Tilliboon | 20.05.2014 13:38 | Als erstes die mbma.txt Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 20.05.2014
Suchlauf-Zeit: 14:16:58
Logdatei: mbma.txt
Administrator: Ja
Version: 2.00.1.1004
Malware Datenbank: v2014.05.20.04
Rootkit Datenbank: v2014.03.27.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Chameleon: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Tilliboon
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 254503
Verstrichene Zeit: 9 Min, 43 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Shuriken: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 6
PUP.Optional.Webget.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{dc264a72-fa75-4948-b881-ea8eff8e5dd2}, In Quarantäne, [c9db371c95e60a2cad2d2f2464a027d9],
PUP.Optional.Webget.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{DC264A72-FA75-4948-B881-EA8EFF8E5DD2}, In Quarantäne, [c9db371c95e60a2cad2d2f2464a027d9],
PUP.Optional.Webget.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{0a4aa078-e14f-4459-901a-d5f6acb22dd6}, In Quarantäne, [c9db371c95e60a2cad2d2f2464a027d9],
PUP.Optional.Webget.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{F88A773B-C7D6-4097-AD99-144D59C291E1}, In Quarantäne, [c9db371c95e60a2cad2d2f2464a027d9],
PUP.Optional.Webget.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{F88A773B-C7D6-4097-AD99-144D59C291E1}, In Quarantäne, [c9db371c95e60a2cad2d2f2464a027d9],
PUP.Optional.Webget.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{0a4aa078-e14f-4459-901a-d5f6acb22dd6}, In Quarantäne, [c9db371c95e60a2cad2d2f2464a027d9],
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 1
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[921299ba18633afce36cfb54b74d4eb2]
Ordner: 0
(No malicious items detected)
Dateien: 4
PUP.Optional.Conduit.A, C:\Users\Tilliboon\AppData\Local\Temp\utt9468.tmp.exe, In Quarantäne, [2e7664efd3a81f17204f67b5ca3735cb],
PUP.Optional.SkyTech.A, C:\Users\Tilliboon\AppData\Local\Temp\38389880\38389880.zipDir\alilog.dll, In Quarantäne, [a9fbce85b1cac17567aeae84fa0616ea],
PUP.Optional.IePluginService.A, C:\Users\Tilliboon\AppData\Local\Temp\38389880\38389880.zipDir\tmp\SupTab_Setup302.exe, In Quarantäne, [ced6eb68097244f2eb55f75fcf3210f0],
PUP.Optional.WpManager, C:\Users\Tilliboon\AppData\Local\Temp\38389880\38389880.zipDir\tmp\wpm_v18.8.0.304.exe, In Quarantäne, [adf70f4412697eb8a1006cf4cc356997],
Physische Sektoren: 0
(No malicious items detected)
(end) als zweites die Adwcleaner Code:
# AdwCleaner v3.210 - Bericht erstellt am 20/05/2014 um 14:20:51
# Aktualisiert 19/05/2014 von Xplode
# Betriebssystem : Windows 7 Professional Service Pack 1 (64 bits)
# Benutzername : Tilliboon - TILLI
# Gestartet von : C:\Users\Tilliboon\Desktop\adwcleaner_3.210.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17041
-\\ Mozilla Firefox v29.0.1 (de)
[ Datei : C:\Users\Tilliboon\AppData\Roaming\Mozilla\Firefox\Profiles\gvqa6y68.default\prefs.js ]
*************************
AdwCleaner[R0].txt - [46487 octets] - [19/05/2014 16:59:10]
AdwCleaner[R1].txt - [46548 octets] - [19/05/2014 22:17:09]
AdwCleaner[R2].txt - [1150 octets] - [19/05/2014 22:20:20]
AdwCleaner[R3].txt - [1227 octets] - [19/05/2014 22:22:06]
AdwCleaner[R4].txt - [1184 octets] - [20/05/2014 14:20:17]
AdwCleaner[S0].txt - [45377 octets] - [19/05/2014 22:18:13]
AdwCleaner[S1].txt - [1212 octets] - [19/05/2014 22:20:54]
AdwCleaner[S2].txt - [1106 octets] - [20/05/2014 14:20:51]
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [1166 octets] ########## als drittes die JRT Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Professional x64
Ran by Tilliboon on 20.05.2014 at 14:24:02,65
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Users\Tilliboon\appdata\locallow\boost_interprocess"
Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 20.05.2014 at 14:30:26,67
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ als letztes die neue FRST
teil 1 Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-05-2014
Ran by Tilliboon (administrator) on TILLI on 20-05-2014 14:31:08
Running from C:\Users\Tilliboon\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1179576 2014-02-05] (NVIDIA Corporation)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [183376 2014-05-14] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [737872 2014-05-09] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated)
HKU\S-1-5-21-196142702-3189451722-1637554636-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-196142702-3189451722-1637554636-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x4A72982CB072CF01
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\Tilliboon\AppData\Roaming\Mozilla\Firefox\Profiles\gvqa6y68.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @java.com/DTPlugin,version=1.6.0_45 - C:\Windows\system32\npdeployJava1.dll (Sun Microsystems, Inc.)
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-05-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-05-09] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [123984 2014-05-14] (Avira Operations GmbH & Co. KG)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [16941856 2014-02-05] (NVIDIA Corporation)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [112080 2014-05-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-05-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-05-09] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-05-19] (Disc Soft Ltd)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-27] (NVIDIA Corporation)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-05-20 14:30 - 2014-05-20 14:30 - 00000788 _____ () C:\Users\Tilliboon\Desktop\JRT.txt
2014-05-20 14:24 - 2014-05-20 14:24 - 00000000 ____D () C:\Windows\ERUNT
2014-05-20 14:23 - 2014-05-20 14:23 - 01016261 _____ (Thisisu) C:\Users\Tilliboon\Desktop\JRT.exe
2014-05-20 14:22 - 2014-05-20 14:22 - 00001246 _____ () C:\Users\Tilliboon\Desktop\AdwCleaner[S2].txt
2014-05-20 14:17 - 2014-05-20 14:17 - 00002929 _____ () C:\Users\Tilliboon\Desktop\mbma.txt
2014-05-20 14:05 - 2014-05-20 14:06 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-20 14:05 - 2014-05-20 14:05 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Tilliboon\Desktop\mbam-setup-2.0.1.1004.exe
2014-05-20 14:05 - 2014-05-20 14:05 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-05-20 14:05 - 2014-05-20 14:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-05-20 14:05 - 2014-05-20 14:05 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-20 14:05 - 2014-05-20 14:05 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-05-20 14:05 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-05-20 14:05 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-05-20 14:05 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-05-20 14:02 - 2014-05-20 14:02 - 00001264 _____ () C:\Users\Tilliboon\Desktop\Revo Uninstaller.lnk
2014-05-20 14:02 - 2014-05-20 14:02 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-05-20 14:01 - 2014-05-20 14:01 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Tilliboon\Desktop\revosetup95.exe
2014-05-20 03:04 - 2014-05-06 06:40 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-20 03:04 - 2014-05-06 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-20 03:04 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-20 03:04 - 2014-05-06 05:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-20 03:04 - 2014-05-06 05:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-20 03:04 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-19 22:21 - 2014-05-19 22:21 - 00001212 _____ () C:\Users\Tilliboon\Desktop\AdwCleaner[S1].txt
2014-05-19 22:20 - 2014-05-19 22:20 - 00045377 _____ () C:\Users\Tilliboon\Desktop\AdwCleaner[S0].txt
2014-05-19 22:16 - 2014-05-19 22:16 - 01326389 _____ () C:\Users\Tilliboon\Desktop\adwcleaner_3.210.exe
2014-05-19 18:18 - 2014-05-19 21:10 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\Mumble
2014-05-19 17:23 - 2014-05-19 17:23 - 00000000 ____D () C:\Users\Tilliboon\.maptool
2014-05-19 17:20 - 2014-05-19 17:20 - 00545200 _____ (Sun Microsystems, Inc.) C:\Windows\system32\npdeployJava1.dll
2014-05-19 17:20 - 2014-05-19 17:20 - 00526768 _____ (Sun Microsystems, Inc.) C:\Windows\system32\deployJava1.dll
2014-05-19 17:20 - 2014-05-19 17:20 - 00196528 _____ (Sun Microsystems, Inc.) C:\Windows\system32\javaws.exe
2014-05-19 17:20 - 2014-05-19 17:20 - 00172976 _____ (Sun Microsystems, Inc.) C:\Windows\system32\javaw.exe
2014-05-19 17:20 - 2014-05-19 17:20 - 00172976 _____ (Sun Microsystems, Inc.) C:\Windows\system32\java.exe
2014-05-19 17:20 - 2014-05-19 17:20 - 00000000 ____D () C:\Program Files\Java
2014-05-19 17:17 - 2014-05-19 17:17 - 00023486 _____ () C:\Users\Tilliboon\Desktop\FRST.zip
2014-05-19 17:05 - 2014-05-19 17:05 - 00023784 _____ () C:\Users\Tilliboon\Desktop\Addition.txt
2014-05-19 17:04 - 2014-05-20 14:31 - 00009026 _____ () C:\Users\Tilliboon\Desktop\FRST.txt
2014-05-19 17:04 - 2014-05-20 14:31 - 00000000 ____D () C:\FRST
2014-05-19 17:03 - 2014-05-19 17:03 - 02067456 _____ (Farbar) C:\Users\Tilliboon\Desktop\FRST64.exe
2014-05-19 16:57 - 2014-05-20 14:20 - 00000000 ____D () C:\AdwCleaner
2014-05-19 16:52 - 2014-05-19 16:59 - 17355184 _____ (Sun Microsystems, Inc.) C:\Users\Tilliboon\Downloads\jre-6u45-windows-x64.exe
2014-05-19 16:47 - 2014-05-19 16:47 - 00003156 _____ () C:\Windows\System32\Tasks\{9C5890C3-F7C0-4A2C-BE06-2227CB6CB9A2}
2014-05-19 16:36 - 2014-05-19 16:36 - 00000871 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-05-19 16:36 - 2014-05-19 16:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-05-19 16:36 - 2014-05-19 16:36 - 00000000 ____D () C:\Program Files\VideoLAN
2014-05-19 16:35 - 2014-05-19 16:35 - 00961360 _____ (Chip Digital GmbH) C:\Users\Tilliboon\Downloads\VLC media player 64 Bit - CHIP-Downloader.exe
2014-05-19 16:19 - 2014-05-19 16:19 - 00000832 _____ () C:\Users\Tilliboon\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-05-19 16:18 - 2014-05-19 22:15 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\uTorrent
2014-05-19 16:18 - 2014-05-19 16:18 - 01670992 _____ (BitTorrent Inc.) C:\Users\Tilliboon\Downloads\uTorrent_3.4.1_31139.exe
2014-05-19 16:13 - 2014-05-19 16:13 - 00000000 ____D () C:\Program Files (x86)\Warcraft III1.2
2014-05-19 15:42 - 2014-05-19 15:42 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\Nero
2014-05-19 15:39 - 2014-05-19 15:39 - 00000000 ____D () C:\Users\Tilliboon\Statistik
2014-05-19 15:39 - 2014-05-19 15:39 - 00000000 ____D () C:\Users\Tilliboon\Bilder Powerpoint Baggern
2014-05-19 15:39 - 2014-05-19 15:39 - 00000000 ____D () C:\Users\Tilliboon\Bilder für die wand
2014-05-19 15:39 - 2014-05-19 15:39 - 00000000 ____D () C:\Users\Tilliboon\Bewerbung
2014-05-19 15:37 - 2014-05-19 15:40 - 00000000 ____D () C:\Users\Tilliboon\Ulf
2014-05-19 15:37 - 2014-05-19 15:37 - 00000000 ____D () C:\Users\Tilliboon\Praktikum
2014-05-19 15:35 - 2012-10-01 17:26 - 00002384 _____ () C:\Users\Tilliboon\Documents\MumbleAutomaticCertificateBackup.p12
2014-05-19 15:35 - 2012-04-01 10:21 - 00001351 _____ () C:\Users\Tilliboon\Documents\AutoHotkey.ahk
2014-05-19 15:35 - 2011-08-09 17:24 - 00001650 _____ () C:\Users\Tilliboon\Documents\T4EPlayer.conf
2014-05-19 15:35 - 2011-01-27 13:42 - 00009945 _____ () C:\Users\Tilliboon\Documents\Uninstall Dragon Age Origins.log
2014-05-19 15:35 - 2011-01-25 06:16 - 20268251 _____ () C:\Users\Tilliboon\Documents\vlc-1.1.6-win32.exe
2014-05-19 15:35 - 2010-10-17 01:36 - 00210353 _____ () C:\Users\Tilliboon\Documents\ts3_clientui-win32-12599-2010-10-17 01_36_33.607703.dmp
2014-05-19 15:35 - 2010-10-09 23:40 - 00032251 _____ () C:\Users\Tilliboon\Documents\ts3_clientui-win32-12451-2010-10-09 23_40_47.820998.dmp
2014-05-19 15:35 - 2010-10-04 23:33 - 00223650 _____ () C:\Users\Tilliboon\Documents\ts3_clientui-win32-12451-2010-10-04 23_33_42.085553.dmp
2014-05-19 15:35 - 2010-08-09 21:57 - 00005525 _____ () C:\Users\Tilliboon\Documents\Dragon Age Origins 1.04.log
2014-05-19 15:35 - 2010-08-09 21:38 - 00021415 _____ () C:\Users\Tilliboon\Documents\Install Dragon Age Origins.log
2014-05-19 15:35 - 2010-06-19 17:08 - 00039671 _____ () C:\Users\Tilliboon\Documents\bookmarks.html
2014-05-19 15:35 - 2010-01-31 15:13 - 00874496 _____ () C:\Users\Tilliboon\Documents\KAUFHAUS.pps
2014-05-19 15:35 - 2009-10-27 16:51 - 00000052 _____ () C:\Users\Tilliboon\Documents\Office Kay.txt
2014-05-19 15:35 - 2009-10-17 19:11 - 00014487 _____ () C:\Users\Tilliboon\Documents\Images.rar
2014-05-19 15:35 - 2009-10-07 13:58 - 00000056 _____ () C:\Users\Tilliboon\Documents\Windows 7 kay.txt
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\World in Conflict
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\Warhammer Battle March
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\Visual Studio 2008
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\Vindictus EU
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\TomTom
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\TikGames
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\StationRipper
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\SoliumInfernumGame
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\RohanScreenShot
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\RIFT
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\Red Alert 3
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\OneNote-Notizbücher
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\My PSP Files
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\Mount&Blade Savegames
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\Meine empfangenen Dateien
2014-05-19 15:34 - 2014-05-19 15:34 - 00000000 ____D () C:\Users\Tilliboon\Documents\GameShadow
2014-05-19 15:34 - 2011-10-29 06:22 - 00000000 ____D () C:\Users\Tilliboon\Documents\Reakktor Media
2014-05-19 15:34 - 2009-12-09 18:14 - 00000000 ____D () C:\Users\Tilliboon\Documents\Meine Corel-Shows
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\Users\Tilliboon\Documents\dvd
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\Users\Tilliboon\Documents\Dungeons and Dragons Online
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\Users\Tilliboon\Documents\BloodBowl
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\Users\Tilliboon\Documents\BioWare
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\Users\Tilliboon\Documents\BattleForge
2014-05-19 15:33 - 2014-05-19 15:33 - 00000000 ____D () C:\Users\Tilliboon\Documents\Baldur's Gate - Enhanced Edition
2014-05-19 15:32 - 2014-05-19 15:33 - 00000000 ____D () C:\Users\Tilliboon\Documents\ArcaniA - Gothic 4
2014-05-19 15:23 - 2014-05-19 15:23 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-05-19 15:23 - 2014-05-19 15:23 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-05-19 15:22 - 2014-05-19 15:22 - 00000000 ____D () C:\ProgramData\Adobe
2014-05-19 15:22 - 2014-05-19 15:22 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-05-19 14:40 - 2014-05-19 15:35 - 00000000 ____D () C:\Users\Tilliboon\Documents\my games
2014-05-19 14:40 - 2014-05-19 14:40 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chaos Shredder
2014-05-19 14:40 - 2014-05-19 14:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chaos Shredder
2014-05-19 14:28 - 2014-05-20 14:28 - 00000000 ____D () C:\Windows\AutoKMS
2014-05-19 14:28 - 2014-05-19 14:28 - 00003238 _____ () C:\Windows\System32\Tasks\AutoKMSCustom
2014-05-19 14:28 - 2014-05-19 14:28 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit
2014-05-19 14:26 - 2014-05-19 14:26 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2014-05-19 14:25 - 2014-05-19 14:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-05-19 14:25 - 2014-05-19 14:25 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-05-19 14:25 - 2014-05-19 14:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2014-05-19 14:24 - 2014-05-19 14:25 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2014-05-19 14:24 - 2014-05-19 14:24 - 00000000 ____D () C:\Windows\PCHEALTH
2014-05-19 14:23 - 2014-05-19 14:24 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-05-19 14:23 - 2014-05-19 14:23 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-05-19 14:23 - 2014-05-19 14:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-05-19 14:23 - 2014-05-19 14:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-05-19 14:22 - 2014-05-19 14:22 - 00000000 __RHD () C:\MSOCache
2014-05-19 14:18 - 2014-05-19 14:18 - 00001174 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
2014-05-19 14:18 - 2014-05-19 14:18 - 00001162 _____ () C:\Users\Public\Desktop\TeamViewer 9.lnk
2014-05-19 14:18 - 2014-05-19 14:18 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2014-05-19 14:16 - 2014-03-16 04:39 - 00000000 ____D () C:\Users\Tilliboon\Downloads\Microsoft.Office.Professional.Plus.2013.SP1.x64.VL.Deutsch.VLSC.35984.Microsoft.Toolkit.v2.50.KMSpico.v9.2.3
2014-05-19 14:15 - 2014-05-19 14:15 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\WinRAR
2014-05-19 14:01 - 2014-05-19 14:10 - 00000000 ____D () C:\Program Files (x86)\JDownloader
2014-05-19 14:01 - 2014-05-19 14:01 - 00002037 _____ () C:\Users\Tilliboon\Desktop\JDownloader.lnk
2014-05-19 14:01 - 2014-05-19 14:01 - 00002001 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader.lnk
2014-05-19 14:01 - 2014-05-19 14:01 - 00001945 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Deinstallationsprogramm.lnk
2014-05-19 14:01 - 2014-05-19 14:01 - 00001924 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Update.lnk
2014-05-19 14:00 - 2014-05-19 14:00 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-05-19 14:00 - 2014-05-19 14:00 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-05-19 14:00 - 2014-05-19 14:00 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-05-19 14:00 - 2014-05-19 14:00 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-05-19 14:00 - 2014-05-19 14:00 - 00009216 ___SH () C:\Users\Tilliboon\Thumbs.db
2014-05-19 14:00 - 2014-05-19 14:00 - 00000000 ____D () C:\ProgramData\Sun
2014-05-19 14:00 - 2014-05-19 14:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-05-19 14:00 - 2014-05-19 14:00 - 00000000 ____D () C:\Program Files (x86)\Java
2014-05-19 13:52 - 2014-05-19 14:26 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-05-19 13:52 - 2014-05-19 13:52 - 00000000 ____D () C:\Users\Tilliboon\AppData\Local\Microsoft Help
2014-05-19 13:49 - 2014-05-19 13:49 - 00001950 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-05-19 13:49 - 2014-05-19 13:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-05-19 13:48 - 2014-05-19 13:49 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\DAEMON Tools Lite
2014-05-19 13:48 - 2014-05-19 13:48 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2014-05-19 13:48 - 2014-05-19 13:48 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2014-05-19 13:47 - 2014-05-19 13:49 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2014-05-19 13:44 - 2014-05-19 15:27 - 00000000 ____D () C:\Users\Tilliboon\D&D
2014-05-19 13:40 - 2014-05-19 13:41 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\Apple Computer
2014-05-19 13:40 - 2010-02-18 17:55 - 00022328 _____ () C:\Users\Tilliboon\AppData\Roaming\PnkBstrK.sys
2014-05-19 13:40 - 2009-09-30 10:27 - 00000760 _____ () C:\Users\Tilliboon\AppData\Roaming\setup_ldm.iss
2014-05-19 13:40 - 2009-09-30 10:27 - 00000180 _____ () C:\Users\Tilliboon\AppData\Roaming\setup.log
2014-05-19 13:38 - 2014-05-19 13:38 - 00000000 ____D () C:\Users\Tilliboon\.swt
2014-05-19 13:37 - 2011-03-31 17:29 - 00000158 _____ () C:\Users\Tilliboon\lvl300.txt
2014-05-19 13:37 - 2011-03-28 20:16 - 00000034 _____ () C:\Users\Tilliboon\Elemental rpg wc3.txt
2014-05-19 13:37 - 2011-01-10 06:26 - 00037376 _____ () C:\Users\Tilliboon\Stundenplan BW WT11.xls
2014-05-19 13:37 - 2010-11-11 12:34 - 00310032 _____ () C:\Users\Tilliboon\Präsentation PLV.pptx
2014-05-19 13:37 - 2010-09-27 12:36 - 00034816 _____ () C:\Users\Tilliboon\Stundenplan BW HT10.xls
2014-05-19 13:37 - 2010-05-28 02:15 - 00001179 _____ () C:\Users\Tilliboon\Die Drei Fragezeichen - Shortcut.lnk
2014-05-19 13:37 - 2010-03-21 22:39 - 706917358 _____ () C:\Users\Tilliboon\Kampfgeschwader Lützow.avi
2014-05-19 13:33 - 2014-05-19 13:34 - 00000000 ____D () C:\Users\Tilliboon\AppData\Local\LogMeIn Hamachi
2014-05-19 13:33 - 2014-05-19 13:33 - 00000000 ____D () C:\Users\Tilliboon\AppData\Local\LogMeIn
2014-05-19 13:33 - 2014-05-19 13:33 - 00000000 ____D () C:\ProgramData\LogMeIn
2014-05-19 13:32 - 2014-05-19 13:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
2014-05-19 13:32 - 2014-05-19 13:32 - 00001032 _____ () C:\Users\Tilliboon\Desktop\Mumble.lnk
2014-05-19 13:32 - 2014-05-19 13:32 - 00000000 ____D () C:\Program Files (x86)\Mumble
2014-05-19 13:25 - 2014-05-20 14:22 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\Skype
2014-05-19 13:25 - 2014-05-19 13:25 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-05-19 13:25 - 2014-05-19 13:25 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-05-19 13:25 - 2014-05-19 13:25 - 00000000 ____D () C:\Users\Tilliboon\AppData\Local\Skype
2014-05-19 13:25 - 2014-05-19 13:25 - 00000000 ____D () C:\ProgramData\Skype
2014-05-19 13:25 - 2014-05-19 13:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-05-19 13:23 - 2014-03-01 06:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-19 13:23 - 2014-02-04 04:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-05-19 13:23 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-05-19 13:23 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-05-19 13:23 - 2014-01-04 00:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-05-19 13:23 - 2013-12-25 01:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-05-19 13:23 - 2013-12-25 00:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-05-19 13:23 - 2013-11-26 10:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-05-19 13:23 - 2013-11-23 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-05-19 13:23 - 2013-11-23 19:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-05-19 13:23 - 2013-11-23 00:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-05-19 13:23 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2014-05-19 13:23 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2014-05-19 13:23 - 2011-03-11 08:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2014-05-19 13:23 - 2011-03-11 08:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2014-05-19 13:23 - 2011-03-11 08:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2014-05-19 13:23 - 2011-03-11 08:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2014-05-19 13:23 - 2011-03-11 08:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2014-05-19 13:23 - 2011-03-11 08:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2014-05-19 13:23 - 2011-03-11 08:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2014-05-19 13:23 - 2011-03-11 07:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2014-05-19 13:23 - 2011-03-11 07:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2014-05-19 13:23 - 2011-03-11 06:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2014-05-19 13:23 - 2011-02-25 08:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-05-19 13:23 - 2011-02-25 07:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2014-05-19 13:20 - 2014-05-19 13:20 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-05-19 03:04 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-05-19 03:01 - 2014-05-19 03:01 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-05-19 03:01 - 2014-05-19 03:01 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-05-19 03:01 - 2014-05-19 03:01 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-05-19 03:01 - 2014-05-19 03:01 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-05-19 03:01 - 2014-05-19 03:01 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-05-19 03:01 - 2014-05-19 03:01 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-05-19 03:01 - 2014-05-19 03:01 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-05-19 03:01 - 2014-05-19 03:01 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-05-19 03:01 - 2014-05-19 03:01 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-05-19 03:01 - 2014-05-19 03:01 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-05-19 03:01 - 2014-05-19 03:01 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-05-19 03:00 - 2014-05-19 03:05 - 00010234 _____ () C:\Windows\IE11_main.log
2014-05-18 23:21 - 2014-05-19 23:32 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\vlc
2014-05-18 23:20 - 2014-05-18 23:20 - 00000933 _____ () C:\Users\Tilliboon\Desktop\Downloads.lnk
2014-05-18 22:07 - 2014-05-18 22:07 - 00000000 ____D () C:\Users\Tilliboon\AppData\Local\Macromedia
2014-05-18 22:06 - 2014-05-19 15:23 - 00000000 ____D () C:\Users\Tilliboon\AppData\Local\Adobe
2014-05-18 22:06 - 2014-05-18 22:06 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-18 22:06 - 2014-05-18 22:06 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-18 22:06 - 2014-05-18 22:06 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-05-18 22:06 - 2014-05-18 22:06 - 00000000 ____D () C:\Windows\system32\Macromed
2014-05-18 20:07 - 2014-05-19 13:43 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\Adobe
2014-05-18 20:07 - 2014-05-18 20:07 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\Macromedia
2014-05-18 20:01 - 2014-05-18 20:01 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\LolClient
2014-05-18 19:58 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-05-18 19:58 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-05-18 19:58 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-05-18 19:58 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2014-05-18 19:58 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2014-05-18 19:57 - 2014-05-18 19:57 - 00001503 _____ () C:\Users\Public\Desktop\League of Legends.lnk
2014-05-18 19:56 - 2014-05-18 22:34 - 00000000 ____D () C:\Users\Tilliboon\AppData\Local\PMB Files
2014-05-18 19:56 - 2014-05-18 19:58 - 00000000 ____D () C:\ProgramData\PMB Files
2014-05-18 19:56 - 2014-05-18 19:56 - 00000000 ____D () C:\Program Files (x86)\Pando Networks
2014-05-18 19:48 - 2014-05-19 17:02 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\TS3Client
2014-05-18 19:47 - 2014-05-18 19:47 - 00000806 _____ () C:\Users\Tilliboon\Desktop\TeamSpeak 3 Client.lnk
2014-05-18 19:19 - 2014-05-18 19:19 - 00000000 ____D () C:\Users\Tilliboon\AppData\Roaming\Avira
2014-05-18 19:18 - 2014-05-19 14:27 - 00087592 _____ () C:\Users\Tilliboon\AppData\Local\GDIPFONTCACHEV1.DAT
2014-05-18 19:18 - 2014-05-18 19:18 - 00000000 ____D () C:\ProgramData\Package Cache
2014-05-18 19:18 - 2014-05-18 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-05-18 19:18 - 2014-05-18 19:18 - 00000000 ____D () C:\ProgramData\Avira
2014-05-18 19:18 - 2014-05-18 19:18 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-05-18 19:18 - 2014-05-09 11:16 - 00130584 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-05-18 19:18 - 2014-05-09 11:16 - 00112080 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-05-18 19:18 - 2014-05-09 11:16 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-05-18 19:04 - 2014-05-18 19:04 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-05-18 19:02 - 2013-05-10 07:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-05-18 19:02 - 2013-05-10 07:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-05-18 19:02 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2014-05-18 19:02 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2014-05-18 18:45 - 2014-05-18 18:45 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-05-18 18:45 - 2014-05-18 18:45 - 00000000 ____D () C:\Program Files\Realtek
2014-05-18 18:42 - 2013-10-02 04:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-05-18 18:42 - 2013-10-02 04:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-05-18 18:42 - 2013-10-02 04:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-05-18 18:42 - 2013-10-02 03:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-05-18 18:42 - 2013-10-02 03:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-05-18 18:42 - 2013-10-02 03:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-05-18 18:42 - 2013-10-02 03:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-05-18 18:42 - 2013-10-02 02:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-05-18 18:42 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-05-18 18:42 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-05-18 18:42 - 2013-10-02 02:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-05-18 18:42 - 2013-10-02 02:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-05-18 18:42 - 2013-10-02 01:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-05-18 18:42 - 2013-10-02 01:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-05-18 18:42 - 2013-10-02 01:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-05-18 18:42 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-05-18 18:32 - 2014-05-18 18:32 - 00008192 __RSH () C:\BOOTSECT.BAK
2014-05-18 18:32 - 2014-05-18 17:43 - 00000000 ____D () C:\Windows\Panther
2014-05-18 18:32 - 2010-11-21 05:23 - 00383786 __RSH () C:\bootmgr
2014-05-18 18:28 - 2012-08-23 16:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-05-18 18:28 - 2012-08-23 16:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-05-18 18:28 - 2012-08-23 16:08 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2014-05-18 18:28 - 2012-08-23 15:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-05-18 18:28 - 2012-08-23 13:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2014-05-18 18:28 - 2012-08-23 12:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2014-05-18 18:28 - 2012-08-23 11:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-05-18 18:24 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe
2014-05-18 18:18 - 2014-05-18 18:18 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-18 18:18 - 2014-05-04 17:12 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-05-18 18:14 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2014-05-18 18:14 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2014-05-18 18:14 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2014-05-18 18:14 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2014-05-18 18:14 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2014-05-18 18:14 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2014-05-18 18:14 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2014-05-18 18:14 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-05-18 18:10 - 2013-01-13 23:17 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 23:17 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 23:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 23:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-18 18:10 - 2013-01-13 23:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-18 18:10 - 2013-01-13 23:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 23:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 23:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 23:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 22:35 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 22:35 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 22:35 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 22:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-18 18:10 - 2013-01-13 22:31 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-05-18 18:10 - 2013-01-13 22:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-18 18:10 - 2013-01-13 22:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 22:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 22:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 22:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-18 18:10 - 2013-01-13 22:20 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-05-18 18:10 - 2013-01-13 22:09 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-05-18 18:10 - 2013-01-13 22:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-05-18 18:10 - 2013-01-13 21:59 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-05-18 18:10 - 2013-01-13 21:58 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-05-18 18:10 - 2013-01-13 21:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-05-18 18:10 - 2013-01-13 21:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-05-18 18:10 - 2013-01-13 21:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-05-18 18:10 - 2013-01-13 21:49 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-05-18 18:10 - 2013-01-13 21:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-05-18 18:10 - 2013-01-13 21:46 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-05-18 18:10 - 2013-01-13 21:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-05-18 18:10 - 2013-01-13 21:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-05-18 18:10 - 2013-01-13 21:25 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-05-18 18:10 - 2013-01-13 21:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-05-18 18:10 - 2013-01-13 21:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-05-18 18:10 - 2013-01-13 21:20 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-05-18 18:10 - 2013-01-13 21:20 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-05-18 18:10 - 2013-01-13 20:34 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-05-18 18:10 - 2013-01-13 20:09 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-05-18 18:10 - 2013-01-13 19:26 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-05-18 18:10 - 2013-01-13 19:05 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-05-18 18:10 - 2013-01-04 08:11 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-05-18 18:10 - 2013-01-04 08:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-05-18 18:09 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2014-05-18 18:09 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2014-05-18 18:09 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2014-05-18 18:07 - 2014-05-09 08:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-18 18:07 - 2014-05-09 08:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-18 18:07 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-18 18:07 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-05-18 18:07 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-05-18 18:07 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-05-18 18:07 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-05-18 18:07 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-05-18 18:07 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2014-05-18 18:07 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-05-18 18:07 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-05-18 18:07 - 2013-09-25 04:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-05-18 18:07 - 2013-09-25 03:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-05-18 18:07 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-05-18 18:07 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-05-18 18:07 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-05-18 18:07 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-05-18 18:07 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2014-05-18 18:07 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2014-05-18 18:07 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-05-18 18:07 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2014-05-18 18:07 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2014-05-18 18:07 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-05-18 18:07 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-05-18 18:07 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2014-05-18 18:07 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2014-05-18 18:07 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2014-05-18 18:07 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2014-05-18 18:07 - 2012-05-04 13:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-05-18 18:07 - 2012-05-04 11:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-05-18 18:07 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2014-05-18 18:07 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2014-05-18 18:07 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2014-05-18 18:07 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2014-05-18 18:07 - 2011-10-26 07:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-05-18 18:07 - 2011-10-26 06:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2014-05-18 18:07 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2014-05-18 18:07 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2014-05-18 18:07 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2014-05-18 18:07 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2014-05-18 18:07 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2014-05-18 18:07 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2014-05-18 18:07 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2014-05-18 18:07 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2014-05-18 18:07 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2014-05-18 18:07 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2014-05-18 18:07 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2014-05-18 18:07 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2014-05-18 18:07 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2014-05-18 18:07 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2014-05-18 18:07 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2014-05-18 18:07 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2014-05-18 18:07 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2014-05-18 18:07 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2014-05-18 18:07 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2014-05-18 18:07 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2014-05-18 18:07 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2014-05-18 18:07 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2014-05-18 18:07 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2014-05-18 18:07 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2014-05-18 18:07 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2014-05-18 18:07 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2014-05-18 18:07 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2014-05-18 18:07 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2014-05-18 18:07 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2014-05-18 18:07 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-05-18 18:07 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-05-18 18:07 - 2010-12-23 12:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2014-05-18 18:07 - 2010-12-23 12:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2014-05-18 18:07 - 2010-12-23 12:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2014-05-18 18:07 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2014-05-18 18:07 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2014-05-18 18:07 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2014-05-18 18:06 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-05-18 18:06 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-05-18 18:06 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-05-18 18:06 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-05-18 18:06 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-05-18 18:06 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-05-18 18:06 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-05-18 18:06 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-05-18 18:06 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-05-18 18:06 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-05-18 18:06 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-05-18 18:06 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-05-18 18:06 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-05-18 18:06 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-05-18 18:06 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-05-18 18:06 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-05-18 18:06 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-05-18 18:06 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-05-18 18:06 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-05-18 18:06 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-05-18 18:06 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-05-18 18:06 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-05-18 18:06 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-05-18 18:06 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-05-18 18:06 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-05-18 18:06 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-05-18 18:06 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-05-18 18:06 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-05-18 18:06 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-05-18 18:06 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-05-18 18:06 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-05-18 18:06 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-05-18 18:06 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2014-05-18 18:06 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-05-18 18:06 - 2014-01-01 01:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-05-18 18:06 - 2013-12-06 04:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-05-18 18:06 - 2013-12-06 04:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-05-18 18:06 - 2013-12-06 04:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-05-18 18:06 - 2013-12-06 04:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-05-18 18:06 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-05-18 18:06 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-05-18 18:06 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-05-18 18:06 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-05-18 18:06 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-05-18 18:06 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-05-18 18:06 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-05-18 18:06 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-05-18 18:06 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-05-18 18:06 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-05-18 18:06 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-05-18 18:06 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-05-18 18:06 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-05-18 18:06 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-05-18 18:06 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-05-18 18:06 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-05-18 18:06 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-05-18 18:06 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-05-18 18:06 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-05-18 18:06 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-05-18 18:06 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-05-18 18:06 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-05-18 18:06 - 2013-11-27 03:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-05-18 18:06 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-05-18 18:06 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-05-18 18:06 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-05-18 18:06 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2014-05-18 18:06 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2014-05-18 18:06 - 2013-10-04 04:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-05-18 18:06 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-05-18 18:06 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2014-05-18 18:06 - 2013-10-04 03:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-05-18 18:06 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2014-05-18 18:06 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-05-18 18:06 - 2013-09-28 03:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-05-18 18:06 - 2013-09-25 04:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-05-18 18:06 - 2013-09-25 03:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-05-18 18:06 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-05-18 18:06 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-05-18 18:06 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2014-05-18 18:06 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-05-18 18:06 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2014-05-18 18:06 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2014-05-18 18:06 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-05-18 18:06 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-05-18 18:06 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2014-05-18 18:06 - 2013-07-12 12:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2014-05-18 18:06 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-05-18 18:06 - 2013-07-12 12:40 - 00109824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2014-05-18 18:06 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-05-18 18:06 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-05-18 18:06 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2014-05-18 18:06 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2014-05-18 18:06 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-05-18 18:06 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2014-05-18 18:06 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2014-05-18 18:06 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2014-05-18 18:06 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-05-18 18:06 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-05-18 18:06 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-05-18 18:06 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-05-18 18:06 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-05-18 18:06 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-05-18 18:06 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-05-18 18:06 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-05-18 18:06 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2014-05-18 18:06 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2014-05-18 18:06 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2014-05-18 18:06 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-05-18 18:06 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-05-18 18:06 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-05-18 18:06 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-05-18 18:06 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-05-18 18:06 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2014-05-18 18:06 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2014-05-18 18:06 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2014-05-18 18:06 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll |