Teil 9: Code:
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\C\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\C\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\Mythic\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\Mythic\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\Rare\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\Rare\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\Token\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\Token\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\UC\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Nach Edition\Zendikar\UC\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Zubehör\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Bilder\Zubehör\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Datenbanken\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Datenbanken\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Monatsberichte\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Monatsberichte\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Monatsberichte\comdirect Finanzreports (2009-Q1 + 2010)\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Monatsberichte\comdirect Finanzreports (2009-Q1 + 2010)\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Monatsberichte\ebay\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Monatsberichte\ebay\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Monatsberichte\MKM\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Monatsberichte\MKM\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Monatsberichte\Paypal (2011)\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Monatsberichte\Paypal (2011)\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\MWS Decks\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\MWS Decks\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\MWS Decks\Legacy\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\MWS Decks\Legacy\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\MWS Decks\Legacy\Tresh\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\MWS Decks\Legacy\Tresh\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Pattern\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Pattern\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2009\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2009\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2010\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2010\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2011\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2011\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2011\Ausgang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2011\Ausgang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2011\Eingang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2011\Eingang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2011\Eingang\MKM Provision\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2011\Eingang\MKM Provision\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2012\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2012\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2012\Ausgang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2012\Ausgang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2012\Eingang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2012\Eingang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2012\Eingang\MKM Provision (unvollständig)\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2012\Eingang\MKM Provision (unvollständig)\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2013\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2013\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2013\Ausgang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2013\Ausgang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2013\Eingang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2013\Eingang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2014\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2014\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2014\Ausgang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2014\Ausgang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2014\Eingang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2014\Eingang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2015\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2015\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2015\Ausgang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2015\Ausgang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2015\Eingang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Rechnungen\2015\Eingang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Steuer\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Steuer\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Steuer\EST\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Steuer\EST\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Steuer\EST\2010\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Steuer\EST\2010\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Steuer\UST-VA\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Steuer\UST-VA\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Steuer\UST-VA\Alte fehlerhafte\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Steuer\UST-VA\Alte fehlerhafte\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2008\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2008\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2009\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2009\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2010\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2010\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2011\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2011\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2012\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2012\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2013\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2013\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2014\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2014\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2015\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Magic\Umsätze\2015\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Nero CD-Files\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Nero CD-Files\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Nero CD-Files\Best of\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Nero CD-Files\Best of\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\PDF\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\PDF\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Slideshows\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Dateien\Slideshows\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Jenni SMARTPhone\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Jenni SMARTPhone\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Jenni SMARTPhone\2013\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Jenni SMARTPhone\2013\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Jenni SMARTPhone\2013\Jetski mit Jenni\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Jenni SMARTPhone\2013\Jetski mit Jenni\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\JVC Cam\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\JVC Cam\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\JVC Cam\AVI\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\JVC Cam\AVI\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\JVC Cam\MPG\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\JVC Cam\MPG\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\JVC Cam\WMV\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\JVC Cam\WMV\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2013\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2013\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2013\480-485 Großer Weißer Tiger\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2013\480-485 Großer Weißer Tiger\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2013\524-556 Bootfahrt Wakenitz Lübeck - Rothenhusen\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2013\524-556 Bootfahrt Wakenitz Lübeck - Rothenhusen\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2013\618-627 Pelzerhaken\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2013\618-627 Pelzerhaken\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\Bilder\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\Bilder\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\Bilder\Aus Videos\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\Bilder\Aus Videos\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\Bilder\Auswahl\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\Bilder\Auswahl\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\Bilder\Burj Khalifa\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\Bilder\Burj Khalifa\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\Bilder\Janine Handy\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\664 - 789 Abu Dhabi Urlaub\Bilder\Janine Handy\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\795 - 818 Janine's 31. Geburtstag im Wildpark\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\795 - 818 Janine's 31. Geburtstag im Wildpark\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\819 - 827 Ostern in Lübeck\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\819 - 827 Ostern in Lübeck\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\828 - 830 Jetskifahrt Großenbrode - Pelzerhaken\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\828 - 830 Jetskifahrt Großenbrode - Pelzerhaken\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\831 - 833a Tennis am Rhotenbaum\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\831 - 833a Tennis am Rhotenbaum\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\834 - 839 CraigCatfahrt mit Hindernissen\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\834 - 839 CraigCatfahrt mit Hindernissen\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\840 - 849 Wakenitzfahrt mit Jenni und Anhang\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\840 - 849 Wakenitzfahrt mit Jenni und Anhang\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\851 - 858 + 880a - 883 Jetskitagebuch\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\851 - 858 + 880a - 883 Jetskitagebuch\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\859 - 880 Karl's Hof des Wahnsinns\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\859 - 880 Karl's Hof des Wahnsinns\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\901 - 905 Otfried's 80. Geburtstag\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2014\901 - 905 Otfried's 80. Geburtstag\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\001 - 063 Dubai & Abu Dhabi Urlaub\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\001 - 063 Dubai & Abu Dhabi Urlaub\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\001 - 063 Dubai & Abu Dhabi Urlaub\Bilder\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\001 - 063 Dubai & Abu Dhabi Urlaub\Bilder\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\067 - 071 Swing- & Fußballgolf in HH\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\067 - 071 Swing- & Fußballgolf in HH\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\108 - 110 Kurzurlaub Pelzerhaken\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\108 - 110 Kurzurlaub Pelzerhaken\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\111 - 112 Nadal am Rhotenbaum\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\111 - 112 Nadal am Rhotenbaum\HELP_DECRYPT.TXT"
sh=54B0611D68FAD5318627432B3C30F769D9327368 ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\131 - 139 Mein 34. Geburtstag mit Wellen und Regenbogen\HELP_DECRYPT.HTML"
sh=8B25B90C8D124802ECD90B358C98D5FADDE2D65D ft=0 fh=0000000000000000 vn="Win32/Filecoder.CR Trojaner" ac=I fn="D:\DATABASE\Eigene Videos\Sony Cam\2015\131 - 139 Mein 34. Geburtstag mit Wellen und Regenbogen\HELP_DECRYPT.TXT"
sh=A0037C3C3E60635D1714AC7119EE96693680B973 ft=1 fh=6db4d990e5cc9378 vn="Win32/Adware.WhenU.SaveNow evtl. unerwünschte Anwendung" ac=I fn="D:\DATABASE\Programme\daemon400.exe"
sh=99D9D92340154C04551222CB1E0DD56211B8E742 ft=1 fh=765f0baa5bc415d8 vn="Variante von Win32/Toolbar.iMedix.A evtl. unerwünschte Anwendung" ac=I fn="D:\DATABASE\Programme\vshare-plugin.exe" SecurityCheck Log: Code:
Results of screen317's Security Check version 1.009
Windows 7 Service Pack 1 x64 (UAC is enabled)
Internet Explorer 11 ``````````````Antivirus/Firewall Check:``````````````
Kaspersky Internet Security
AVG AntiVirus
Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:`````````
AVG PC TuneUp
Java 8 Update 31
Java version 32-bit out of Date!
Adobe Flash Player 11.4.402.287 Flash Player out of Date!
Adobe Reader 9 Adobe Reader out of Date!
Mozilla Firefox 37.0.2 Firefox out of Date! ````````Process Check: objlist.exe by Laurent````````
Kaspersky Lab Kaspersky Internet Security 15.0.1 avp.exe `````````````````System Health check`````````````````
Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` Dazu noch folgender Kommentar:
Kaspersky war ja wie auch das WindowsUpdate schon länger durch irgendwas blockiert und ist jetzt ausgelaufen. AVG war nur ne 30d-Testversion als die letzten Probleme (vor Cryptowall) auftraten und müsste jetzt gekauft werden, wird aber laut cosinus nicht mehr empfohlen. D.h. zur Zeit ist nichts aktiv! Was empfiehlst Du?
Java & Flash aktualisiere ich eigentlich immer wenn ich ne autom. Benachrichtigung bekomme, die letzten sind aber schon paar Wochen her. Und für den Reader sind angeblich keine Updates verfügbar. Ich meine ich hätte mal ne Nachricht bekommen, dass der nicht mehr unterstützt wird, aber mein Standard pdf reader ist / bzw. sollte eigentlich auch der Foxit reader sein.
FRST Log: Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:17-11-2015
durchgeführt von DJ Dolphin (Administrator) auf WAVEMASTER (18-11-2015 02:18:38)
Gestartet von C:\Users\DJ Dolphin\Desktop
Geladene Profile: DJ Dolphin (Verfügbare Profile: DJ Dolphin & Gast)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: IE)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer3\TeamViewer_Service.exe
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe
(Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(Toshiba Europe GmbH) C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Nero AG) C:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1050072 2010-05-11] (Toshiba Europe GmbH)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2107176 2010-03-11] (Synaptics Incorporated)
HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [505768 2010-05-25] (TOSHIBA Corporation)
HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [52600 2009-03-09] (TOSHIBA Corporation)
HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [570680 2009-08-13] (TOSHIBA Corporation)
HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [915320 2010-05-10] (TOSHIBA Corporation)
HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1504608 2010-04-23] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation)
HKLM\...\Run: [ThpSrv] => C:\Windows\system32\thpsrv /logon
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [705432 2010-05-10] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] => C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba Registration] => C:\Program Files\Toshiba\Registration\ToshibaReminder.exe [136136 2010-04-19] (Toshiba Europe GmbH)
HKLM-x32\...\Run: [NBAgent] => c:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe [1086760 2010-03-09] (Nero AG)
HKLM-x32\...\Run: [TOSDCR] => C:\Program Files (x86)\TOSHIBA\PasswordUtility\TOSDCR.exe [169296 2007-08-28] ()
HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2454840 2010-05-01] (TOSHIBA CORPORATION.)
HKLM-x32\...\Run: [ITSecMng] => %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
HKLM-x32\...\Run: [TSleepSrv] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [252728 2010-04-01] (TOSHIBA)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation)
HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1130408 2015-10-16] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3826600 2015-10-30] (AVG Technologies CZ, s.r.o.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\Run: [ICQ] => C:\Program Files (x86)\ICQ7.6\ICQ.exe [127040 2011-10-10] (ICQ, LLC.)
HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-18\...\Run: [TOSHIBA Online Product Information] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [4581280 2010-03-03] (TOSHIBA)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-11-16] (Microsoft Corporation)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2010-06-08]
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2010-06-08]
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{008C72E9-AED1-42EC-AC7B-44109F03D9B3}: [NameServer] 193.189.244.225 193.189.244.206
Tcpip\..\Interfaces\{01A8C316-0DD0-450A-8546-EC410E51E72E}: [NameServer] 193.189.244.225 193.189.244.206
Tcpip\..\Interfaces\{D90834D8-2216-4093-B695-FD8551D08914}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{FF0CBC07-64D7-4841-B6C9-E10BAB31C86D}: [DhcpNameServer] 192.168.178.1
Internet Explorer:
==================
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba.msn.com
HKU\S-1-5-21-2290779612-799622330-4084932457-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-2290779612-799622330-4084932457-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://toshiba.msn.com/
SearchScopes: HKLM -> DefaultScope {E39C11DC-F612-45BF-9503-C474AB02C80B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {E39C11DC-F612-45BF-9503-C474AB02C80B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {F22327E2-9ADE-4944-8D9C-47781C53DF16} URL =
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {8983339A-BF46-4E86-8035-2B5E03A29E7C} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-2290779612-799622330-4084932457-1000 -> {8983339A-BF46-4E86-8035-2B5E03A29E7C} URL =
BHO: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO)
BHO: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO)
BHO-x32: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18] (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-05] (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation)
BHO-x32: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.)
BHO-x32: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-05] (Oracle Corporation)
BHO-x32: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO)
BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2010-03-19] (<TOSHIBA>)
DPF: HKLM-x32 {000F1EA4-5E08-4564-A29B-29076F63A37A} hxxp://launch.soe.com/plugin/web/SOEWebInstaller.cab
DPF: HKLM-x32 {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: HKLM-x32 {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2010-02-22] (Skype Technologies)
FireFox:
========
FF ProfilePath: C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_4_402_287.dll [2012-10-10] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll [2012-10-10] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2011-06-20] (Foxit Corporation)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-05] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-05] (Oracle Corporation)
FF Plugin-x32: @kaspersky.com/content_blocker_6418E0D362104DADA084DC312DFA8ABC -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-12-17] ()
FF Plugin-x32: @kaspersky.com/online_banking_69A4E213815F42BD863D889007201D82 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-12-17] ()
FF Plugin-x32: @kaspersky.com/virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-12-17] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\3.0.40818.0\npctrl.dll [2009-08-17] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=6.0.12.448 -> C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nppl3260.dll [2010-02-04] (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.448 -> C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nprpjplug.dll [2010-02-04] (RealNetworks, Inc.)
FF Plugin-x32: @soe.sony.com/installer,version=1.0.3 -> C:\Windows\Downloaded Program Files\npsoe.dll [2011-06-09] ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-12] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-12] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2012-12-18] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL [2006-10-26] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2012-12-18] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2013-09-02] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2013-09-02] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2013-09-02] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2013-09-02] (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2013-09-02] (Apple Inc.)
FF Extension: Greasemonkey - C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2015-10-11]
FF HKLM-x32\...\Firefox\Extensions: [content_blocker_6418E0D362104DADA084DC312DFA8ABC@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com
FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-12-17] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-12-17] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [online_banking_69A4E213815F42BD863D889007201D82@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-12-17] [ist nicht signiert]
FF Extension: Kein Name - C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee} [nicht gefunden]
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [595376 2015-10-30] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3815648 2015-10-30] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1046952 2015-10-16] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [579776 2015-10-30] (AVG Technologies CZ, s.r.o.)
R2 AVP15.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe [234520 2014-08-30] (Kaspersky Lab ZAO)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer3\TeamViewer_Service.exe [181544 2008-09-25] (TeamViewer GmbH)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [124368 2010-05-11] (Toshiba Europe GmbH)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [4368808 2015-10-14] (AVG Technologies CZ, s.r.o.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [197040 2015-08-10] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313776 2015-10-19] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [298416 2015-08-20] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [398256 2015-08-14] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [255408 2015-10-21] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-08-10] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [302000 2015-10-08] (AVG Technologies CZ, s.r.o.)
R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [238288 2013-01-14] (Kaspersky Lab UK Ltd)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-04-20] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [250368 2010-04-07] (Huawei Technologies Co., Ltd.)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [468576 2014-03-31] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [46144 2014-07-02] (Kaspersky Lab ZAO)
R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [150536 2014-08-18] (Kaspersky Lab ZAO)
R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [246456 2014-08-12] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [820232 2014-08-20] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55872 2014-06-05] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [74424 2014-08-13] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179776 2014-07-09] (Kaspersky Lab ZAO)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
S3 pfc; C:\Windows\SysWOW64\drivers\pfc.sys [14604 2003-08-11] (Padus, Inc.) [Datei ist nicht signiert]
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [31144 2015-10-14] (TuneUp Software)
S3 YMIDUSBW; C:\Windows\System32\drivers\ymidusbx64.sys [51496 2013-04-04] (Yamaha Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-11-18 02:18 - 2015-11-18 02:18 - 00000000 ____D C:\Users\DJ Dolphin\Desktop\FRST-OlderVersion
2015-11-18 00:37 - 2015-11-18 00:37 - 00852720 _____ C:\Users\DJ Dolphin\Desktop\SecurityCheck.exe
2015-11-17 20:21 - 2015-11-17 20:21 - 02870984 _____ (ESET) C:\Users\DJ Dolphin\Desktop\esetsmartinstaller_deu.exe
2015-11-17 06:33 - 2015-07-30 20:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-11-17 06:33 - 2015-07-30 20:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-11-17 06:33 - 2015-07-30 20:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-11-17 06:33 - 2015-07-30 19:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-11-17 06:33 - 2015-07-30 19:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-11-17 06:33 - 2015-02-04 05:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-11-17 06:33 - 2015-02-04 04:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-11-17 06:33 - 2015-02-03 05:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-11-17 06:33 - 2015-02-03 05:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-11-17 06:09 - 2015-11-17 06:09 - 00000000 ____D C:\Windows\Panther
2015-11-17 05:00 - 2015-07-30 15:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-11-17 05:00 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-11-17 05:00 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2015-11-17 04:49 - 2015-11-17 04:49 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-11-17 04:49 - 2015-11-17 04:49 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-11-17 04:49 - 2015-11-17 04:49 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-11-17 04:49 - 2015-11-17 04:49 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2015-11-17 04:49 - 2015-11-17 04:49 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00342728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-11-17 04:49 - 2015-11-17 04:49 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2015-11-17 04:49 - 2015-11-17 04:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2015-11-17 04:49 - 2015-11-17 04:49 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-11-17 04:49 - 2015-11-17 04:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2015-11-17 04:49 - 2015-11-17 04:49 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-11-17 04:49 - 2015-11-17 04:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2015-11-17 04:49 - 2015-11-17 04:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-11-17 04:48 - 2015-11-17 04:48 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-11-17 04:48 - 2015-11-17 04:48 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2015-11-17 04:48 - 2015-11-17 04:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-11-17 04:48 - 2015-11-17 04:48 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-11-17 04:48 - 2015-11-17 04:48 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-11-17 04:48 - 2015-11-17 04:48 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2015-11-17 04:48 - 2015-11-17 04:48 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-11-17 04:43 - 2015-11-17 04:43 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-11-17 04:43 - 2015-11-17 04:43 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-11-17 04:43 - 2015-11-17 04:43 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2015-11-17 04:43 - 2015-11-17 04:43 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-11-17 04:40 - 2015-11-17 04:40 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2015-11-17 04:40 - 2015-11-17 04:40 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-11-17 04:33 - 2015-11-17 04:33 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-11-17 04:29 - 2015-11-17 04:29 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-11-17 04:29 - 2015-11-17 04:29 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2015-11-17 03:04 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2015-11-17 03:04 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2015-11-17 03:04 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2015-11-17 03:04 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2015-11-17 03:04 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2015-11-17 03:04 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2015-11-17 03:03 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-11-17 03:03 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-11-17 01:42 - 2015-11-17 01:42 - 00002762 _____ C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2015-11-16 23:30 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-11-16 23:30 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2015-11-16 23:30 - 2015-04-18 05:10 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-11-16 23:30 - 2015-04-18 04:56 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-11-16 23:30 - 2015-04-13 05:28 - 00328704 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-11-16 23:30 - 2014-12-11 19:47 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-11-16 23:29 - 2015-10-20 20:42 - 03168768 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-11-16 23:29 - 2015-10-20 20:42 - 02608128 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-11-16 23:29 - 2015-10-20 20:42 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-11-16 23:29 - 2015-10-20 20:42 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-11-16 23:29 - 2015-10-20 20:42 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-11-16 23:29 - 2015-10-20 20:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-11-16 23:29 - 2015-10-20 20:42 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-11-16 23:29 - 2015-10-20 20:41 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-11-16 23:29 - 2015-10-20 20:41 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-11-16 23:29 - 2015-10-20 20:41 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-11-16 23:29 - 2015-10-20 20:41 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-11-16 23:29 - 2015-10-20 19:46 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-11-16 23:29 - 2015-10-20 19:46 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-11-16 23:29 - 2015-10-20 19:46 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-11-16 23:29 - 2015-10-20 19:46 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-11-16 23:29 - 2015-10-20 19:45 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-11-16 23:29 - 2015-08-05 19:56 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-11-16 23:29 - 2015-07-15 20:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-11-16 23:29 - 2015-07-15 20:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-11-16 23:29 - 2015-07-15 20:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-11-16 23:29 - 2015-04-29 20:22 - 14635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-11-16 23:29 - 2015-04-29 20:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-11-16 23:29 - 2015-04-29 20:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-11-16 23:29 - 2015-04-29 20:21 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-11-16 23:29 - 2015-04-29 20:19 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-11-16 23:29 - 2015-04-29 20:07 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-11-16 23:29 - 2015-04-29 20:07 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-11-16 23:29 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-11-16 23:29 - 2015-04-29 20:07 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-11-16 23:29 - 2015-04-29 20:05 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-11-16 23:28 - 2015-08-06 20:04 - 14176768 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-11-16 23:28 - 2015-08-06 20:03 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-11-16 23:28 - 2015-08-06 19:44 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-11-16 23:28 - 2015-08-06 19:44 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-11-16 23:28 - 2015-07-10 19:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-11-16 23:28 - 2015-07-10 19:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2015-11-16 23:28 - 2015-07-10 19:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-11-16 23:28 - 2015-07-10 19:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2015-11-16 23:28 - 2015-07-10 19:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2015-11-16 23:28 - 2015-07-10 19:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2015-11-16 23:28 - 2015-02-03 05:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-11-16 23:28 - 2015-02-03 05:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-11-16 23:28 - 2015-02-03 05:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-11-16 23:28 - 2015-02-03 05:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-11-16 23:28 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-11-16 23:28 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-11-16 23:27 - 2015-02-03 05:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-11-16 23:27 - 2015-02-03 05:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-11-16 23:27 - 2015-02-03 05:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-11-16 23:27 - 2015-02-03 05:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-11-16 23:27 - 2015-02-03 05:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-11-16 23:27 - 2015-02-03 05:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-11-16 23:27 - 2015-02-03 05:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-11-16 23:27 - 2015-02-03 05:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-11-16 23:27 - 2015-02-03 05:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-11-16 23:27 - 2015-02-03 05:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-11-16 23:27 - 2015-02-03 05:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-11-16 23:27 - 2015-02-03 05:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-11-16 23:27 - 2015-02-03 05:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-11-16 23:27 - 2015-02-03 05:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-11-16 23:26 - 2014-12-19 05:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-11-16 23:26 - 2014-06-19 00:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-11-16 23:26 - 2014-06-19 00:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2015-11-16 23:26 - 2014-06-19 00:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2015-11-16 23:26 - 2014-06-19 00:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2015-11-16 23:26 - 2014-06-19 00:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2015-11-16 23:26 - 2014-06-19 00:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2015-11-16 23:26 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-11-16 23:25 - 2015-07-15 05:17 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-11-16 23:25 - 2015-07-15 04:54 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-11-16 23:25 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-11-16 23:25 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-11-16 23:25 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-11-16 23:25 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-11-16 23:25 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-11-16 23:25 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-11-16 23:25 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-11-16 23:24 - 2015-07-15 05:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-11-16 23:24 - 2014-10-14 04:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-11-16 23:23 - 2015-10-01 20:06 - 00692672 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-11-16 23:23 - 2015-10-01 20:04 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-11-16 23:23 - 2015-10-01 20:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-11-16 23:23 - 2015-10-01 20:00 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-11-16 23:23 - 2015-10-01 20:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-11-16 23:23 - 2015-10-01 20:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-11-16 23:23 - 2015-10-01 20:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-11-16 23:23 - 2015-10-01 19:50 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-11-16 23:23 - 2015-10-01 19:00 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-11-16 23:23 - 2015-07-15 05:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-11-16 23:23 - 2015-07-15 05:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-11-16 23:23 - 2015-07-15 05:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-11-16 23:23 - 2015-07-15 05:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-11-16 23:23 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2015-11-16 23:23 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-11-16 23:23 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2015-11-16 23:23 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-11-16 23:23 - 2015-07-04 20:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-11-16 23:23 - 2015-07-04 19:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-11-16 23:23 - 2015-07-01 22:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-11-16 23:23 - 2015-07-01 22:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-11-16 23:23 - 2015-07-01 22:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-11-16 23:23 - 2015-07-01 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-11-16 23:23 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-11-16 23:23 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-11-16 23:23 - 2015-06-03 22:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-11-16 23:23 - 2015-06-03 22:16 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-11-16 23:23 - 2015-06-03 22:16 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-11-16 23:23 - 2015-04-24 20:17 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-11-16 23:23 - 2015-04-24 19:56 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-11-16 23:23 - 2015-02-03 05:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-11-16 23:23 - 2015-02-03 05:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-11-16 23:23 - 2014-12-19 03:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-11-16 23:23 - 2014-12-06 06:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-11-16 23:23 - 2014-12-06 05:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2015-11-16 23:23 - 2014-12-06 05:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2015-11-16 23:23 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-11-16 23:23 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2015-11-16 23:23 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-11-16 23:23 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2015-11-16 23:23 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-11-16 23:23 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-11-16 23:23 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-11-16 23:23 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-11-16 23:23 - 2013-11-27 03:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-11-16 23:23 - 2013-11-27 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2015-11-16 23:23 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-11-16 23:23 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-11-16 23:23 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-11-16 23:23 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-11-16 23:23 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-11-16 23:23 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-11-16 23:23 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-11-16 23:23 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2015-11-16 23:23 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2015-11-16 23:23 - 2012-11-29 00:56 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2015-11-16 23:23 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-11-16 23:23 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-11-16 23:22 - 2015-10-20 03:12 - 05570496 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-11-16 23:22 - 2015-10-20 03:12 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-11-16 23:22 - 2015-10-20 03:12 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-11-16 23:22 - 2015-10-20 03:09 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-11-16 23:22 - 2015-10-20 03:06 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-11-16 23:22 - 2015-10-20 03:06 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-11-16 23:22 - 2015-10-20 03:06 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-11-16 23:22 - 2015-10-20 03:06 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-11-16 23:22 - 2015-10-20 03:05 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-11-16 23:22 - 2015-10-20 03:05 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-11-16 23:22 - 2015-10-20 03:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-11-16 23:22 - 2015-10-20 03:04 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-11-16 23:22 - 2015-10-20 03:04 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-11-16 23:22 - 2015-10-20 03:04 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-11-16 23:22 - 2015-10-20 03:00 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-11-16 23:22 - 2015-10-20 02:59 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:53 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:52 - 03991488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-11-16 23:22 - 2015-10-20 02:52 - 03935680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-11-16 23:22 - 2015-10-20 02:48 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-11-16 23:22 - 2015-10-20 02:45 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-11-16 23:22 - 2015-10-20 02:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-11-16 23:22 - 2015-10-20 02:44 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-11-16 23:22 - 2015-10-20 02:44 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-11-16 23:22 - 2015-10-20 02:44 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-11-16 23:22 - 2015-10-20 02:44 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-11-16 23:22 - 2015-10-20 02:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-11-16 23:22 - 2015-10-20 02:44 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-11-16 23:22 - 2015-10-20 02:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-11-16 23:22 - 2015-10-20 02:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 02:35 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 01:41 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-11-16 23:22 - 2015-10-20 01:40 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-11-16 23:22 - 2015-10-20 01:40 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-11-16 23:22 - 2015-10-20 01:29 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-11-16 23:22 - 2015-10-20 01:29 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-11-16 23:22 - 2015-10-20 01:27 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 01:27 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 01:27 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-11-16 23:22 - 2015-10-20 01:27 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll |