D7E7850CE963C2F401D4DEE7BB32A . 14332928 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16686_none_9b6c166ac7010efa\mshtml.dll
[-] 2013-07-26 03:12:23 . E631B408882F8320739F6E0CAF444397 . 14329344 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16660_none_9b6a9e86c7024286\mshtml.dll
[-] 2013-07-26 03:09:41 . 523D2E830830FD6DA5B7FAAE3C251BC5 . 14356480 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20768_none_849171bee0b28b34\mshtml.dll
[-] 2013-06-12 04:17:50 . E6CC3F7EAA761794E13E0F99393EEB97 . 14358528 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20742_none_848ff9dae0b3bec0\mshtml.dll
[-] 2013-06-11 23:43:08 . AF31E7D2C385F647ADFD5F5736B3BA64 . 14329856 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16635_none_9b672bc0c70576a6\mshtml.dll
[-] 2013-06-08 11:44:45 . 2C01EA6CBF9E7C6A96535BEA1AB35580 . 14355456 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20723_none_848de27ee0b5a5b3\mshtml.dll
[-] 2013-06-08 11:40:35 . 05920BD009621D06722A1CD339DA6481 . 14327808 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16618_none_9b64e6d4c70790db\mshtml.dll
[-] 2013-05-21 12:04:39 . 7A468BC721C1D34E60389D3F2F87BBEA . 14323712 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16576_none_9b75e60cc6f9d9b2\mshtml.dll
[-] 2013-05-17 01:42:36 . D77D1A53C38DF6CE26749D77BED6A527 . 14355968 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.20719_none_848c5984e0b72622\mshtml.dll
[-] 2013-05-17 01:25:33 . 69A03AB053CAD761E51BAE1B01F95F55 . 14327808 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_10.2.9200.16614_none_9b6541f4c7072a57\mshtml.dll
[-] 2013-05-05 20:26:05 . 1152DE9D7FE16EC92A12165D1CBE8406 . 12325888 . . [9.00.8112.20594 (WIN7_IE9_LDR_ESCROW.130505-1237)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.4.8112.20594_none_9276e9654281af28\mshtml.dll
[-] 2013-05-05 19:25:43 . 26F30066B9FA78C97A0E92803D496211 . 12324864 . . [9.00.8112.16484 (WIN7_IE9_GDR_ESCROW.130505-1136)] .. C:\Windows\winsxs\wow64_microsoft-windows-ie-htmlrendering_31bf3856ad364e35_9.4.8112.16484_none_91f81c86295bf36d\mshtml.dll
[-] 2013-09-08 02:03:58 . E94C583CDE2348950155F2AF2876F34D . 231424 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\SysWOW64\mswsock.dll
[-] 2013-09-08 02:03:58 . E94C583CDE2348950155F2AF2876F34D . 231424 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.18254_none_ba2f64c78bae6989\mswsock.dll
[-] 2013-09-07 02:04:16 . 6547D445C4B69DC0083B619AC642DF04 . 231424 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.22444_none_bac3d364a4c3ea89\mswsock.dll
[7] 2010-11-20 12:19:56 . 8999B8631C7FD9F7F9EC3CAFD953BA24 . 232448 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\erdnt\cache86\mswsock.dll
[7] 2010-11-20 12:19:56 . 8999B8631C7FD9F7F9EC3CAFD953BA24 . 232448 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7601.17514_none_ba5ac0f18b8dd799\mswsock.dll
[7] 2009-07-14 01:15:51 . 11A41F17527ED75D6B758FDD7F4FD00D . 232448 . . [6.1.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-w..-infrastructure-bsp_31bf3856ad364e35_6.1.7600.16385_none_b829ad298e9f53ff\mswsock.dll
[-] 2013-09-22 23:36:52 . 67220EB57550F10E1219D57D89937456 . 1777152 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20831_none_0cb6db7873a80b52\wininet.dll
[-] 2013-09-22 23:28:06 . E4FEB264B47360B7296AEA4E052F88D8 . 1767936 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\SysWOW64\wininet.dll
[-] 2013-09-22 23:28:06 . E4FEB264B47360B7296AEA4E052F88D8 . 1767936 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16721_none_238e51b659f97655\wininet.dll
[-] 2013-08-10 04:33:03 . 26BD13BB9196C2D8F8155C3C6169BC22 . 1777664 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20794_none_0cc768c8739ad44e\wininet.dll
[-] 2013-08-10 03:59:10 . 535F6263035F2530A62D5D64EF6E73D3 . 1767936 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16686_none_239eb17659ec7293\wininet.dll
[-] 2013-07-26 03:13:24 . DAA3903F06116AE9EE7AC1D1B93684A4 . 1767936 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16660_none_239d399259eda61f\wininet.dll
[-] 2013-07-26 03:10:53 . DE581A5E0E70BB63898F8776EB274428 . 1777664 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20768_none_0cc40cca739deecd\wininet.dll
[-] 2013-06-12 04:19:11 . 24AE444B165D11835EF3D38CF3CC7FA4 . 1777664 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20742_none_0cc294e6739f2259\wininet.dll
[-] 2013-06-11 23:43:37 . 9BF7C7654EFD098EE3A27B49492A382A . 1767936 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16635_none_2399c6cc59f0da3f\wininet.dll
[-] 2013-05-21 12:04:39 . 5ABB3F36AF17007F33FA275E96A2C95E . 1767424 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16576_none_23a8811859e53d4b\wininet.dll
[-] 2013-05-17 01:42:58 . 425A20F1C6855222944BFD4FA9BE61A5 . 1777664 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.20719_none_0cbef49073a289bb\wininet.dll
[-] 2013-05-17 01:25:57 . 2473CA6595A2659D7039A4A89FECA269 . 1767936 . . [10.00.9200.16521 (win8_gdr_soc_ie.130216-2100)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_10.2.9200.16614_none_2397dd0059f28df0\wininet.dll
[-] 2013-04-04 22:02:17 . 2C96B3921B4CDE10DBAED5AAD760DB67 . 1129472 . . [9.00.8112.16483 (WIN7_IE9_GDR.130404-1333)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16483_none_1a29b747bc483daf\wininet.dll
[-] 2013-04-04 20:55:36 . 28B2DD8DBAEE306290A74ED03DB3768F . 1129984 . . [9.00.8112.20593 (WIN7_IE9_LDR.130404-1236)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20593_none_1aa88426d56df96a\wininet.dll
[-] 2013-02-22 03:38:00 . C5B6468422DB1C8AA36C32CBB0197E5E . 1129472 . . [9.00.8112.16476 (WIN7_IE9_GDR.130221-1821)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16476_none_1a378811bc3d6dc3\wininet.dll
[-] 2013-02-22 03:35:17 . 490E24D5E427DFA55B1C1182F0DB861C . 1129984 . . [9.00.8112.20586 (WIN7_IE9_LDR.130221-1819)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20586_none_1ab654f0d563297e\wininet.dll
[7] 2013-02-02 03:36:46 . 1284D72C04B553ED5382EA14303D66DB . 1129472 . . [9.00.8112.20580 (WIN7_IE9_LDR.130201-1816)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20580_none_1ab05334d5689174\wininet.dll
[7] 2013-02-02 03:30:21 . 03728C624D05C2F157BBD46F6B7F6EA0 . 1129472 . . [9.00.8112.16470 (WIN7_IE9_GDR.130201-1812)] .. C:\Windows\erdnt\cache86\wininet.dll
[7] 2013-02-02 03:30:21 . 03728C624D05C2F157BBD46F6B7F6EA0 . 1129472 . . [9.00.8112.16470 (WIN7_IE9_GDR.130201-1812)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16470_none_1a318655bc42d5b9\wininet.dll
[7] 2013-01-08 22:03:20 . B49B56B64F57699A1A663D2CF7D0A56F . 1129472 . . [9.00.8112.16464 (WIN7_IE9_GDR.130108-1230)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16464_none_1a405769bc371f24\wininet.dll
[7] 2013-01-08 20:41:13 . 16C45E6881449C6330567E51C13920FA . 1129472 . . [9.00.8112.20573 (WIN7_IE9_LDR.130108-1128)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20573_none_1abe23fed55dc188\wininet.dll
[7] 2012-11-14 01:57:37 . 7FA3A810F383588D46220967DE8B64FF . 1129472 . . [9.00.8112.16457 (WIN7_IE9_GDR.121113-1619)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16457_none_1a4e2833bc2c4f38\wininet.dll
[7] 2012-11-14 01:33:20 . 0635D714351F842D43EA184E75C4A3FF . 1129472 . . [9.00.8112.20565 (WIN7_IE9_LDR.121113-1616)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20565_none_1acaf47ed553d845\wininet.dll
[7] 2012-10-08 07:48:03 . 9CB0D2A9A77D91D9614355EE9FF00519 . 1129472 . . [9.00.8112.16455 (WIN7_IE9_GDR.121007-2321)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16455_none_1a4c279fbc2e1c8a\wininet.dll
[7] 2012-10-08 07:37:57 . 6E3AC8A54A1881806BA2B58539483788 . 1129472 . . [9.00.8112.20562 (WIN7_IE9_LDR.121007-2320)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20562_none_1ac7f3a0d5568c40\wininet.dll
[7] 2012-08-24 07:12:40 . 2895E29EFCFC0B1BCF8AEE1A0C67913C . 1129472 . . [9.00.8112.20557 (WIN7_IE9_LDR.120823-2220)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20557_none_1ad7c4fed549ef02\wininet.dll
[7] 2012-08-24 06:51:27 . 5553611E2F9EA6F613079177F1233068 . 1129472 . . [9.00.8112.16450 (WIN7_IE9_GDR.120823-2222)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16450_none_1a47262dbc329dd7\wininet.dll
[7] 2012-07-15 13:33:21 . 8E87270C4704CF2951E1E7820D6C8A2B . 1129472 . . [9.00.8112.16447 (WIN7_IE9_GDR.120602-0000)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16447_none_1a58f81fbc243347\wininet.dll
[7] 2012-06-29 00:09:01 . 75A97A2C060E72AB49E071E08C7DD2BA . 1129472 . . [9.00.8112.16448 (WIN7_IE9_GDR.120628-1537)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.16448_none_1a59f869bc234c9e\wininet.dll
[7] 2012-06-28 22:54:19 . 54C30A4066A28F9A017E095E283B2762 . 1129472 . . [9.00.8112.20554 (WIN7_IE9_LDR.120628-1441)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_9.4.8112.20554_none_1ad4c420d54ca2fd\wininet.dll
[7] 2012-05-15 03:08:48 . 9B086D98370BA0219F6805675D38DDA7 . 981504 . . [8.00.7600.17024 (win7_gdr.120514-1332)] .. C:\Windows\SoftwareDistribution\Download\40aebec4cb410f41f3a488507ba1e946\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.17024_none_1cb9539c79f90103\wininet.dll
[7] 2012-05-15 03:08:11 . BBC4EE1EC1B484B710499FA74639DABA . 982528 . . [8.00.7600.21215 (win7_ldr.120514-1332)] .. C:\Windows\SoftwareDistribution\Download\40aebec4cb410f41f3a488507ba1e946\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21215_none_1d4ec283930d9b5a\wininet.dll
[7] 2012-05-15 03:03:54 . 2606B35DDADCA19BEA9A08033C621B97 . 981504 . . [8.00.7601.17842 (win7sp1_gdr.120514-1332)] .. C:\Windows\SoftwareDistribution\Download\40aebec4cb410f41f3a488507ba1e946\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17842_none_1e8839fa77313c08\wininet.dll
[7] 2012-05-15 02:51:09 . 3E5195AB78F4DCE48E04CC6979D9B428 . 982016 . . [8.00.7601.21995 (win7sp1_ldr.120514-1333)] .. C:\Windows\SoftwareDistribution\Download\40aebec4cb410f41f3a488507ba1e946\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21995_none_1edec8079074b38c\wininet.dll
[7] 2012-02-28 05:44:19 . 6D57EAE6BC922EC56DBD9EF4AD9986BD . 982016 . . [8.00.7600.21158 (win7_ldr.120227-1506)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.21158_none_1d2681cb932b59fc\wininet.dll
[7] 2012-02-28 05:40:21 . F09F1A921CB0F1B708D23CC58F8EB21E . 981504 . . [8.00.7600.16968 (win7_gdr.120227-1503)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16968_none_1c923cf27a15a2e1\wininet.dll
[7] 2012-02-28 05:38:52 . 7CCA8574A3B9BB41A4150739E21F1B23 . 981504 . . [8.00.7601.17785 (win7sp1_gdr.120227-1503)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17785_none_1e5ff942774efaaa\wininet.dll
[7] 2012-02-28 05:25:01 . 6A5778483A8023B4DB9C5A509D382392 . 982016 . . [8.00.7601.21931 (win7sp1_ldr.120227-1506)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.21931_none_1f1ba6679047a68a\wininet.dll
[7] 2010-12-21 05:38:22 . 78B9ADA2BC8946AF7B17678E0D07A773 . 981504 . . [8.00.7600.16723 (win7_gdr.101220-1503)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16723_none_1cb8776479f9ba1c\wininet.dll
[7] 2010-12-21 05:29:12 . 1B3DD46BC6396143A205EAAF05F38039 . 981504 . . [8.00.7600.20862 (win7_ldr.101220-1501)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.20862_none_1d15d4359338b053\wininet.dll
[7] 2010-11-20 12:21:36 . 44214C94911C7CFB1D52CB64D5E8368D . 980992 . . [8.00.7601.17514 (win7sp1_rtm.101119-1850)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7601.17514_none_1eaaa4a07717236e\wininet.dll
[7] 2009-07-14 01:16:19 . 0D874F3BC751CC2198AF2E6783FB8B35 . 977920 . . [8.00.7600.16385 (win7_rtm.090713-1255)] .. C:\Windows\winsxs\x86_microsoft-windows-i..tocolimplementation_31bf3856ad364e35_8.0.7600.16385_none_1c7990d87a289fd4\wininet.dll
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{8F547BDD-FCD4-48F8-A06F-573D6F404A3C}]
2013-03-19 00:37:54 255384 ----a-w- C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\bh\searchgol.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{00078E95-3A4A-4137-8DE7-2824908D1C17}"= "C:\Program Files (x86)\searchgol\searchgol\1.8.16.19\searchgolTlbr.dll" [2013-03-19 00:37:54 329624]
[HKEY_CLASSES_ROOT\clsid\{00078e95-3a4a-4137-8de7-2824908d1c17}]
[HKEY_CLASSES_ROOT\searchgol.searchgoldskBnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}]
[HKEY_CLASSES_ROOT\searchgol.searchgoldskBnd]
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2013-07-02 14:31:48 220632 ----a-w- C:\Users\Win 7\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2013-07-02 14:31:48 220632 ----a-w- C:\Users\Win 7\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2013-07-02 14:31:48 220632 ----a-w- C:\Users\Win 7\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="C:\Program Files (x86)\Steam\steam.exe" [2013-10-09 02:19:12 1813928]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes Anti-Malware"="C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2013-04-04 12:50:32 532040]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoResolveTrack"= 1 (0x1)
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"mixer7"=wdmaud.drv
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
R1 ayesmkaa;ayesmkaa;C:\Windows\system32\drivers\ayesmkaa.sys;C:\Windows\SYSNATIVE\drivers\ayesmkaa.sys [x]
R1 bxbfmipu;bxbfmipu;C:\Windows\system32\drivers\bxbfmipu.sys;C:\Windows\SYSNATIVE\drivers\bxbfmipu.sys [x]
R1 byopinfx;byopinfx;C:\Windows\system32\drivers\byopinfx.sys;C:\Windows\SYSNATIVE\drivers\byopinfx.sys [x]
R1 cqimxtsq;cqimxtsq;C:\Windows\system32\drivers\cqimxtsq.sys;C:\Windows\SYSNATIVE\drivers\cqimxtsq.sys [x]
R1 ecepuvxl;ecepuvxl;C:\Windows\system32\drivers\ecepuvxl.sys;C:\Windows\SYSNATIVE\drivers\ecepuvxl.sys [x]
R1 ewcevppa;ewcevppa;C:\Windows\system32\drivers\ewcevppa.sys;C:\Windows\SYSNATIVE\drivers\ewcevppa.sys [x]
R1 gjbujhav;gjbujhav;C:\Windows\system32\drivers\gjbujhav.sys;C:\Windows\SYSNATIVE\drivers\gjbujhav.sys [x]
R1 rgncuiju;rgncuiju;C:\Windows\system32\drivers\rgncuiju.sys;C:\Windows\SYSNATIVE\drivers\rgncuiju.sys [x]
R1 unhahinc;unhahinc;C:\Windows\system32\drivers\unhahinc.sys;C:\Windows\SYSNATIVE\drivers\unhahinc.sys [x]
R1 xvuaxzer;xvuaxzer;C:\Windows\system32\drivers\xvuaxzer.sys;C:\Windows\SYSNATIVE\drivers\xvuaxzer.sys [x]
R1 yhuxvjao;yhuxvjao;C:\Windows\system32\drivers\yhuxvjao.sys;C:\Windows\SYSNATIVE\drivers\yhuxvjao.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe;C:\Program Files (x86)\Skype\Updater\Updater.exe [x]
R3 DAUpdaterSvc;Dragon Age: Origins - Content Updater;C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe;C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [x]
R3 EagleX64;EagleX64;C:\Windows\system32\drivers\EagleX64.sys;C:\Windows\SYSNATIVE\drivers\EagleX64.sys [x]
R3 NisDrv;Microsoft Network Inspection System;C:\Windows\system32\DRIVERS\NisDrvWFP.sys;C:\Windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
R3 NisSrv;Microsoft-Netzwerkinspektion;c:\Program Files\Microsoft Security Client\NisSrv.exe;c:\Program Files\Microsoft Security Client\NisSrv.exe [x]
R3 npggsvc;nProtect GameGuard Service;C:\Windows\system32\GameMon.des;C:\Windows\SYSNATIVE\GameMon.des [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\system32\drivers\rdpvideominiport.sys;C:\Windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Synth3dVsc;Synth3dVsc;C:\Windows\system32\drivers\synth3dvsc.sys;C:\Windows\SYSNATIVE\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys;C:\Windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 tsusbhub;tsusbhub;C:\Windows\system32\drivers\tsusbhub.sys;C:\Windows\SYSNATIVE\drivers\tsusbhub.sys [x]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys;C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [x]
R3 TunngleService;TunngleService;C:\Program Files (x86)\Tunngle\TnglCtrl.exe;C:\Program Files (x86)\Tunngle\TnglCtrl.exe [x]
R3 VGPU;VGPU;C:\Windows\system32\drivers\rdvgkmd.sys;C:\Windows\SYSNATIVE\drivers\rdvgkmd.sys [x]
R3 vmci;VMware VMCI Bus Driver;C:\Windows\system32\DRIVERS\vmci.sys;C:\Windows\SYSNATIVE\DRIVERS\vmci.sys [x]
S0 amd_sata;amd_sata;C:\Windows\system32\DRIVERS\amd_sata.sys;C:\Windows\SYSNATIVE\DRIVERS\amd_sata.sys [x]
S0 amd_xata;amd_xata;C:\Windows\system32\DRIVERS\amd_xata.sys;C:\Windows\SYSNATIVE\DRIVERS\amd_xata.sys [x]
S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe;C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 TeamViewer8;TeamViewer 8;C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x]
S3 EtronHub3;Etron USB 3.0 Extensible Hub Driver;C:\Windows\system32\Drivers\EtronHub3.sys;C:\Windows\SYSNATIVE\Drivers\EtronHub3.sys [x]
S3 EtronXHCI;Etron USB 3.0 Extensible Host Controller Driver;C:\Windows\system32\Drivers\EtronXHCI.sys;C:\Windows\SYSNATIVE\Drivers\EtronXHCI.sys [x]
S3 MBfilt;MBfilt;C:\Windows\system32\drivers\MBfilt64.sys;C:\Windows\SYSNATIVE\drivers\MBfilt64.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys;C:\Windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 RTL8192su;%RTL8192su.DeviceDesc.DispName%;C:\Windows\system32\DRIVERS\RTL8192su.sys;C:\Windows\SYSNATIVE\DRIVERS\RTL8192su.sys [x]
S3 SaiK1708;SaiK1708;C:\Windows\system32\DRIVERS\SaiK1708.sys;C:\Windows\SYSNATIVE\DRIVERS\SaiK1708.sys [x]
S3 SaiU1708;SaiU1708;C:\Windows\system32\DRIVERS\SaiU1708.sys;C:\Windows\SYSNATIVE\DRIVERS\SaiU1708.sys [x]
S3 ScreamBAudioSvc;ScreamBee Audio;C:\Windows\system32\drivers\ScreamingBAudio64.sys;C:\Windows\SYSNATIVE\drivers\ScreamingBAudio64.sys [x]
S3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);C:\Windows\system32\DRIVERS\tap0901t.sys;C:\Windows\SYSNATIVE\DRIVERS\tap0901t.sys [x]
S3 usbfilter;AMD USB Filter Driver;C:\Windows\system32\DRIVERS\usbfilter.sys;C:\Windows\SYSNATIVE\DRIVERS\usbfilter.sys [x]
Inhalt des "geplante Tasks" Ordners
2013-10-25 C:\Windows\Tasks\Adobe Flash Player Updater.job
- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-31 15:19:49 . 2013-03-28 18:28:54]
--------- X64 Entries -----------
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
@="{F241C880-6982-4CE5-8CF7-7085BA96DA5A}"
[HKEY_CLASSES_ROOT\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}]
2013-07-02 14:31:51 244696 ----a-w- C:\Users\Win 7\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
@="{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}"
[HKEY_CLASSES_ROOT\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}]
2013-07-02 14:31:51 244696 ----a-w- C:\Users\Win 7\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
@="{BBACC218-34EA-4666-9D7A-C78F2274A524}"
[HKEY_CLASSES_ROOT\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}]
2013-07-02 14:31:51 244696 ----a-w- C:\Users\Win 7\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSC"="c:\Program Files\Microsoft Security Client\msseces.exe" [2013-08-12 12:07:04 1356240]
"ProfilerU"="C:\Program Files\SmartTechnology\Software\ProfilerU.exe" [2013-01-31 16:51:24 454144]
"SaiMfd"="C:\Program Files\SmartTechnology\Software\SaiMfd.exe" [2013-01-31 16:51:48 158208]
------- Zusätzlicher Suchlauf -------
uStart Page = https://www.google.de/?rlz=1W4CHBB_deDE557
uLocal Page = C:\Windows\system32\blank.htm
mLocal Page = C:\Windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = <local>
uInternet Settings,ProxyServer = 85.214.84.220:3128
IE: Nach Microsoft E&xel exportieren - C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: microsoftonline.com\www
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: DhcpNameServer = 192.168.2.1
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\npggsvc]
"ImagePath"="C:\Windows\system32\GameMon.des -service"
--------------------- Gesperrte Registrierungsschluessel ---------------------
[HKEY_USERS\S-1-5-21-4212430546-1148196889-3608363541-1000\Software\SecuROM\License information*]
"datasecu"=hex:5e,0b,f0,f7,a1,ea,a1,b8,89,de,bc,12,4e,75,73,00,68,c1,70,e0,68,
77,01,5a,d7,96,0c,49,12,82,51,1f,ef,2d,65,f9,de,2f,de,60,40,23,1f,6c,46,66,\
"rkeysecu"=hex:45,87,ba,29,f7,a9,f3,e5,c9,62,79,80,bc,81,74,c8
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@C:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_202_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="C:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_202_ActiveX.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_202_ActiveX.exe,-101"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="C:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_202_ActiveX.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="C:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_202.ocx"
"ThreadingModel"="Apartment"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="C:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_202.ocx, 1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="C:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_202.ocx"
"ThreadingModel"="Apartment"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="C:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_202.ocx, 1"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
Zeit der Fertigstellung: 2013-10-25 14:35:39
ComboFix-quarantined-files.txt 2013-10-25 12:35:38
Vor Suchlauf: 19 Verzeichnis(se), 624.006.651.904 Bytes frei
Nach Suchlauf: 20 Verzeichnis(se), 623.706.779.648 Bytes frei
- - End Of File - - 6BB86037F04DB223C95E4BAD1E469DC5
A36C5E4F47E84449FF07ED3517B43A31 Was mache ich mit Antimalwarebytes , es hat mir keine Option angezeigt sie in Quarantäne zu setzten , soll ich es erneut durchlaufen lassen und alles entfernen?
Okay , habe doch die Viren in Quarantäne verschoben , die Frage ist ob ich sie löschen soll?! |