Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 12.03.2016, 10:54   #1
ViviPC
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Hallo,

mir wurde geraten erst in der Malwarefraktion ein Thema zu erstellen, daher poste ich das Thema nun hier.

Ich habe ein neues Notebook mit einer Win10 64er-Installation. Die CD ist neu.

Zudem empfange ich W-Lan über Zertifikate, was bei meinem vorherigen PC sehr gut funktioniert hat, auch nach dem Win10-Upgrade. Jetzt kann ich allerdings keine Verbindung mehr aufbauen. Es ertönt ein für Fehlermeldungen typischer Ton und kurzzeitig erscheint manchmal eine Fehlermeldung, in der etwas von einem Runtime Error steht. Die verursachende Datei soll systemsettingsbroker.exe sein, die auch im Task-Manager zu sehen ist.

Kann man mir helfen? Was braucht ihr dafür noch von mir? Ich kann über msinfo32 die Systeminfos hier posten. Falls es nicht das ist, was ihr braucht, bitte sagt mir, wie ich die entsprechenden Infos abrufen kann. Bin kein Profi.

Danke im Voraus!

Alt 14.03.2016, 17:19   #2
M-K-D-B
/// TB-Ausbilder
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen






Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen.


Bitte beachte folgende Hinweise:
  • Falls wir Hinweise auf illegal erworbene Software finden, werden wir den Support unterbrechen bis jegliche Art von illegaler Software vom Rechner entfernt wurde.
  • Lies dir die Anleitungen sorgfältig durch. Solltest du Probleme haben, stoppe mit deiner Bearbeitung und beschreibe mir dein Problem so gut es geht.
  • Solltest du mir nicht innerhalb von 3 Tagen antworten, gehe ich davon aus, dass du keine Hilfe mehr benötigst. Dann lösche ich dein Thema aus meinem Abo. Solltest du einmal länger abwesend sein, so gib mir bitte Bescheid!
  • Während der Bereinigung bitte nichts installieren oder deinstallieren, außer ich bitte dich darum!
  • Bitte beachten: Download bei filepony.de: So ladet Ihr unsere Tools richtig!
  • Alle zu verwendenen Programme sind auf dem Desktop abzuspeichern und von dort als Administrator zu starten!



Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags:
So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke aauf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.

Danke für deine Mitarbeit!




Zur ersten Analyse bitte FRST und TDSS-Killer ausführen:



Schritt 1
Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)






Schritt 2
Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.







Bitte poste mit deiner nächsten Antwort
  • die Logdatei von TDSS-Killer,
  • die beiden neuen Logdateien von FRST.
__________________


Alt 14.03.2016, 21:47   #3
ViviPC
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Hallo,

erst einmal danke für die Hilfe und im Folgenden die Logdateien.

FRST.txt-Teil 1

Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
durchgeführt von Vanessa (Administrator) auf DESKTOP-1TA3T6T (14-03-2016 21:32:10)
Gestartet von C:\Users\Vanessa\Desktop
Geladene Profile: Vanessa (Verfügbare Profile: Vanessa)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2016.29.13.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2016-03-04] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16404224 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [5062384 2016-03-04] (Realtek semiconductor)
HKU\S-1-5-21-1189241312-1818108196-3406372783-1001\...\RunOnce: [Uninstall C:\Users\Vanessa\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vanessa\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{9cb4147f-a930-4a43-ae28-3ce5aa9e2f52}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================

FireFox:
========
FF ProfilePath: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\33euou60.default
FF NetworkProxy: "autoconfig_url", "data:application/x-ns-proxy-autoconfig;base64,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"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll [2016-03-10] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll [2016-03-10] ()
FF Extension: Adblock Plus - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\33euou60.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-03-10]
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-03-04] [ist nicht signiert]

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2016-03-04] (ELAN Microelectronics Corp.)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [365032 2016-03-04] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2016-01-04] ()
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3832224 2016-01-04] (Intel® Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [299280 2016-03-04] (Intel Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [194320 2016-03-04] (Intel Corporation)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3515664 2016-01-21] (Intel Corporation)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2016-03-04] (Realtek Semiconductor Corp.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [887552 2016-03-04] (Realtek                                            )
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3069680 2016-03-04] (Realtek Semiconductor Corp.)
S3 ssudqcfilter; C:\Windows\System32\drivers\ssudqcfilter.sys [57648 2016-03-04] (QUALCOMM Incorporated)
R3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [23040 2015-10-30] (Microsoft Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-14 21:32 - 2016-03-14 21:32 - 00017743 _____ C:\Users\Vanessa\Desktop\FRST.txt
2016-03-14 21:32 - 2016-03-14 21:32 - 00000000 ____D C:\FRST
2016-03-14 21:30 - 2016-03-14 21:31 - 02374144 _____ (Farbar) C:\Users\Vanessa\Desktop\FRST64.exe
2016-03-14 21:30 - 2016-03-14 21:30 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Vanessa\Desktop\tdsskiller.exe
2016-03-14 17:42 - 2016-03-14 17:42 - 00000000 ___HD C:\WINDOWS\system32\WLANProfiles
2016-03-14 17:42 - 2016-03-14 17:42 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\ProgramData\Package Cache
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\ProgramData\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files\Common Files\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files (x86)\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files (x86)\Cisco
2016-03-14 17:36 - 2016-03-14 17:37 - 19723288 _____ (Intel(R) Corporation) C:\Users\Vanessa\Downloads\Wireless_18.33.0_Driver64_Win10.exe
2016-03-14 17:34 - 2016-03-14 17:39 - 100745304 _____ (Intel(R) Corporation) C:\Users\Vanessa\Downloads\Wireless_18.33.0_PROSet64_Win10.exe
2016-03-12 10:06 - 2016-03-12 10:06 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-03-11 19:30 - 2016-03-11 19:30 - 00000000 ____D C:\Users\Vanessa\AppData\Local\PeerDistRepub
2016-03-11 17:07 - 2016-03-11 17:07 - 00000000 ____D C:\ProgramData\GameHouse
2016-03-11 01:55 - 2016-03-14 17:26 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\All Users
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Vorlagen
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Startmenü
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Dokumente
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Dokumente und Einstellungen
2016-03-11 01:50 - 2016-03-14 17:27 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-03-11 01:50 - 2016-03-11 01:50 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____D C:\WINDOWS\system32\DAX2
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____D C:\Program Files\Realtek
2016-03-11 01:50 - 2016-03-10 17:01 - 00000000 ____D C:\Intel
2016-03-11 01:50 - 2016-03-04 23:48 - 00091128 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2016-03-11 01:49 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files\Intel
2016-03-11 01:48 - 2016-03-11 01:48 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2016-03-11 01:46 - 2016-03-11 12:21 - 00194272 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-11 01:46 - 2016-03-11 01:46 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-03-10 20:01 - 2016-03-10 20:01 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Macromedia
2016-03-10 20:01 - 2016-03-10 20:01 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Macromedia
2016-03-10 19:56 - 2016-03-10 19:57 - 00000000 ____D C:\Users\Vanessa\Desktop\Sicherung aller Dateien
2016-03-10 19:51 - 2016-03-14 20:50 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-03-10 19:51 - 2016-03-10 19:52 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Adobe
2016-03-10 19:51 - 2016-03-10 19:51 - 00003860 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-03-10 18:22 - 2015-12-09 04:39 - 00301728 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-03-10 18:20 - 2016-03-10 18:21 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-10 18:20 - 2016-03-10 18:20 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-10 17:27 - 2016-03-10 17:36 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Mozilla
2016-03-10 17:27 - 2016-03-10 17:27 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-03-10 17:27 - 2016-03-10 17:27 - 00001220 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-03-10 17:27 - 2016-03-10 17:27 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Mozilla
2016-03-10 17:27 - 2016-03-10 17:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-10 17:27 - 2016-03-10 17:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-03-10 17:25 - 2016-03-10 17:26 - 00242416 _____ C:\Users\Vanessa\Downloads\Firefox Setup Stub 45.0.exe
2016-03-10 17:25 - 2016-03-10 17:25 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2016-03-10 17:23 - 2016-03-10 17:23 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Comms
2016-03-10 17:13 - 2016-03-10 17:13 - 00000000 ____D C:\Users\Vanessa\Desktop\Zertifikate
2016-03-10 17:09 - 2016-03-10 17:09 - 03370713 _____ C:\Users\Vanessa\Desktop\WLan Hotzonne.pdf
2016-03-10 17:09 - 2016-03-10 17:09 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-03-10 17:07 - 2016-03-14 17:43 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-10 17:07 - 2016-03-11 17:08 - 00002393 _____ C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-03-10 17:07 - 2016-03-11 17:08 - 00000000 ___RD C:\Users\Vanessa\OneDrive
2016-03-10 17:07 - 2016-03-10 17:07 - 00000000 ____D C:\Users\Vanessa\AppData\Local\NetworkTiles
2016-03-10 17:07 - 2016-03-10 17:07 - 00000000 ____D C:\Users\Vanessa\AppData\Local\MicrosoftEdge
2016-03-10 17:06 - 2016-03-10 17:06 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-03-10 17:05 - 2016-03-10 17:05 - 00000000 ____D C:\Users\Vanessa\AppData\Local\ActiveSync
2016-03-10 17:04 - 2016-03-10 17:04 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Publishers
2016-03-10 17:03 - 2016-03-14 17:42 - 00000000 ____D C:\Users\Vanessa
2016-03-10 17:03 - 2016-03-14 17:27 - 00000000 __SHD C:\Users\Vanessa\IntelGraphicsProfiles
2016-03-10 17:03 - 2016-03-11 12:34 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-10 17:03 - 2016-03-10 17:26 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Packages
2016-03-10 17:03 - 2016-03-10 17:03 - 00000020 ___SH C:\Users\Vanessa\ntuser.ini
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Vorlagen
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Startmenü
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Netzwerkumgebung
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Lokale Einstellungen
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Eigene Dateien
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Druckumgebung
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Documents\Eigene Videos
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Documents\Eigene Musik
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Documents\Eigene Bilder
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\AppData\Local\Verlauf
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\AppData\Local\Anwendungsdaten
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Anwendungsdaten
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Adobe
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 ____D C:\Users\Vanessa\AppData\Local\VirtualStore
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 ____D C:\Users\Vanessa\AppData\Local\TileDataLayer
2016-03-10 16:57 - 2016-03-10 16:57 - 00000000 ____D C:\ProgramData\USOShared
2016-03-10 16:57 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-03-10 16:45 - 2016-03-10 16:45 - 00000000 _____ C:\Recovery.txt
2016-03-10 16:42 - 2016-03-10 16:58 - 00000000 ___DC C:\WINDOWS\Panther
2016-03-10 16:42 - 2016-03-10 16:42 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-03-10 16:42 - 2016-03-10 16:42 - 00000000 ____D C:\WINDOWS\InfusedApps
2016-03-10 16:41 - 2016-03-10 16:41 - 00000000 ____D C:\Program Files\Elantech
2016-03-10 16:40 - 2016-03-10 16:40 - 00000000 ____D C:\WINDOWS\Setup
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\OCR
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files\MSBuild
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-03-10 16:38 - 2016-03-14 17:43 - 00776766 _____ C:\WINDOWS\system32\perfh007.dat
2016-03-10 16:38 - 2016-03-14 17:43 - 00155544 _____ C:\WINDOWS\system32\perfc007.dat
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\de
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\0409
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\winrm
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\WCN
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\de
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\0409
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-03-10 16:38 - 2016-03-10 16:37 - 00305634 _____ C:\WINDOWS\system32\perfi007.dat
2016-03-10 16:38 - 2016-03-10 16:37 - 00040390 _____ C:\WINDOWS\system32\perfd007.dat
2016-03-10 16:34 - 2016-03-08 08:12 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-03-10 16:34 - 2016-03-08 08:12 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-10 16:32 - 2016-03-14 15:50 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-10 16:32 - 2016-03-14 15:50 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-10 16:32 - 2016-03-14 00:25 - 00000000 ____D C:\WINDOWS\rescache
2016-03-10 16:32 - 2016-03-11 01:55 - 00000000 ____D C:\WINDOWS\CSC
2016-03-10 16:32 - 2016-03-11 01:55 - 00000000 ____D C:\Program Files\Windows NT
2016-03-10 16:32 - 2016-03-11 01:53 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-03-10 16:32 - 2016-03-11 01:27 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 __RSD C:\WINDOWS\Media
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\Provisioning
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 16:32 - 2016-03-11 01:25 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-10 16:32 - 2016-03-11 01:25 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-10 16:32 - 2016-03-11 01:25 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-10 16:32 - 2016-03-10 17:21 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-03-10 16:32 - 2016-03-10 17:04 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-03-10 16:32 - 2016-03-10 17:04 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-03-10 16:32 - 2016-03-10 17:03 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-03-10 16:32 - 2016-03-10 16:57 - 00000000 ____D C:\WINDOWS\system32\spool
2016-03-10 16:32 - 2016-03-10 16:57 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-03-10 16:32 - 2016-03-10 16:57 - 00000000 ____D C:\ProgramData\USOPrivate
2016-03-10 16:32 - 2016-03-10 16:45 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-03-10 16:32 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-03-10 16:32 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\setup
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\Com
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\IME
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\Help
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Windows Defender
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Common Files\System
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-03-10 16:32 - 2016-03-10 16:33 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __RHD C:\Users\Public\Libraries
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\system32\Nui
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___RD C:\WINDOWS\DesktopTileResources
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Web
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Vss
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\tracing
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\TAPI
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\ras
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SystemResources
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SystemApps
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\winevt
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\ras
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\IME
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\icsxml
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\ias
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\downlevel
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\System
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SKB
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\ShellNew
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\security
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\schemas
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SchCache
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Resources
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Registration
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\PLA
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Performance
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\ModemLogs
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\L2Schemas
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\InputMethod
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Globalization
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Cursors
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Branding
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\appcompat
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\addins
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\ProgramData\Comms
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\Program Files\Common Files\Services
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\Program Files (x86)\Windows NT
2016-03-10 16:32 - 2016-03-10 16:29 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2016-03-10 16:32 - 2016-03-10 16:29 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2016-03-10 16:32 - 2016-03-10 16:29 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2016-03-10 16:32 - 2016-03-10 16:29 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2016-03-10 16:32 - 2016-03-10 16:29 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2016-03-10 16:32 - 2016-03-10 16:29 - 00015462 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-03-10 16:32 - 2016-03-10 16:29 - 00008798 _____ C:\WINDOWS\SysWOW64\icrav03.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00008798 _____ C:\WINDOWS\system32\icrav03.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2016-03-10 16:32 - 2016-03-10 16:29 - 00001988 _____ C:\WINDOWS\SysWOW64\ticrf.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00001988 _____ C:\WINDOWS\system32\ticrf.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2016-03-10 16:32 - 2016-03-10 16:29 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2016-03-10 16:32 - 2016-03-10 16:29 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2016-03-10 16:32 - 2016-03-10 16:29 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2016-03-10 16:32 - 2016-03-10 16:29 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2016-03-10 16:32 - 2016-03-10 16:29 - 00000389 _____ C:\WINDOWS\system32\AutoWorkplace.exe.config
2016-03-10 16:32 - 2016-03-10 16:29 - 00000219 _____ C:\WINDOWS\system.ini
2016-03-10 16:32 - 2016-03-10 16:29 - 00000092 _____ C:\WINDOWS\win.ini
2016-03-10 16:31 - 2016-03-14 17:43 - 00000000 ____D C:\WINDOWS\INF
2016-03-10 16:21 - 2016-03-11 17:08 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-10 16:17 - 2016-03-14 17:26 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-03-10 16:17 - 2016-03-10 16:57 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-10 16:17 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\servicing
2016-03-10 16:17 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\SMI
2016-03-10 16:17 - 2015-10-30 07:33 - 00000164 _____ C:\WINDOWS\system32\config\FP
2016-03-10 16:08 - 2016-03-10 16:45 - 00000000 ___HD C:\$SysReset
2016-03-09 08:35 - 2016-03-01 06:31 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-09 08:35 - 2016-03-01 06:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-09 08:35 - 2016-02-24 10:52 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-03-09 08:35 - 2016-02-24 10:51 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 08:35 - 2016-02-24 10:48 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-09 08:35 - 2016-02-24 10:47 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-09 08:35 - 2016-02-24 10:40 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-09 08:35 - 2016-02-24 10:34 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-09 08:35 - 2016-02-24 10:28 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-03-09 08:35 - 2016-02-24 10:15 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-03-09 08:35 - 2016-02-24 09:58 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-09 08:35 - 2016-02-24 09:54 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-03-09 08:35 - 2016-02-24 09:51 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-09 08:35 - 2016-02-24 09:50 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-03-09 08:35 - 2016-02-24 09:46 - 06607080 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-09 08:35 - 2016-02-24 09:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 08:35 - 2016-02-24 09:39 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-03-09 08:35 - 2016-02-24 09:39 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-03-09 08:35 - 2016-02-24 09:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-03-09 08:35 - 2016-02-24 09:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 08:35 - 2016-02-24 09:11 - 01997152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-09 08:35 - 2016-02-24 09:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-03-09 08:35 - 2016-02-24 09:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-03-09 08:35 - 2016-02-24 09:11 - 00652392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-03-09 08:35 - 2016-02-24 09:11 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-09 08:35 - 2016-02-24 09:11 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-09 08:35 - 2016-02-24 09:10 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 08:35 - 2016-02-24 09:10 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-09 08:35 - 2016-02-24 09:09 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-09 08:35 - 2016-02-24 09:09 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-09 08:35 - 2016-02-24 09:06 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-03-09 08:35 - 2016-02-24 08:59 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-03-09 08:35 - 2016-02-24 08:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 08:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 08:35 - 2016-02-24 08:38 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-03-09 08:35 - 2016-02-24 08:38 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 08:35 - 2016-02-24 08:37 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 08:35 - 2016-02-24 08:36 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 08:35 - 2016-02-24 08:35 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-03-09 08:35 - 2016-02-24 08:35 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-03-09 08:35 - 2016-02-24 08:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-09 08:35 - 2016-02-24 08:35 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-03-09 08:35 - 2016-02-24 08:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-09 08:35 - 2016-02-24 08:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-09 08:35 - 2016-02-24 08:31 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-03-09 08:35 - 2016-02-24 08:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-03-09 08:35 - 2016-02-24 08:28 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 08:35 - 2016-02-24 08:23 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-03-09 08:35 - 2016-02-24 08:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-09 08:35 - 2016-02-24 08:23 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 08:22 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 08:35 - 2016-02-24 08:20 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-03-09 08:35 - 2016-02-24 08:20 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-03-09 08:35 - 2016-02-24 08:20 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 08:35 - 2016-02-24 08:19 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-03-09 08:35 - 2016-02-24 08:19 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-09 08:35 - 2016-02-24 08:15 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-03-09 08:35 - 2016-02-24 08:14 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-03-09 08:35 - 2016-02-24 08:13 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 08:35 - 2016-02-24 08:12 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-03-09 08:35 - 2016-02-24 08:12 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 08:35 - 2016-02-24 08:10 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-03-09 08:35 - 2016-02-24 08:09 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 08:35 - 2016-02-24 08:09 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-03-09 08:35 - 2016-02-24 08:07 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 08:35 - 2016-02-24 08:05 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-03-09 08:35 - 2016-02-24 08:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-03-09 08:35 - 2016-02-24 08:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 08:35 - 2016-02-24 08:01 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 08:35 - 2016-02-24 08:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 08:35 - 2016-02-24 08:01 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-03-09 08:35 - 2016-02-24 08:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 08:35 - 2016-02-24 07:59 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 08:35 - 2016-02-24 07:59 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 08:35 - 2016-02-24 07:59 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-03-09 08:35 - 2016-02-24 07:58 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-09 08:35 - 2016-02-24 07:55 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-03-09 08:35 - 2016-02-24 07:55 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 08:35 - 2016-02-24 07:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-03-09 08:35 - 2016-02-24 07:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 08:35 - 2016-02-24 07:54 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-09 08:35 - 2016-02-24 07:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 08:35 - 2016-02-24 07:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 07:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-03-09 08:35 - 2016-02-24 07:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-03-09 08:35 - 2016-02-24 07:52 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-09 08:35 - 2016-02-24 07:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-03-09 08:35 - 2016-02-24 07:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-03-09 08:35 - 2016-02-24 07:49 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-03-09 08:35 - 2016-02-24 07:47 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-03-09 08:35 - 2016-02-24 07:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-03-09 08:35 - 2016-02-24 07:43 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-03-09 08:35 - 2016-02-24 07:43 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 08:35 - 2016-02-24 07:42 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-03-09 08:35 - 2016-02-24 07:42 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-03-09 08:35 - 2016-02-24 07:41 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 08:35 - 2016-02-24 07:41 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 08:35 - 2016-02-24 07:40 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-09 08:35 - 2016-02-24 07:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-03-09 08:35 - 2016-02-24 07:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 07:39 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-09 08:35 - 2016-02-24 07:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2016-03-09 08:35 - 2016-02-24 07:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-03-09 08:35 - 2016-02-24 07:36 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 08:35 - 2016-02-24 07:34 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-03-09 08:35 - 2016-02-24 07:34 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-03-09 08:35 - 2016-02-24 07:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-03-09 08:35 - 2016-02-24 07:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-03-09 08:35 - 2016-02-24 07:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
2016-03-09 08:35 - 2016-02-24 07:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2016-03-09 08:35 - 2016-02-24 07:28 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 08:35 - 2016-02-24 07:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-03-09 08:35 - 2016-02-24 07:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2016-03-09 08:35 - 2016-02-24 07:25 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 08:35 - 2016-02-24 07:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2016-03-09 08:35 - 2016-02-24 07:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2016-03-09 08:35 - 2016-02-24 07:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 08:35 - 2016-02-24 07:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-03-09 08:35 - 2016-02-24 07:18 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-09 08:35 - 2016-02-24 07:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-03-09 08:35 - 2016-02-24 07:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2016-03-09 08:35 - 2016-02-24 07:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-03-09 08:35 - 2016-02-24 07:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-09 08:35 - 2016-02-24 07:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-03-09 08:35 - 2016-02-24 07:11 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-09 08:35 - 2016-02-24 07:09 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-03-09 08:35 - 2016-02-24 07:09 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-03-09 08:35 - 2016-02-24 07:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-03-09 08:35 - 2016-02-24 07:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-09 08:35 - 2016-02-24 07:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-09 08:35 - 2016-02-24 07:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-03-09 08:35 - 2016-02-24 07:07 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-03-09 08:35 - 2016-02-24 07:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-09 08:35 - 2016-02-24 07:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-03-09 08:35 - 2016-02-24 07:01 - 01831936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 08:35 - 2016-02-24 07:00 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-09 08:35 - 2016-02-24 07:00 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-03-09 08:35 - 2016-02-24 06:57 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 08:35 - 2016-02-24 06:55 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 08:35 - 2016-02-24 06:43 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-03-09 08:35 - 2016-02-24 06:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-09 08:35 - 2016-02-24 06:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2016-03-09 08:35 - 2016-02-24 06:20 - 22376960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-09 08:35 - 2016-02-24 06:18 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-09 08:35 - 2016-02-24 06:12 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-09 08:35 - 2016-02-24 06:12 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-03-09 08:35 - 2016-02-24 06:10 - 24600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-09 08:35 - 2016-02-24 06:09 - 06972416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 08:35 - 2016-02-24 06:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-09 08:35 - 2016-02-24 06:03 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-09 08:35 - 2016-02-24 05:59 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-03-09 08:35 - 2016-02-24 05:55 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-03-06 18:20 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-03-06 18:20 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-06 18:20 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-03-06 18:20 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-06 18:20 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-06 18:20 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-05 13:35 - 2016-02-23 12:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-05 13:35 - 2016-02-23 11:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-05 13:35 - 2016-02-23 11:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-05 13:35 - 2016-02-23 11:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-05 13:35 - 2016-02-23 11:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-05 13:35 - 2016-02-23 11:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-05 13:35 - 2016-02-23 10:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-05 13:35 - 2016-02-23 10:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-05 13:35 - 2016-02-23 10:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-03-05 13:35 - 2016-02-23 10:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-03-05 13:35 - 2016-02-23 10:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-05 13:35 - 2016-02-23 08:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-05 13:35 - 2016-02-23 08:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-05 13:35 - 2016-02-23 07:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-05 13:35 - 2016-02-23 07:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-03-05 13:35 - 2016-02-23 07:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-05 13:35 - 2016-02-23 07:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-03-05 13:35 - 2016-02-23 07:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-05 13:35 - 2016-02-23 07:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-05 13:35 - 2016-02-23 07:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-05 13:35 - 2016-02-09 04:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-03-05 13:35 - 2016-02-09 04:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-05 13:35 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-03-05 13:35 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-03-05 13:35 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-03-05 13:35 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-03-05 13:35 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-03-05 13:35 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-03-05 13:35 - 2016-01-16 07:21 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-03-05 13:35 - 2016-01-16 06:45 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-03-05 13:35 - 2016-01-16 06:38 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-03-05 13:35 - 2016-01-16 06:35 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-03-05 13:35 - 2016-01-16 06:31 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-03-05 13:35 - 2016-01-16 06:29 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-03-05 13:35 - 2016-01-16 06:24 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-03-05 13:35 - 2016-01-16 06:21 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-03-05 13:35 - 2016-01-16 06:20 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-03-05 13:35 - 2016-01-16 06:20 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-03-05 13:35 - 2016-01-16 06:18 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-03-05 13:35 - 2016-01-16 06:17 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-03-05 13:35 - 2016-01-16 06:16 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-03-05 13:35 - 2016-01-16 06:15 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-03-05 13:35 - 2016-01-05 03:45 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-03-05 13:35 - 2016-01-05 03:42 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-03-05 13:35 - 2016-01-05 03:37 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-03-05 13:35 - 2016-01-05 03:33 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-03-05 13:35 - 2016-01-05 02:43 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-03-05 13:35 - 2015-12-07 05:57 - 00973664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-03-05 13:35 - 2015-12-07 05:55 - 01281376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-03-05 13:35 - 2015-12-07 05:10 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-03-05 13:35 - 2015-11-24 09:49 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-03-05 13:35 - 2015-11-24 08:57 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-03-05 13:35 - 2015-11-24 08:29 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-03-05 13:35 - 2015-11-22 10:54 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2016-03-05 13:35 - 2015-11-22 10:42 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2016-03-05 13:35 - 2015-11-22 10:34 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-03-05 13:35 - 2015-11-22 10:27 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-03-05 13:35 - 2015-11-22 10:26 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-03-05 13:35 - 2015-11-22 10:20 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-03-05 13:35 - 2015-11-22 10:17 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-03-05 13:35 - 2015-11-13 07:43 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-03-05 13:35 - 2015-11-13 06:39 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-03-05 13:35 - 2015-11-13 06:19 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-03-05 13:34 - 2016-02-23 12:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-05 13:34 - 2016-02-23 12:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-05 13:34 - 2016-02-23 12:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-05 13:34 - 2016-02-23 12:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-05 13:34 - 2016-02-23 12:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-05 13:34 - 2016-02-23 12:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-05 13:34 - 2016-02-23 12:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-05 13:34 - 2016-02-23 12:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-05 13:34 - 2016-02-23 12:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-05 13:34 - 2016-02-23 11:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-03-05 13:34 - 2016-02-23 11:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-03-05 13:34 - 2016-02-23 11:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-05 13:34 - 2016-02-23 11:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-05 13:34 - 2016-02-23 11:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-05 13:34 - 2016-02-23 11:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-05 13:34 - 2016-02-23 11:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-05 13:34 - 2016-02-23 11:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 11:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-05 13:34 - 2016-02-23 11:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-05 13:34 - 2016-02-23 11:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-05 13:34 - 2016-02-23 11:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-05 13:34 - 2016-02-23 11:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-03-05 13:34 - 2016-02-23 11:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-05 13:34 - 2016-02-23 10:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-05 13:34 - 2016-02-23 10:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-03-05 13:34 - 2016-02-23 10:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-03-05 13:34 - 2016-02-23 10:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-05 13:34 - 2016-02-23 10:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-05 13:34 - 2016-02-23 10:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-05 13:34 - 2016-02-23 10:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-05 13:34 - 2016-02-23 10:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-05 13:34 - 2016-02-23 10:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-05 13:34 - 2016-02-23 10:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-05 13:34 - 2016-02-23 10:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-05 13:34 - 2016-02-23 10:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-05 13:34 - 2016-02-23 10:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-05 13:34 - 2016-02-23 10:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-05 13:34 - 2016-02-23 10:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-05 13:34 - 2016-02-23 10:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-05 13:34 - 2016-02-23 09:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-05 13:34 - 2016-02-23 09:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-03-05 13:34 - 2016-02-23 09:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-05 13:34 - 2016-02-23 09:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-05 13:34 - 2016-02-23 09:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-05 13:34 - 2016-02-23 09:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2016-03-05 13:34 - 2016-02-23 09:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-05 13:34 - 2016-02-23 09:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-05 13:34 - 2016-02-23 09:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-05 13:34 - 2016-02-23 09:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-05 13:34 - 2016-02-23 09:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-03-05 13:34 - 2016-02-23 09:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-05 13:34 - 2016-02-23 09:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-05 13:34 - 2016-02-23 09:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-05 13:34 - 2016-02-23 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-05 13:34 - 2016-02-23 09:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-05 13:34 - 2016-02-23 09:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-05 13:34 - 2016-02-23 09:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-05 13:34 - 2016-02-23 09:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-05 13:34 - 2016-02-23 09:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-05 13:34 - 2016-02-23 09:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-05 13:34 - 2016-02-23 09:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-05 13:34 - 2016-02-23 09:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-05 13:34 - 2016-02-23 09:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-05 13:34 - 2016-02-23 09:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-05 13:34 - 2016-02-23 09:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-05 13:34 - 2016-02-23 09:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-05 13:34 - 2016-02-23 09:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-05 13:34 - 2016-02-23 09:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-05 13:34 - 2016-02-23 09:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-05 13:34 - 2016-02-23 09:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-05 13:34 - 2016-02-23 09:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-05 13:34 - 2016-02-23 09:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-05 13:34 - 2016-02-23 09:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-05 13:34 - 2016-02-23 09:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-05 13:34 - 2016-02-23 09:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-05 13:34 - 2016-02-23 09:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-05 13:34 - 2016-02-23 09:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-03-05 13:34 - 2016-02-23 09:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-05 13:34 - 2016-02-23 09:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-05 13:34 - 2016-02-23 09:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-05 13:34 - 2016-02-23 09:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-05 13:34 - 2016-02-23 09:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-05 13:34 - 2016-02-23 09:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-05 13:34 - 2016-02-23 09:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-03-05 13:34 - 2016-02-23 08:58 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-03-05 13:34 - 2016-02-23 08:58 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-05 13:34 - 2016-02-23 08:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-05 13:34 - 2016-02-23 08:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-03-05 13:34 - 2016-02-23 08:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-03-05 13:34 - 2016-02-23 08:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-03-05 13:34 - 2016-02-23 08:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-03-05 13:34 - 2016-02-23 08:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2016-03-05 13:34 - 2016-02-23 08:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-03-05 13:34 - 2016-02-23 08:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-03-05 13:34 - 2016-02-23 08:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-03-05 13:34 - 2016-02-23 08:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-03-05 13:34 - 2016-02-23 08:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 08:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-05 13:34 - 2016-02-23 08:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-03-05 13:34 - 2016-02-23 08:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-03-05 13:34 - 2016-02-23 08:30 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-03-05 13:34 - 2016-02-23 08:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-03-05 13:34 - 2016-02-23 08:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-05 13:34 - 2016-02-23 08:28 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-03-05 13:34 - 2016-02-23 08:28 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-03-05 13:34 - 2016-02-23 08:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-05 13:34 - 2016-02-23 08:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-03-05 13:34 - 2016-02-23 08:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-03-05 13:34 - 2016-02-23 08:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-03-05 13:34 - 2016-02-23 08:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-03-05 13:34 - 2016-02-23 08:14 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-05 13:34 - 2016-02-23 08:11 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-05 13:34 - 2016-02-23 08:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-03-05 13:34 - 2016-02-23 08:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-03-05 13:34 - 2016-02-23 07:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-03-05 13:34 - 2016-02-23 07:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-03-05 13:34 - 2016-02-23 07:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-03-05 13:34 - 2016-02-23 07:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-05 13:34 - 2016-02-23 07:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-03-05 13:34 - 2016-02-23 07:42 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-03-05 13:34 - 2016-02-23 07:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-03-05 13:34 - 2016-02-23 07:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-03-05 13:34 - 2016-02-23 07:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-03-05 13:34 - 2016-02-23 07:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-03-05 13:34 - 2016-02-23 07:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-03-05 13:34 - 2016-02-23 07:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-03-05 13:34 - 2016-02-23 07:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-03-05 13:34 - 2016-02-09 05:28 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-03-05 13:34 - 2016-02-09 05:13 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-03-05 13:34 - 2016-02-09 04:24 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-03-05 13:34 - 2016-02-09 04:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-03-05 13:34 - 2016-02-09 04:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-03-05 13:34 - 2016-02-09 04:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-05 13:34 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-03-05 13:34 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-03-05 13:34 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-03-05 13:34 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-03-05 13:34 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-03-05 13:34 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-03-05 13:34 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-03-05 13:34 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-03-05 13:34 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-03-05 13:34 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-03-05 13:34 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-03-05 13:34 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-03-05 13:34 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-03-05 13:34 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-03-05 13:34 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-03-05 13:34 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-03-05 13:34 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-03-05 13:34 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-03-05 13:34 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-03-05 13:34 - 2016-01-16 07:37 - 00202472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-03-05 13:34 - 2016-01-16 07:24 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-03-05 13:34 - 2016-01-16 07:23 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-03-05 13:34 - 2016-01-16 07:20 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-03-05 13:34 - 2016-01-16 07:20 - 00431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-03-05 13:34 - 2016-01-16 07:20 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-03-05 13:34 - 2016-01-16 07:19 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-03-05 13:34 - 2016-01-16 07:12 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-03-05 13:34 - 2016-01-16 07:09 - 01089880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-03-05 13:34 - 2016-01-16 07:08 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-03-05 13:34 - 2016-01-16 07:08 - 00440152 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-03-05 13:34 - 2016-01-16 06:46 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-03-05 13:34 - 2016-01-16 06:44 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-03-05 13:34 - 2016-01-16 06:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-03-05 13:34 - 2016-01-16 06:41 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-03-05 13:34 - 2016-01-16 06:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2016-03-05 13:34 - 2016-01-16 06:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2016-03-05 13:34 - 2016-01-16 06:39 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll
2016-03-05 13:34 - 2016-01-16 06:38 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-03-05 13:34 - 2016-01-16 06:38 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-03-05 13:34 - 2016-01-16 06:37 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-03-05 13:34 - 2016-01-16 06:36 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2016-03-05 13:34 - 2016-01-16 06:36 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-03-05 13:34 - 2016-01-16 06:36 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-03-05 13:34 - 2016-01-16 06:35 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-03-05 13:34 - 2016-01-16 06:34 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-03-05 13:34 - 2016-01-16 06:34 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2016-03-05 13:34 - 2016-01-16 06:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2016-03-05 13:34 - 2016-01-16 06:33 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-03-05 13:34 - 2016-01-16 06:33 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-03-05 13:34 - 2016-01-16 06:32 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-03-05 13:34 - 2016-01-16 06:32 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2016-03-05 13:34 - 2016-01-16 06:31 - 00851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-03-05 13:34 - 2016-01-16 06:31 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-03-05 13:34 - 2016-01-16 06:31 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-03-05 13:34 - 2016-01-16 06:31 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2016-03-05 13:34 - 2016-01-16 06:30 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-03-05 13:34 - 2016-01-16 06:30 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-03-05 13:34 - 2016-01-16 06:30 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll
2016-03-05 13:34 - 2016-01-16 06:28 - 00884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2016-03-05 13:34 - 2016-01-16 06:28 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll
2016-03-05 13:34 - 2016-01-16 06:27 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-03-05 13:34 - 2016-01-16 06:26 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-03-05 13:34 - 2016-01-16 06:26 - 00260608 _____ C:\WINDOWS\system32\MTFServer.dll
2016-03-05 13:34 - 2016-01-16 06:25 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2016-03-05 13:34 - 2016-01-16 06:25 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-03-05 13:34 - 2016-01-16 06:24 - 00613888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-03-05 13:34 - 2016-01-16 06:24 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-03-05 13:34 - 2016-01-16 06:24 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-03-05 13:34 - 2016-01-16 06:23 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-03-05 13:34 - 2016-01-16 06:23 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-03-05 13:34 - 2016-01-16 06:20 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2016-03-05 13:34 - 2016-01-16 06:19 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-03-05 13:34 - 2016-01-16 06:19 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-03-05 13:34 - 2016-01-16 06:16 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2016-03-05 13:34 - 2016-01-16 06:11 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-03-05 13:34 - 2016-01-05 03:50 - 00671472 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2016-03-05 13:34 - 2016-01-05 03:48 - 00499432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2016-03-05 13:34 - 2016-01-05 03:37 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-03-05 13:34 - 2016-01-05 03:37 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-03-05 13:34 - 2016-01-05 03:37 - 00234504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2016-03-05 13:34 - 2016-01-05 03:33 - 00701384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-03-05 13:34 - 2016-01-05 03:33 - 00208176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2016-03-05 13:34 - 2016-01-05 03:33 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-03-05 13:34 - 2016-01-05 03:27 - 01594408 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-03-05 13:34 - 2016-01-05 03:23 - 01804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-03-05 13:34 - 2016-01-05 03:23 - 01309376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-03-05 13:34 - 2016-01-05 03:23 - 00786696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2016-03-05 13:34 - 2016-01-05 03:23 - 00119320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2016-03-05 13:34 - 2016-01-05 03:21 - 01371792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-03-05 13:34 - 2016-01-05 03:17 - 00695752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2016-03-05 13:34 - 2016-01-05 03:16 - 00100160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL
2016-03-05 13:34 - 2016-01-05 02:57 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-03-05 13:34 - 2016-01-05 02:57 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2016-03-05 13:34 - 2016-01-05 02:56 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-03-05 13:34 - 2016-01-05 02:54 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys
2016-03-05 13:34 - 2016-01-05 02:53 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2016-03-05 13:34 - 2016-01-05 02:50 - 00644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-03-05 13:34 - 2016-01-05 02:49 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2016-03-05 13:34 - 2016-01-05 02:49 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-03-05 13:34 - 2016-01-05 02:49 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll
2016-03-05 13:34 - 2016-01-05 02:48 - 01009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2016-03-05 13:34 - 2016-01-05 02:48 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-03-05 13:34 - 2016-01-05 02:48 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2016-03-05 13:34 - 2016-01-05 02:47 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-03-05 13:34 - 2016-01-05 02:47 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-03-05 13:34 - 2016-01-05 02:47 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2016-03-05 13:34 - 2016-01-05 02:45 - 00678912 _____ (Microsoft Corporation)
         
__________________

Geändert von ViviPC (14.03.2016 um 21:50 Uhr) Grund: Logdatei fehlerhaft kopiert

Alt 14.03.2016, 21:52   #4
ViviPC
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



FRST.txt-Teil 2
Code:
ATTFilter
C:\WINDOWS\system32\qedit.dll
2016-03-05 13:34 - 2016-01-05 02:45 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-03-05 13:34 - 2016-01-05 02:44 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx
2016-03-05 13:34 - 2016-01-05 02:43 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-03-05 13:34 - 2016-01-05 02:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-03-05 13:34 - 2016-01-05 02:41 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2016-03-05 13:34 - 2016-01-05 02:41 - 00558592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-03-05 13:34 - 2016-01-05 02:40 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL
2016-03-05 13:34 - 2016-01-05 02:40 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommon.dll
2016-03-05 13:34 - 2016-01-05 02:39 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-03-05 13:34 - 2016-01-05 02:39 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-03-05 13:34 - 2016-01-05 02:39 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2016-03-05 13:34 - 2016-01-05 02:38 - 00389120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-03-05 13:34 - 2016-01-05 02:36 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2016-03-05 13:34 - 2016-01-05 02:36 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-03-05 13:34 - 2015-12-07 05:49 - 00412512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-03-05 13:34 - 2015-12-07 05:48 - 01092456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00526856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00462760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00337840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-03-05 13:34 - 2015-12-07 05:47 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-03-05 13:34 - 2015-12-07 05:45 - 00264544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-03-05 13:34 - 2015-12-07 05:15 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-03-05 13:34 - 2015-12-07 05:09 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-03-05 13:34 - 2015-12-07 05:07 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-03-05 13:34 - 2015-12-07 05:06 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-03-05 13:34 - 2015-12-07 05:06 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-03-05 13:34 - 2015-12-07 05:05 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-03-05 13:34 - 2015-12-07 05:04 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-03-05 13:34 - 2015-12-07 05:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-03-05 13:34 - 2015-12-07 05:02 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-03-05 13:34 - 2015-12-07 05:01 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-03-05 13:34 - 2015-12-07 05:00 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-03-05 13:34 - 2015-12-07 04:59 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-03-05 13:34 - 2015-12-07 04:59 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-03-05 13:34 - 2015-12-07 04:59 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-03-05 13:34 - 2015-12-07 04:58 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-03-05 13:34 - 2015-12-07 04:57 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-03-05 13:34 - 2015-12-07 04:55 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-03-05 13:34 - 2015-12-07 04:51 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-03-05 13:34 - 2015-12-07 04:45 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-03-05 13:34 - 2015-12-07 04:45 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-03-05 13:34 - 2015-12-07 04:43 - 00931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2016-03-05 13:34 - 2015-12-07 04:39 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-03-05 13:34 - 2015-12-07 04:38 - 00871936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2016-03-05 13:34 - 2015-12-07 04:32 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-03-05 13:34 - 2015-11-24 11:26 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-03-05 13:34 - 2015-11-24 10:37 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2016-03-05 13:34 - 2015-11-24 10:26 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-03-05 13:34 - 2015-11-24 10:19 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-03-05 13:34 - 2015-11-24 10:12 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2016-03-05 13:34 - 2015-11-24 09:52 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-03-05 13:34 - 2015-11-24 09:14 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2016-03-05 13:34 - 2015-11-24 08:59 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-03-05 13:34 - 2015-11-24 08:04 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-03-05 13:34 - 2015-11-22 11:41 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-03-05 13:34 - 2015-11-22 11:34 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2016-03-05 13:34 - 2015-11-22 11:33 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2016-03-05 13:34 - 2015-11-22 11:33 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-03-05 13:34 - 2015-11-22 11:33 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll
2016-03-05 13:34 - 2015-11-22 11:30 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-03-05 13:34 - 2015-11-22 11:25 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2016-03-05 13:34 - 2015-11-22 10:55 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2016-03-05 13:34 - 2015-11-22 10:54 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-03-05 13:34 - 2015-11-22 10:50 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2016-03-05 13:34 - 2015-11-22 10:43 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2016-03-05 13:34 - 2015-11-22 10:43 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-03-05 13:34 - 2015-11-22 10:43 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll
2016-03-05 13:34 - 2015-11-22 10:42 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2016-03-05 13:34 - 2015-11-22 10:39 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-03-05 13:34 - 2015-11-22 10:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-03-05 13:34 - 2015-11-22 10:38 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll
2016-03-05 13:34 - 2015-11-22 10:37 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-03-05 13:34 - 2015-11-22 10:37 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-03-05 13:34 - 2015-11-22 10:36 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2016-03-05 13:34 - 2015-11-22 10:32 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-03-05 13:34 - 2015-11-22 10:31 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2016-03-05 13:34 - 2015-11-22 10:31 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-03-05 13:34 - 2015-11-22 10:28 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-03-05 13:34 - 2015-11-22 10:27 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-03-05 13:34 - 2015-11-22 10:26 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-03-05 13:34 - 2015-11-22 10:26 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2016-03-05 13:34 - 2015-11-22 10:26 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-03-05 13:34 - 2015-11-22 10:18 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-03-05 13:34 - 2015-11-22 10:18 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-03-05 13:34 - 2015-11-22 10:11 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-03-05 13:34 - 2015-11-21 06:44 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2016-03-05 13:34 - 2015-11-13 07:55 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2016-03-05 13:34 - 2015-11-13 07:51 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2016-03-05 13:34 - 2015-11-13 07:51 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-03-05 13:34 - 2015-11-13 07:51 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-03-05 13:34 - 2015-11-13 07:43 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2016-03-05 13:34 - 2015-11-13 07:43 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-03-05 13:34 - 2015-11-13 07:42 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-03-05 13:34 - 2015-11-13 07:42 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2016-03-05 13:34 - 2015-11-13 07:33 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-03-05 13:34 - 2015-11-13 07:33 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2016-03-05 13:34 - 2015-11-13 07:33 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-03-05 13:34 - 2015-11-13 07:32 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-03-05 13:34 - 2015-11-13 07:21 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-03-05 13:34 - 2015-11-13 07:21 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2016-03-05 13:34 - 2015-11-13 07:21 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2016-03-05 13:34 - 2015-11-13 07:21 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-03-05 13:34 - 2015-11-13 07:09 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2016-03-05 13:34 - 2015-11-13 06:58 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-03-05 13:34 - 2015-11-13 06:57 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-03-05 13:34 - 2015-11-05 13:05 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2016-03-05 13:34 - 2015-11-05 11:25 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2016-03-05 13:34 - 2015-11-05 10:10 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-03-05 13:34 - 2015-11-05 09:15 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-03-05 13:33 - 2016-02-23 10:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-05 13:33 - 2016-02-23 10:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-05 13:33 - 2016-02-23 10:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-03-05 13:33 - 2016-02-23 09:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-03-05 13:33 - 2016-02-23 09:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-03-05 13:33 - 2016-02-23 09:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-03-05 13:33 - 2016-02-23 09:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-03-05 13:33 - 2016-02-23 09:48 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-03-05 13:33 - 2016-02-23 09:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-05 13:33 - 2016-02-23 09:32 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-03-05 13:33 - 2016-02-23 09:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-03-05 13:33 - 2016-02-23 09:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-03-05 13:33 - 2016-02-23 09:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-03-05 13:33 - 2016-02-23 08:58 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-05 13:33 - 2016-02-23 08:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-03-05 13:33 - 2016-02-23 08:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-03-05 13:33 - 2016-02-23 08:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-03-05 13:33 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-03-05 13:33 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-03-05 13:33 - 2016-01-16 06:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2016-03-05 13:33 - 2016-01-16 06:44 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2016-03-05 13:33 - 2016-01-16 06:43 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll
2016-03-05 13:33 - 2016-01-16 06:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2016-03-05 13:33 - 2016-01-16 06:40 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2016-03-05 13:33 - 2016-01-16 06:38 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2016-03-05 13:33 - 2016-01-16 06:36 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll
2016-03-05 13:33 - 2016-01-16 06:35 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2016-03-05 13:33 - 2016-01-16 06:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll
2016-03-05 13:33 - 2016-01-16 06:30 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2016-03-05 13:33 - 2016-01-05 02:52 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-03-05 13:33 - 2016-01-05 02:51 - 00472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-03-05 13:33 - 2016-01-05 02:51 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-03-05 13:33 - 2016-01-05 02:49 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-03-05 13:33 - 2016-01-05 02:42 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-03-05 13:33 - 2015-12-07 05:15 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll
2016-03-05 13:33 - 2015-12-07 05:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-03-05 13:33 - 2015-12-07 05:07 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-03-05 13:33 - 2015-12-07 05:05 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundTransferHost.exe
2016-03-05 13:33 - 2015-12-07 05:01 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe
2016-03-05 13:33 - 2015-11-24 11:01 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-03-05 13:33 - 2015-11-24 10:54 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2016-03-05 13:33 - 2015-11-24 10:53 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-03-05 13:33 - 2015-11-24 10:45 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2016-03-05 13:33 - 2015-11-24 09:54 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2016-03-05 13:33 - 2015-11-22 11:00 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-03-05 13:33 - 2015-11-22 11:00 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-03-05 13:33 - 2015-11-22 10:57 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-03-05 13:33 - 2015-11-22 10:57 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll
2016-03-05 13:33 - 2015-11-22 10:57 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-03-05 13:33 - 2015-11-22 10:57 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-03-05 13:33 - 2015-11-22 10:56 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-03-05 13:33 - 2015-11-22 10:56 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-03-05 13:33 - 2015-11-22 10:56 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll
2016-03-05 13:33 - 2015-11-22 10:56 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll
2016-03-05 13:33 - 2015-11-22 10:55 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-03-05 13:33 - 2015-11-22 10:52 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2016-03-05 13:33 - 2015-11-22 10:52 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-03-05 13:33 - 2015-11-22 10:51 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-03-05 13:33 - 2015-11-22 10:51 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-03-05 13:33 - 2015-11-22 10:51 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-03-05 13:33 - 2015-11-22 10:51 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-03-05 13:33 - 2015-11-22 10:49 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-03-05 13:33 - 2015-11-22 10:49 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2016-03-05 13:33 - 2015-11-22 10:48 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-03-05 13:33 - 2015-11-22 10:44 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-03-05 13:33 - 2015-11-22 10:44 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-03-05 13:33 - 2015-11-22 10:42 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-03-05 13:33 - 2015-11-22 10:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-03-05 13:33 - 2015-11-22 10:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-03-05 13:33 - 2015-11-22 10:41 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-03-05 13:33 - 2015-11-22 10:40 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-03-05 13:33 - 2015-11-22 10:40 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-03-05 13:33 - 2015-11-22 10:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2016-03-05 13:33 - 2015-11-22 10:39 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-03-05 13:33 - 2015-11-22 10:39 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-03-05 13:33 - 2015-11-22 10:39 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-03-05 13:33 - 2015-11-22 10:34 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-03-05 13:33 - 2015-11-22 10:33 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll
2016-03-05 13:33 - 2015-11-22 10:29 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-03-05 13:33 - 2015-11-22 10:28 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-03-05 13:33 - 2015-11-22 10:28 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-03-05 13:33 - 2015-11-22 10:27 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-03-05 13:33 - 2015-11-22 10:27 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-03-05 13:33 - 2015-11-22 10:24 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-03-05 13:33 - 2015-11-13 07:07 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-03-05 13:33 - 2015-11-13 07:06 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-03-05 13:33 - 2015-11-13 07:05 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-03-05 13:33 - 2015-11-13 07:05 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-03-05 13:33 - 2015-11-13 07:05 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll
2016-03-05 13:33 - 2015-11-13 07:05 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2016-03-05 13:33 - 2015-11-13 07:04 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-03-05 13:33 - 2015-11-13 07:04 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2016-03-05 13:33 - 2015-11-13 07:03 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2016-03-05 13:33 - 2015-11-13 07:00 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-03-05 13:33 - 2015-11-13 06:56 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-03-05 13:33 - 2015-11-13 06:40 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll
2016-03-05 13:33 - 2015-11-13 06:34 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-03-05 13:33 - 2015-11-13 06:30 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-03-05 13:33 - 2015-11-05 11:08 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2016-03-05 13:33 - 2015-11-05 11:08 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2016-03-05 13:33 - 2015-11-05 10:03 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2016-03-05 13:33 - 2015-11-05 10:02 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 32420536 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 31495336 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 29092864 _____ (Intel Corporation) C:\WINDOWS\system32\common_clang64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 27346568 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 26071248 _____ (Intel Corporation) C:\WINDOWS\system32\igd11dxva64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 19852800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\common_clang32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 15335848 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 14419416 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 13467648 _____ (Intel Corporation) C:\WINDOWS\system32\ig8icd64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 13326392 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 11731000 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 10210816 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig8icd32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 07876072 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys
2016-03-04 23:48 - 2016-03-04 23:48 - 06536480 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 05799386 _____ C:\WINDOWS\system32\igdclbif.bin
2016-03-04 23:48 - 2016-03-04 23:48 - 05677056 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 05254144 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 05003944 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 04634112 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 04163072 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 04146264 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 04018456 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 03961344 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmcl32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 02813952 _____ C:\WINDOWS\system32\iglhxa64.cpa
2016-03-04 23:48 - 2016-03-04 23:48 - 02133168 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 02062336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01792376 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01789752 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01654712 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01568256 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01159168 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01018344 _____ C:\WINDOWS\system32\igfxSDK.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00955368 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00951784 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00826090 _____ C:\WINDOWS\system32\DisplayAudiox64.cab
2016-03-04 23:48 - 2016-03-04 23:48 - 00742400 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00641530 _____ C:\WINDOWS\system32\FilmModeDetection.wmv
2016-03-04 23:48 - 2016-03-04 23:48 - 00624128 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00614376 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCpHDCPSvc.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00527848 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00511260 _____ C:\WINDOWS\system32\cp_resources.bin
2016-03-04 23:48 - 2016-03-04 23:48 - 00458216 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00430592 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00422552 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00421464 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00407552 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00403671 _____ C:\WINDOWS\system32\ImageStabilization.wmv
2016-03-04 23:48 - 2016-03-04 23:48 - 00394216 _____ C:\WINDOWS\system32\igfxTray.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00381440 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00379904 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00378368 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00375173 _____ C:\WINDOWS\system32\ColorImageEnhancement.wmv
2016-03-04 23:48 - 2016-03-04 23:48 - 00369944 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00367832 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00365032 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00346088 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00341488 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCComp64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00309752 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00301392 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00292840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00285856 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00264704 _____ C:\WINDOWS\system32\igfxCPL.cpl
2016-03-04 23:48 - 2016-03-04 23:48 - 00260584 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00257536 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00246776 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00231312 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00228328 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00223720 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00223208 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00216576 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00212072 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00198144 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4364.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00194872 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00184320 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00171024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00166376 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00164352 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00102912 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00095232 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00094720 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00092160 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00091128 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00086528 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00075776 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00045952 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00044024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00041296 _____ C:\WINDOWS\system32\iglhxc64_dev.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00040931 _____ C:\WINDOWS\system32\iglhxo64_dev.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00040343 _____ C:\WINDOWS\system32\iglhxo64.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00040316 _____ C:\WINDOWS\system32\iglhxc64.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00039798 _____ C:\WINDOWS\system32\iglhxg64_dev.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00039658 _____ C:\WINDOWS\system32\iglhxg64.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00020480 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00020480 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00018936 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00004826 _____ C:\WINDOWS\system32\iglhxs64.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00001125 _____ C:\WINDOWS\system32\iglhxa64.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00000935 _____ C:\WINDOWS\system32\Gfxv4_0.exe.config
2016-03-04 23:48 - 2016-03-04 23:48 - 00000935 _____ C:\WINDOWS\system32\DPTopologyApp.exe.config
2016-03-04 23:48 - 2016-03-04 23:48 - 00000895 _____ C:\WINDOWS\system32\Gfxv2_0.exe.config
2016-03-04 23:48 - 2016-03-04 23:48 - 00000895 _____ C:\WINDOWS\system32\DPTopologyAppv2_0.exe.config
2016-03-04 20:36 - 2016-03-04 20:36 - 00122160 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudbus.sys
2016-03-04 20:36 - 2016-03-04 20:36 - 00057648 _____ (QUALCOMM Incorporated) C:\WINDOWS\system32\Drivers\ssudqcfilter.sys
2016-03-04 20:03 - 2016-03-04 20:03 - 05062384 _____ (Realtek semiconductor) C:\WINDOWS\RTFTrack.exe
2016-03-04 20:03 - 2016-03-04 20:03 - 03069680 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\rtsuvc.sys
2016-03-04 20:03 - 2016-03-04 20:03 - 02637552 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtCamU64.exe
2016-03-04 20:03 - 2016-03-04 20:03 - 01982192 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsDecode.dll
2016-03-04 20:03 - 2016-03-04 20:03 - 01157563 _____ C:\WINDOWS\FTDataP.xml
2016-03-04 20:03 - 2016-03-04 20:03 - 00946032 _____ C:\WINDOWS\FTData.xml
2016-03-04 20:03 - 2016-03-04 20:03 - 00817241 _____ C:\WINDOWS\FTDataR1.xml
2016-03-04 20:03 - 2016-03-04 20:03 - 00817191 _____ C:\WINDOWS\FTDataR0.xml
2016-03-04 20:03 - 2016-03-04 20:03 - 00557824 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtCamX64.dll
2016-03-04 20:03 - 2016-03-04 20:03 - 00497392 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RtCamX.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 72123392 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2016-03-04 18:39 - 2016-03-04 18:39 - 07172920 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 07096192 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 06264640 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 05804772 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2016-03-04 18:39 - 2016-03-04 18:39 - 04589312 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2016-03-04 18:39 - 2016-03-04 18:39 - 03686140 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2016-03-04 18:39 - 2016-03-04 18:39 - 03271912 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 03233472 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 02999024 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 02988288 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 02711296 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2016-03-04 18:39 - 2016-03-04 18:39 - 02493672 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 02051704 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01967336 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01961128 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01782144 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01761024 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01592584 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01508936 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01347808 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00965032 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00953728 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00745488 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00728960 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00708320 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00679712 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00679192 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00645464 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00576280 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00533904 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00504312 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00447728 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00446928 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00442792 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00388840 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00363576 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00358272 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00343712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00332088 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00328984 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00323240 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00311952 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00274240 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00255424 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00254400 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00253872 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00231920 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00223496 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00216352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00211064 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00196712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00167728 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00153312 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00134208 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00122328 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00118600 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00112512 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00090920 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00088352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00088328 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00086136 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00085152 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00025224 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2016-03-04 18:38 - 2016-03-04 18:38 - 00042328 _____ (Lenovo Corporation) C:\WINDOWS\system32\Drivers\AcpiVpc.sys
2016-03-04 18:37 - 2016-03-04 18:37 - 00376592 _____ (Intel Corporation) C:\WINDOWS\system32\ibtproppage.dll
2016-03-04 18:37 - 2016-03-04 18:37 - 00299280 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ibtusb.sys
2016-03-04 18:37 - 2016-03-04 18:37 - 00174352 _____ (Intel Corporation) C:\WINDOWS\system32\ibtsiva.exe
2016-03-04 18:36 - 2016-03-04 18:36 - 09898752 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2016-03-04 18:36 - 2016-03-04 18:36 - 00525512 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETD.sys
2016-03-04 18:36 - 2016-03-04 18:36 - 00310528 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RtsP2Stor.sys
2016-03-04 18:36 - 2016-03-04 18:36 - 00091904 _____ (Realtek Semiconductor.) C:\WINDOWS\system32\RtCRX64.dll
2016-03-04 18:36 - 2016-03-04 18:36 - 00056008 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCoInstaller01000.dll
2016-03-04 18:32 - 2016-03-04 18:32 - 00194320 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\TeeDriverW8x64.sys
2016-03-04 17:33 - 2016-03-04 17:33 - 00887552 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys
2016-03-04 17:33 - 2016-03-04 17:33 - 00084064 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-04 23:48 - 2015-10-30 08:18 - 00095232 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2016-03-11 01:50 - 2016-03-11 01:50 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-03-11 01:45

==================== Ende von FRST.txt ============================
         
Die Addtion.txt
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
durchgeführt von Vanessa (2016-03-14 21:33:53)
Gestartet von C:\Users\Vanessa\Desktop
Windows 10 Pro Version 1511 (X64) (2016-03-10 16:00:15)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-1189241312-1818108196-3406372783-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1189241312-1818108196-3406372783-503 - Limited - Disabled)
Gast (S-1-5-21-1189241312-1818108196-3406372783-501 - Limited - Disabled)
Vanessa (S-1-5-21-1189241312-1818108196-3406372783-1001 - Administrator - Enabled) => C:\Users\Vanessa

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.182 - Adobe Systems Incorporated)
ELAN Touchpad 11.15.0.18_X64 (HKLM\...\Elantech) (Version: 11.15.0.18 - ELAN Microelectronic Corp.)
Intel® PROSet/Wireless Software (HKLM-x32\...\{f0aecb48-77c7-45fa-b264-ea1945fdee59}) (Version: 18.33.0 - Intel Corporation)
Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.)
Mozilla Firefox 45.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 45.0 (x86 de)) (Version: 45.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0 - Mozilla)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7592 - Realtek Semiconductor Corp.)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-1189241312-1818108196-3406372783-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Vanessa\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {0802E269-EDBE-4A60-9BCC-053E0292E753} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\WINDOWS\system32\MRT.exe [2016-03-10] (Microsoft Corporation)
Task: {EC3CABF3-5086-4ADB-88BA-2EB64855FC14} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-10] (Adobe Systems Incorporated)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-03-05 13:35 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-05 13:35 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-03-11 00:36 - 2016-03-11 00:37 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-03-05 13:33 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-03-05 13:34 - 2016-02-23 09:36 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00394216 _____ () C:\WINDOWS\system32\igfxTray.exe
2016-03-05 13:35 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-03-05 13:34 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-03-05 13:35 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-03-05 13:35 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-03-11 00:39 - 2016-03-11 00:39 - 10244608 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2016.29.13.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll
2016-03-11 00:36 - 2016-03-11 00:37 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-03-11 00:36 - 2016-03-11 00:38 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2016-03-10 16:32 - 2016-03-10 16:29 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-1189241312-1818108196-3406372783-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Vanessa\Downloads\landscape_nrm_1420498727-sagittarus.jpg
DNS Servers: 192.168.42.129
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{CE8AD957-6922-4BF4-A210-77B0E98118F8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{32303F9E-BC76-451C-96A5-E738D55ADCD2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{37F6BB29-3AF4-4539-ACC9-9FECB60F4E5C}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe

==================== Wiederherstellungspunkte =========================

10-03-2016 16:57:40 Windows Modules Installer
11-03-2016 17:07:14 Windows Modules Installer
14-03-2016 17:40:28 Intel® PROSet/Wireless Software

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (03/14/2016 05:40:46 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (03/14/2016 05:28:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.122, Zeitstempel: 0x56cbf9dd
Ausnahmecode: 0xc0000374
Fehleroffset: 0x00000000000ee6dc
ID des fehlerhaften Prozesses: 0x4d4
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5

Error: (03/14/2016 05:24:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.122, Zeitstempel: 0x56cbf9dd
Ausnahmecode: 0xc0000374
Fehleroffset: 0x00000000000ee6dc
ID des fehlerhaften Prozesses: 0xb0
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5

Error: (03/14/2016 04:32:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.122, Zeitstempel: 0x56cbf9dd
Ausnahmecode: 0xc0000374
Fehleroffset: 0x00000000000ee6dc
ID des fehlerhaften Prozesses: 0xe30
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5

Error: (03/11/2016 05:07:34 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (03/11/2016 02:21:58 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (03/11/2016 12:39:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-1TA3T6T)
Description: Bei der Aktivierung der App „Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (03/10/2016 05:56:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-1TA3T6T)
Description: Bei der Aktivierung der App „Microsoft.WindowsPhone_8wekyb3d8bbwe!CompanionApp.App“ ist folgender Fehler aufgetreten: -2147024770. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (03/10/2016 05:53:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.0, Zeitstempel: 0x5632d193
Ausnahmecode: 0xc0000374
Fehleroffset: 0x00000000000edfac
ID des fehlerhaften Prozesses: 0x172c
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5

Error: (03/10/2016 05:52:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.0, Zeitstempel: 0x5632d193
Ausnahmecode: 0xc0000374
Fehleroffset: 0x00000000000edfac
ID des fehlerhaften Prozesses: 0x1b48
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5


Systemfehler:
=============
Error: (03/14/2016 08:42:20 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT-AUTORITÄT)
Description: Für den Miniport "SAMSUNG Mobile USB Remote NDIS Network Device, {9CB4147F-A930-4A43-AE28-3CE5AA9E2F52}" ist das Ereignis "74" aufgetreten.

Error: (03/14/2016 05:54:10 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (03/14/2016 05:26:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenzugriff_22e785" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/14/2016 05:26:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenspeicher _22e785" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/14/2016 05:26:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Kontaktdaten_22e785" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/14/2016 05:26:03 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_22e785" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/14/2016 05:26:03 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (03/14/2016 11:37:50 AM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT-AUTORITÄT)
Description: Für den Miniport "SAMSUNG Mobile USB Remote NDIS Network Device, {9CB4147F-A930-4A43-AE28-3CE5AA9E2F52}" ist das Ereignis "74" aufgetreten.

Error: (03/14/2016 12:50:33 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (03/13/2016 01:18:36 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar


CodeIntegrity:
===================================
  Date: 2016-03-12 03:01:14.659
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-11 12:22:34.972
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-10 19:07:11.730
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-10 18:23:05.407
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-10 16:59:07.103
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-11 01:49:18.798
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz
Prozentuale Nutzung des RAM: 45%
Installierter physikalischer RAM: 4009.84 MB
Verfügbarer physikalischer RAM: 2192.04 MB
Summe virtueller Speicher: 4713.84 MB
Verfügbarer virtueller Speicher: 2879.26 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:465.21 GB) (Free:410.27 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: D9FA2484)

Partition: GPT.

==================== Ende von Addition.txt ============================
         
Und die TDSS-Logdatei:
Code:
ATTFilter
21:37:32.0592 0x0e80  TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
21:37:32.0592 0x0e80  UEFI system
21:37:37.0600 0x0e80  ============================================================
21:37:37.0600 0x0e80  Current date / time: 2016/03/14 21:37:37.0600
21:37:37.0600 0x0e80  SystemInfo:
21:37:37.0694 0x0e80  
21:37:37.0694 0x0e80  OS Version: 10.0.10586 ServicePack: 0.0
21:37:37.0694 0x0e80  Product type: Workstation
21:37:37.0694 0x0e80  ComputerName: DESKTOP-1TA3T6T
21:37:37.0694 0x0e80  UserName: Vanessa
21:37:37.0694 0x0e80  Windows directory: C:\WINDOWS
21:37:37.0694 0x0e80  System windows directory: C:\WINDOWS
21:37:37.0694 0x0e80  Running under WOW64
21:37:37.0694 0x0e80  Processor architecture: Intel x64
21:37:37.0694 0x0e80  Number of processors: 4
21:37:37.0694 0x0e80  Page size: 0x1000
21:37:37.0694 0x0e80  Boot type: Normal boot
21:37:37.0694 0x0e80  ============================================================
21:37:38.0366 0x0e80  KLMD registered as C:\WINDOWS\system32\drivers\22119148.sys
21:37:39.0132 0x0e80  System UUID: {4B152735-A7DF-7255-C00A-9A62523D028D}
21:37:40.0069 0x0e80  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
21:37:40.0085 0x0e80  ============================================================
21:37:40.0085 0x0e80  \Device\Harddisk0\DR0:
21:37:40.0085 0x0e80  GPT partitions:
21:37:40.0085 0x0e80  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {7F1C7379-DDD8-48B8-948F-CBEB50B3A5F0}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0xE1000
21:37:40.0085 0x0e80  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {99BDABCC-BCCA-407E-8C93-20FD19C233DC}, Name: EFI system partition, StartLBA 0xE1800, BlocksNum 0x32000
21:37:40.0085 0x0e80  \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {048BDEA5-05DD-4BA0-8593-CCAC080996AF}, Name: Microsoft reserved partition, StartLBA 0x113800, BlocksNum 0x8000
21:37:40.0085 0x0e80  \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {2327364B-11A3-4F23-9D48-F9CC9C37E440}, Name: Basic data partition, StartLBA 0x11B800, BlocksNum 0x3A26A000
21:37:40.0085 0x0e80  MBR partitions:
21:37:40.0085 0x0e80  ============================================================
21:37:40.0116 0x0e80  C: <-> \Device\Harddisk0\DR0\Partition4
21:37:40.0116 0x0e80  ============================================================
21:37:40.0116 0x0e80  Initialize success
21:37:40.0116 0x0e80  ============================================================
21:37:50.0458 0x0078  ============================================================
21:37:50.0458 0x0078  Scan started
21:37:50.0458 0x0078  Mode: Manual; SigCheck; TDLFS; 
21:37:50.0458 0x0078  ============================================================
21:37:50.0458 0x0078  KSN ping started
21:37:52.0898 0x0078  KSN ping finished: true
21:37:54.0630 0x0078  ================ Scan system memory ========================
21:37:54.0630 0x0078  System memory - ok
21:37:54.0630 0x0078  ================ Scan services =============================
21:37:54.0789 0x0078  1394ohci - ok
21:37:54.0805 0x0078  3ware - ok
21:37:54.0836 0x0078  ACPI - ok
21:37:54.0867 0x0078  acpiex - ok
21:37:54.0883 0x0078  acpipagr - ok
21:37:54.0930 0x0078  AcpiPmi - ok
21:37:54.0946 0x0078  acpitime - ok
21:37:54.0992 0x0078  [ E13DE7CD2B62254DD4FF658B7798A37D, 9FCCC90DEF6BE83F8C41D4552D235A7BB5534954D2E7CB7B1C336A31FCCAB3AD ] ACPIVPC         C:\WINDOWS\System32\drivers\AcpiVpc.sys
21:37:55.0039 0x0078  ACPIVPC - ok
21:37:55.0166 0x0078  [ 99B993BD0F4C033D832B50D5E83BEBEC, A091635B2B428A51400468353F52D3FF35095460D3FA8CB29E2C4A804D87B845 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
21:37:55.0181 0x0078  AdobeFlashPlayerUpdateSvc - ok
21:37:55.0244 0x0078  ADP80XX - ok
21:37:55.0275 0x0078  AFD - ok
21:37:55.0306 0x0078  agp440 - ok
21:37:55.0322 0x0078  ahcache - ok
21:37:55.0353 0x0078  AJRouter - ok
21:37:55.0369 0x0078  ALG - ok
21:37:55.0384 0x0078  AmdK8 - ok
21:37:55.0400 0x0078  AmdPPM - ok
21:37:55.0431 0x0078  amdsata - ok
21:37:55.0447 0x0078  amdsbs - ok
21:37:55.0463 0x0078  amdxata - ok
21:37:55.0478 0x0078  AppID - ok
21:37:55.0525 0x0078  AppIDSvc - ok
21:37:55.0541 0x0078  Appinfo - ok
21:37:55.0541 0x0078  AppMgmt - ok
21:37:55.0572 0x0078  AppReadiness - ok
21:37:55.0603 0x0078  AppXSvc - ok
21:37:55.0619 0x0078  arcsas - ok
21:37:55.0650 0x0078  AsyncMac - ok
21:37:55.0697 0x0078  atapi - ok
21:37:55.0759 0x0078  AudioEndpointBuilder - ok
21:37:55.0791 0x0078  Audiosrv - ok
21:37:55.0822 0x0078  AxInstSV - ok
21:37:55.0884 0x0078  b06bdrv - ok
21:37:55.0900 0x0078  BasicDisplay - ok
21:37:55.0916 0x0078  BasicRender - ok
21:37:55.0963 0x0078  bcmfn - ok
21:37:55.0978 0x0078  bcmfn2 - ok
21:37:56.0009 0x0078  BDESVC - ok
21:37:56.0041 0x0078  Beep - ok
21:37:56.0072 0x0078  BFE - ok
21:37:56.0119 0x0078  BITS - ok
21:37:56.0150 0x0078  bowser - ok
21:37:56.0197 0x0078  BrokerInfrastructure - ok
21:37:56.0244 0x0078  Browser - ok
21:37:56.0306 0x0078  BthAvrcpTg - ok
21:37:56.0353 0x0078  BthEnum - ok
21:37:56.0369 0x0078  BthHFEnum - ok
21:37:56.0400 0x0078  bthhfhid - ok
21:37:56.0431 0x0078  BthHFSrv - ok
21:37:56.0494 0x0078  BthLEEnum - ok
21:37:56.0666 0x0078  BTHMODEM - ok
21:37:56.0681 0x0078  BthPan - ok
21:37:56.0728 0x0078  BTHPORT - ok
21:37:56.0775 0x0078  bthserv - ok
21:37:56.0791 0x0078  BTHUSB - ok
21:37:56.0822 0x0078  buttonconverter - ok
21:37:56.0838 0x0078  CapImg - ok
21:37:56.0869 0x0078  cdfs - ok
21:37:56.0884 0x0078  CDPSvc - ok
21:37:56.0916 0x0078  cdrom - ok
21:37:56.0931 0x0078  CertPropSvc - ok
21:37:56.0978 0x0078  circlass - ok
21:37:56.0994 0x0078  CLFS - ok
21:37:57.0022 0x0078  ClipSVC - ok
21:37:57.0078 0x0078  CmBatt - ok
21:37:57.0094 0x0078  CNG - ok
21:37:57.0125 0x0078  cnghwassist - ok
21:37:57.0188 0x0078  CompositeBus - ok
21:37:57.0203 0x0078  COMSysApp - ok
21:37:57.0219 0x0078  condrv - ok
21:37:57.0250 0x0078  CoreMessagingRegistrar - ok
21:37:57.0345 0x0078  [ DEB6A1567D038EB73E22C076FAABE1E5, FB3503F07B4AF0FA0C4C6D78041C5AE6D86D1A94361E6B02B4ACEEC770453023 ] cphs            C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
21:37:57.0360 0x0078  cphs - ok
21:37:57.0407 0x0078  CryptSvc - ok
21:37:57.0407 0x0078  CSC - ok
21:37:57.0423 0x0078  CscService - ok
21:37:57.0438 0x0078  dam - ok
21:37:57.0454 0x0078  DcomLaunch - ok
21:37:57.0470 0x0078  DcpSvc - ok
21:37:57.0470 0x0078  defragsvc - ok
21:37:57.0485 0x0078  DeviceAssociationService - ok
21:37:57.0501 0x0078  DeviceInstall - ok
21:37:57.0517 0x0078  DevQueryBroker - ok
21:37:57.0532 0x0078  Dfsc - ok
21:37:57.0563 0x0078  [ 85137571AEC8AC757D497B9DD30D544D, 6E15C9FB4010B26A8E5AFD4E85F7362B2616EB8503ACCE28EC31AC1E7D18566F ] dg_ssudbus      C:\WINDOWS\System32\drivers\ssudbus.sys
21:37:57.0563 0x0078  dg_ssudbus - ok
21:37:57.0610 0x0078  Dhcp - ok
21:37:57.0673 0x0078  diagnosticshub.standardcollector.service - ok
21:37:57.0720 0x0078  DiagTrack - ok
21:37:57.0751 0x0078  disk - ok
21:37:57.0798 0x0078  DmEnrollmentSvc - ok
21:37:57.0845 0x0078  dmvsc - ok
21:37:57.0892 0x0078  dmwappushservice - ok
21:37:57.0954 0x0078  Dnscache - ok
21:37:57.0954 0x0078  dot3svc - ok
21:37:57.0970 0x0078  DPS - ok
21:37:58.0001 0x0078  drmkaud - ok
21:37:58.0048 0x0078  DsmSvc - ok
21:37:58.0095 0x0078  DsSvc - ok
21:37:58.0110 0x0078  DXGKrnl - ok
21:37:58.0157 0x0078  Eaphost - ok
21:37:58.0204 0x0078  ebdrv - ok
21:37:58.0238 0x0078  EFS - ok
21:37:58.0285 0x0078  EhStorClass - ok
21:37:58.0332 0x0078  EhStorTcgDrv - ok
21:37:58.0379 0x0078  embeddedmode - ok
21:37:58.0395 0x0078  EntAppSvc - ok
21:37:58.0441 0x0078  ErrDev - ok
21:37:58.0504 0x0078  [ 6BD85B39B7B23F03B24CF641ED29147B, 850F21750BB39E5239B1584E1117844CAAAF6A5C58E79366552309F917675CE5 ] ETD             C:\WINDOWS\System32\drivers\ETD.sys
21:37:58.0535 0x0078  ETD - ok
21:37:58.0583 0x0078  [ 8916EACF1256E1C5A3AF81FD39C747E7, FF28FB95E9F9287C1005CF0D9EB84F7CA3D137689862860C9848398504E1EFFF ] ETDService      C:\Program Files\Elantech\ETDService.exe
21:37:58.0583 0x0078  ETDService - ok
21:37:58.0614 0x0078  EventSystem - ok
21:37:58.0754 0x0078  [ 88B51CBB28513AF2E982DCE02C02A805, 9CB5EE508D753F9338E13405F7AE7D9E99BD1F2116436A0940E9626356265527 ] EvtEng          C:\Program Files\Intel\WiFi\bin\EvtEng.exe
21:37:58.0770 0x0078  EvtEng - ok
21:37:58.0786 0x0078  exfat - ok
21:37:58.0801 0x0078  fastfat - ok
21:37:58.0823 0x0078  Fax - ok
21:37:58.0855 0x0078  fcvsc - ok
21:37:58.0870 0x0078  fdc - ok
21:37:58.0886 0x0078  fdPHost - ok
21:37:58.0901 0x0078  FDResPub - ok
21:37:58.0901 0x0078  fhsvc - ok
21:37:58.0917 0x0078  FileCrypt - ok
21:37:58.0933 0x0078  FileInfo - ok
21:37:58.0995 0x0078  Filetrace - ok
21:37:59.0027 0x0078  flpydisk - ok
21:37:59.0027 0x0078  FltMgr - ok
21:37:59.0073 0x0078  FontCache - ok
21:37:59.0167 0x0078  FontCache3.0.0.0 - ok
21:37:59.0198 0x0078  FsDepends - ok
21:37:59.0214 0x0078  Fs_Rec - ok
21:37:59.0214 0x0078  fvevol - ok
21:37:59.0261 0x0078  gagp30kx - ok
21:37:59.0293 0x0078  gencounter - ok
21:37:59.0340 0x0078  genericusbfn - ok
21:37:59.0340 0x0078  GPIOClx0101 - ok
21:37:59.0371 0x0078  gpsvc - ok
21:37:59.0386 0x0078  GpuEnergyDrv - ok
21:37:59.0402 0x0078  HDAudBus - ok
21:37:59.0433 0x0078  HidBatt - ok
21:37:59.0465 0x0078  HidBth - ok
21:37:59.0480 0x0078  hidi2c - ok
21:37:59.0512 0x0078  hidinterrupt - ok
21:37:59.0527 0x0078  HidIr - ok
21:37:59.0543 0x0078  hidserv - ok
21:37:59.0574 0x0078  HidUsb - ok
21:37:59.0636 0x0078  HomeGroupListener - ok
21:37:59.0652 0x0078  HomeGroupProvider - ok
21:37:59.0668 0x0078  HpSAMD - ok
21:37:59.0683 0x0078  HTTP - ok
21:37:59.0715 0x0078  hwpolicy - ok
21:37:59.0746 0x0078  hyperkbd - ok
21:37:59.0761 0x0078  i8042prt - ok
21:37:59.0777 0x0078  iai2c - ok
21:37:59.0824 0x0078  iaLPSS2i_I2C - ok
21:37:59.0840 0x0078  iaLPSSi_GPIO - ok
21:37:59.0840 0x0078  iaLPSSi_I2C - ok
21:37:59.0871 0x0078  iaStorAV - ok
21:37:59.0889 0x0078  iaStorV - ok
21:37:59.0920 0x0078  ibbus - ok
21:37:59.0920 0x0078  ibtsiva - ok
21:37:59.0967 0x0078  [ AA173D4202F9BFDD1C50B37550560780, B519D66406EC6CD03CAAF22F316D94541CDEBC06FF8D91D0B27BD9328C3920BA ] ibtusb          C:\WINDOWS\system32\DRIVERS\ibtusb.sys
21:37:59.0998 0x0078  ibtusb - ok
21:38:00.0046 0x0078  icssvc - ok
21:38:00.0062 0x0078  IEEtwCollectorService - ok
21:38:00.0313 0x0078  [ F8AA37364D1EE0DB8ADD0F83CF7ABC7F, CAD3B65D61D12DDF071DACC25B1E0F246923851668CCF0A95F1C083CF6081A93 ] igfx            C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
21:38:00.0469 0x0078  igfx - ok
21:38:00.0500 0x0078  [ 51837568B60B16880B943503AA443809, DB12D605A09CA61E0B95BE35D506BD93276B372458DBEAFAEB03F7F4EC94E981 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
21:38:00.0516 0x0078  igfxCUIService2.0.0.0 - ok
21:38:00.0547 0x0078  IKEEXT - ok
21:38:00.0660 0x0078  [ 3499042E89001AE39F8FCEDE15028743, 8E4BDBEBD26E09896333A95A40302929F8747F209440593CBD94E69FF9265128 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
21:38:00.0753 0x0078  IntcAzAudAddService - ok
21:38:00.0863 0x0078  [ A38C7B403BBFD5B30F27C2D6B11AAF25, 25F0E31A9987B49224C8884F30AF85DE3B1181E20BC8C0401C0F85BAA481A7D1 ] IntcDAud        C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
21:38:00.0894 0x0078  IntcDAud - ok
21:38:00.0957 0x0078  intelide - ok
21:38:00.0988 0x0078  intelpep - ok
21:38:01.0003 0x0078  intelppm - ok
21:38:01.0019 0x0078  IoQos - ok
21:38:01.0050 0x0078  IpFilterDriver - ok
21:38:01.0082 0x0078  iphlpsvc - ok
21:38:01.0128 0x0078  IPMIDRV - ok
21:38:01.0160 0x0078  IPNAT - ok
21:38:01.0175 0x0078  IRENUM - ok
21:38:01.0207 0x0078  isapnp - ok
21:38:01.0222 0x0078  iScsiPrt - ok
21:38:01.0269 0x0078  kbdclass - ok
21:38:01.0285 0x0078  kbdhid - ok
21:38:01.0300 0x0078  kdnic - ok
21:38:01.0316 0x0078  KeyIso - ok
21:38:01.0332 0x0078  KSecDD - ok
21:38:01.0363 0x0078  KSecPkg - ok
21:38:01.0363 0x0078  ksthunk - ok
21:38:01.0410 0x0078  KtmRm - ok
21:38:01.0441 0x0078  LanmanServer - ok
21:38:01.0488 0x0078  LanmanWorkstation - ok
21:38:01.0535 0x0078  lfsvc - ok
21:38:01.0569 0x0078  LicenseManager - ok
21:38:01.0600 0x0078  lltdio - ok
21:38:01.0600 0x0078  lltdsvc - ok
21:38:01.0616 0x0078  lmhosts - ok
21:38:01.0663 0x0078  LSI_SAS - ok
21:38:01.0710 0x0078  LSI_SAS2i - ok
21:38:01.0819 0x0078  LSI_SAS3i - ok
21:38:01.0835 0x0078  LSI_SSS - ok
21:38:01.0866 0x0078  LSM - ok
21:38:01.0866 0x0078  luafv - ok
21:38:01.0898 0x0078  MapsBroker - ok
21:38:01.0913 0x0078  megasas - ok
21:38:01.0960 0x0078  megasr - ok
21:38:02.0007 0x0078  [ 9732602297242FFFBA9D9ED0290442F0, 27848E3497AEC52CCC36684E7CC3B8FDFF66EC4947DABF64F57ED5D4E988D9B7 ] MEIx64          C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
21:38:02.0038 0x0078  MEIx64 - ok
21:38:02.0070 0x0078  MessagingService - ok
21:38:02.0148 0x0078  mlx4_bus - ok
21:38:02.0163 0x0078  MMCSS - ok
21:38:02.0179 0x0078  Modem - ok
21:38:02.0195 0x0078  monitor - ok
21:38:02.0210 0x0078  mouclass - ok
21:38:02.0226 0x0078  mouhid - ok
21:38:02.0242 0x0078  mountmgr - ok
21:38:02.0320 0x0078  [ 9EA771C01B8F99360F5BE1F732C59C3F, 69868A00F29379E822DC5A77EB4372CCAD690D2BDF10FEABB79C987527730FD5 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
21:38:02.0335 0x0078  MozillaMaintenance - ok
21:38:02.0351 0x0078  mpsdrv - ok
21:38:02.0382 0x0078  MpsSvc - ok
21:38:02.0398 0x0078  MRxDAV - ok
21:38:02.0414 0x0078  mrxsmb - ok
21:38:02.0429 0x0078  mrxsmb10 - ok
21:38:02.0460 0x0078  mrxsmb20 - ok
21:38:02.0460 0x0078  MsBridge - ok
21:38:02.0507 0x0078  MSDTC - ok
21:38:02.0507 0x0078  Msfs - ok
21:38:02.0570 0x0078  msgpiowin32 - ok
21:38:02.0601 0x0078  mshidkmdf - ok
21:38:02.0617 0x0078  mshidumdf - ok
21:38:02.0648 0x0078  msisadrv - ok
21:38:02.0679 0x0078  MSiSCSI - ok
21:38:02.0679 0x0078  msiserver - ok
21:38:02.0710 0x0078  MSKSSRV - ok
21:38:02.0710 0x0078  MsLldp - ok
21:38:02.0726 0x0078  MSPCLOCK - ok
21:38:02.0742 0x0078  MSPQM - ok
21:38:02.0757 0x0078  MsRPC - ok
21:38:02.0789 0x0078  mssmbios - ok
21:38:02.0789 0x0078  MSTEE - ok
21:38:02.0804 0x0078  MTConfig - ok
21:38:02.0820 0x0078  Mup - ok
21:38:02.0820 0x0078  mvumis - ok
21:38:02.0867 0x0078  [ D4700C711D03F5FF6CB38C7D55DE6222, BF553F1FCCA34431FEED3DFB101ABCDA78377570C60FFB81031B16CC745B181B ] MyWiFiDHCPDNS   C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
21:38:02.0898 0x0078  MyWiFiDHCPDNS - ok
21:38:02.0914 0x0078  NativeWifiP - ok
21:38:02.0945 0x0078  NcaSvc - ok
21:38:02.0976 0x0078  NcbService - ok
21:38:02.0976 0x0078  NcdAutoSetup - ok
21:38:03.0023 0x0078  ndfltr - ok
21:38:03.0023 0x0078  NDIS - ok
21:38:03.0023 0x0078  NdisCap - ok
21:38:03.0039 0x0078  NdisImPlatform - ok
21:38:03.0039 0x0078  NdisTapi - ok
21:38:03.0054 0x0078  Ndisuio - ok
21:38:03.0070 0x0078  NdisVirtualBus - ok
21:38:03.0085 0x0078  NdisWan - ok
21:38:03.0085 0x0078  ndiswanlegacy - ok
21:38:03.0085 0x0078  ndproxy - ok
21:38:03.0101 0x0078  Ndu - ok
21:38:03.0101 0x0078  NetBIOS - ok
21:38:03.0117 0x0078  NetBT - ok
21:38:03.0117 0x0078  Netlogon - ok
21:38:03.0164 0x0078  Netman - ok
21:38:03.0210 0x0078  netprofm - ok
21:38:03.0226 0x0078  NetSetupSvc - ok
21:38:03.0289 0x0078  NetTcpPortSharing - ok
21:38:03.0445 0x0078  [ ECCD9EACFE0FD5FF3CE509A73B8BCE52, C43A8CC5B8887D45AE66C5AB0AB46FA7F6F3D8C6C613CF3022D806EA7B74C664 ] NETwNb64        C:\WINDOWS\System32\drivers\Netwbw02.sys
21:38:03.0523 0x0078  NETwNb64 - ok
21:38:03.0585 0x0078  NgcCtnrSvc - ok
21:38:03.0601 0x0078  NgcSvc - ok
21:38:03.0664 0x0078  NlaSvc - ok
21:38:03.0679 0x0078  Npfs - ok
21:38:03.0710 0x0078  npsvctrig - ok
21:38:03.0726 0x0078  nsi - ok
21:38:03.0726 0x0078  nsiproxy - ok
21:38:03.0742 0x0078  NTFS - ok
21:38:03.0742 0x0078  Null - ok
21:38:03.0789 0x0078  nvraid - ok
21:38:03.0789 0x0078  nvstor - ok
21:38:03.0820 0x0078  nv_agp - ok
21:38:03.0867 0x0078  OneSyncSvc - ok
21:38:03.0898 0x0078  p2pimsvc - ok
21:38:03.0945 0x0078  p2psvc - ok
21:38:03.0961 0x0078  Parport - ok
21:38:03.0976 0x0078  partmgr - ok
21:38:03.0992 0x0078  PcaSvc - ok
21:38:04.0007 0x0078  pci - ok
21:38:04.0039 0x0078  pciide - ok
21:38:04.0070 0x0078  pcmcia - ok
21:38:04.0070 0x0078  pcw - ok
21:38:04.0086 0x0078  pdc - ok
21:38:04.0101 0x0078  PEAUTH - ok
21:38:04.0134 0x0078  PeerDistSvc - ok
21:38:04.0181 0x0078  percsas2i - ok
21:38:04.0181 0x0078  percsas3i - ok
21:38:04.0243 0x0078  PerfHost - ok
21:38:04.0290 0x0078  PhoneSvc - ok
21:38:04.0321 0x0078  PimIndexMaintenanceSvc - ok
21:38:04.0353 0x0078  pla - ok
21:38:04.0368 0x0078  PlugPlay - ok
21:38:04.0384 0x0078  PNRPAutoReg - ok
21:38:04.0384 0x0078  PNRPsvc - ok
21:38:04.0415 0x0078  PolicyAgent - ok
21:38:04.0415 0x0078  Power - ok
21:38:04.0431 0x0078  PptpMiniport - ok
21:38:04.0649 0x0078  [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify     C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
21:38:04.0821 0x0078  PrintNotify - ok
21:38:04.0853 0x0078  Processor - ok
21:38:04.0884 0x0078  ProfSvc - ok
21:38:04.0884 0x0078  Psched - ok
21:38:04.0899 0x0078  QWAVE - ok
21:38:04.0937 0x0078  QWAVEdrv - ok
21:38:04.0953 0x0078  RasAcd - ok
21:38:04.0968 0x0078  RasAgileVpn - ok
21:38:05.0000 0x0078  RasAuto - ok
21:38:05.0015 0x0078  Rasl2tp - ok
21:38:05.0062 0x0078  RasMan - ok
21:38:05.0062 0x0078  RasPppoe - ok
21:38:05.0078 0x0078  RasSstp - ok
21:38:05.0093 0x0078  rdbss - ok
21:38:05.0140 0x0078  rdpbus - ok
21:38:05.0140 0x0078  RDPDR - ok
21:38:05.0171 0x0078  RdpVideoMiniport - ok
21:38:05.0187 0x0078  rdyboost - ok
21:38:05.0187 0x0078  ReFSv1 - ok
21:38:05.0265 0x0078  [ 8AA2314A213BDD905A14AE9F691CA5E2, C5215CB44BF6555535ED34703445903B0C363100E3699FAFB773A4366347F710 ] RegSrvc         C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
21:38:05.0296 0x0078  RegSrvc - ok
21:38:05.0328 0x0078  RemoteAccess - ok
21:38:05.0343 0x0078  RemoteRegistry - ok
21:38:05.0359 0x0078  RetailDemo - ok
21:38:05.0406 0x0078  RFCOMM - ok
21:38:05.0421 0x0078  RpcEptMapper - ok
21:38:05.0437 0x0078  RpcLocator - ok
21:38:05.0453 0x0078  RpcSs - ok
21:38:05.0468 0x0078  [ 5BEBB8AFA0203EE5283C1049647F7B3C, 6B98A3965951E3BF7A098E033C7AF9F66563E71B6747BC6319519B691A471072 ] RSP2STOR        C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys
21:38:05.0484 0x0078  RSP2STOR - ok
21:38:05.0515 0x0078  rspndr - ok
21:38:05.0562 0x0078  [ 923EDCF774AD0207BAFA3DC58C5DA866, 7EA642D78B530EF00809B25986EDEED2EEBECFE40F2EC04661731C4A407FF754 ] rt640x64        C:\WINDOWS\System32\drivers\rt640x64.sys
21:38:05.0578 0x0078  rt640x64 - ok
21:38:05.0687 0x0078  [ 0A7A972AADEF62F2187A6E601FF0328D, D80F5CC4F226CBB473F49834BFE510D71955EEE575005820F266A5FDB88D9C58 ] rtsuvc          C:\WINDOWS\system32\DRIVERS\rtsuvc.sys
21:38:05.0750 0x0078  rtsuvc - ok
21:38:05.0781 0x0078  s3cap - ok
21:38:05.0796 0x0078  SamSs - ok
21:38:05.0843 0x0078  sbp2port - ok
21:38:05.0875 0x0078  SCardSvr - ok
21:38:05.0906 0x0078  ScDeviceEnum - ok
21:38:05.0937 0x0078  scfilter - ok
21:38:05.0953 0x0078  Schedule - ok
21:38:06.0000 0x0078  SCPolicySvc - ok
21:38:06.0015 0x0078  sdbus - ok
21:38:06.0046 0x0078  SDRSVC - ok
21:38:06.0062 0x0078  sdstor - ok
21:38:06.0093 0x0078  seclogon - ok
21:38:06.0109 0x0078  SENS - ok
21:38:06.0125 0x0078  SensorDataService - ok
21:38:06.0140 0x0078  SensorService - ok
21:38:06.0140 0x0078  SensrSvc - ok
21:38:06.0156 0x0078  SerCx - ok
21:38:06.0171 0x0078  SerCx2 - ok
21:38:06.0203 0x0078  Serenum - ok
21:38:06.0218 0x0078  Serial - ok
21:38:06.0250 0x0078  sermouse - ok
21:38:06.0281 0x0078  SessionEnv - ok
21:38:06.0312 0x0078  sfloppy - ok
21:38:06.0343 0x0078  SharedAccess - ok
21:38:06.0375 0x0078  ShellHWDetection - ok
21:38:06.0406 0x0078  SiSRaid2 - ok
21:38:06.0421 0x0078  SiSRaid4 - ok
21:38:06.0453 0x0078  smphost - ok
21:38:06.0468 0x0078  SmsRouter - ok
21:38:06.0500 0x0078  SNMPTRAP - ok
21:38:06.0546 0x0078  spaceport - ok
21:38:06.0578 0x0078  SpbCx - ok
21:38:06.0609 0x0078  Spooler - ok
21:38:06.0625 0x0078  sppsvc - ok
21:38:06.0640 0x0078  srv - ok
21:38:06.0640 0x0078  srv2 - ok
21:38:06.0656 0x0078  srvnet - ok
21:38:06.0671 0x0078  SSDPSRV - ok
21:38:06.0718 0x0078  SstpSvc - ok
21:38:06.0750 0x0078  [ 3267933B06415A5801FE888B203C2046, 8AB522EBF47294760D7F5F49034175A29E16D61481B414B6E193DB144FCA9A62 ] ssudqcfilter    C:\WINDOWS\System32\drivers\ssudqcfilter.sys
21:38:06.0750 0x0078  ssudqcfilter - ok
21:38:06.0781 0x0078  StateRepository - ok
21:38:06.0828 0x0078  stexstor - ok
21:38:06.0937 0x0078  stisvc - ok
21:38:06.0968 0x0078  storahci - ok
21:38:06.0984 0x0078  storflt - ok
21:38:07.0016 0x0078  stornvme - ok
21:38:07.0016 0x0078  storqosflt - ok
21:38:07.0062 0x0078  StorSvc - ok
21:38:07.0078 0x0078  storufs - ok
21:38:07.0094 0x0078  storvsc - ok
21:38:07.0125 0x0078  svsvc - ok
21:38:07.0141 0x0078  swenum - ok
21:38:07.0156 0x0078  swprv - ok
21:38:07.0187 0x0078  Synth3dVsc - ok
21:38:07.0203 0x0078  SysMain - ok
21:38:07.0234 0x0078  SystemEventsBroker - ok
21:38:07.0234 0x0078  TabletInputService - ok
21:38:07.0234 0x0078  TapiSrv - ok
21:38:07.0297 0x0078  Tcpip - ok
21:38:07.0312 0x0078  Tcpip6 - ok
21:38:07.0312 0x0078  tcpipreg - ok
21:38:07.0359 0x0078  tdx - ok
21:38:07.0391 0x0078  terminpt - ok
21:38:07.0406 0x0078  TermService - ok
21:38:07.0437 0x0078  Themes - ok
21:38:07.0469 0x0078  TieringEngineService - ok
21:38:07.0469 0x0078  tiledatamodelsvc - ok
21:38:07.0500 0x0078  TimeBroker - ok
21:38:07.0547 0x0078  TPM - ok
21:38:07.0562 0x0078  TrkWks - ok
21:38:07.0609 0x0078  TrustedInstaller - ok
21:38:07.0625 0x0078  TsUsbFlt - ok
21:38:07.0656 0x0078  TsUsbGD - ok
21:38:07.0703 0x0078  tunnel - ok
21:38:07.0719 0x0078  tzautoupdate - ok
21:38:07.0750 0x0078  uagp35 - ok
21:38:07.0781 0x0078  UASPStor - ok
21:38:07.0797 0x0078  UcmCx0101 - ok
21:38:07.0828 0x0078  UcmUcsi - ok
21:38:07.0844 0x0078  Ucx01000 - ok
21:38:07.0859 0x0078  UdeCx - ok
21:38:07.0859 0x0078  udfs - ok
21:38:07.0875 0x0078  UEFI - ok
21:38:07.0890 0x0078  Ufx01000 - ok
21:38:07.0922 0x0078  UfxChipidea - ok
21:38:07.0937 0x0078  ufxsynopsys - ok
21:38:07.0969 0x0078  UI0Detect - ok
21:38:08.0000 0x0078  uliagpkx - ok
21:38:08.0016 0x0078  umbus - ok
21:38:08.0047 0x0078  UmPass - ok
21:38:08.0078 0x0078  UmRdpService - ok
21:38:08.0125 0x0078  UnistoreSvc - ok
21:38:08.0141 0x0078  upnphost - ok
21:38:08.0187 0x0078  UrsChipidea - ok
21:38:08.0234 0x0078  UrsCx01000 - ok
21:38:08.0250 0x0078  UrsSynopsys - ok
21:38:08.0297 0x0078  usbccgp - ok
21:38:08.0328 0x0078  usbcir - ok
21:38:08.0328 0x0078  usbehci - ok
21:38:08.0344 0x0078  usbhub - ok
21:38:08.0359 0x0078  USBHUB3 - ok
21:38:08.0375 0x0078  usbohci - ok
21:38:08.0406 0x0078  usbprint - ok
21:38:08.0422 0x0078  usbrndis6 - ok
21:38:08.0422 0x0078  usbser - ok
21:38:08.0453 0x0078  USBSTOR - ok
21:38:08.0484 0x0078  usbuhci - ok
21:38:08.0500 0x0078  USBXHCI - ok
21:38:08.0515 0x0078  UserDataSvc - ok
21:38:08.0547 0x0078  UserManager - ok
21:38:08.0578 0x0078  UsoSvc - ok
21:38:08.0594 0x0078  VaultSvc - ok
21:38:08.0609 0x0078  vdrvroot - ok
21:38:08.0625 0x0078  vds - ok
21:38:08.0656 0x0078  VerifierExt - ok
21:38:08.0687 0x0078  vhdmp - ok
21:38:08.0687 0x0078  vhf - ok
21:38:08.0719 0x0078  vmbus - ok
21:38:08.0734 0x0078  VMBusHID - ok
21:38:08.0766 0x0078  vmicguestinterface - ok
21:38:08.0766 0x0078  vmicheartbeat - ok
21:38:08.0766 0x0078  vmickvpexchange - ok
21:38:08.0781 0x0078  vmicrdv - ok
21:38:08.0781 0x0078  vmicshutdown - ok
21:38:08.0781 0x0078  vmictimesync - ok
21:38:08.0797 0x0078  vmicvmsession - ok
21:38:08.0797 0x0078  vmicvss - ok
21:38:08.0812 0x0078  volmgr - ok
21:38:08.0828 0x0078  volmgrx - ok
21:38:08.0828 0x0078  volsnap - ok
21:38:08.0859 0x0078  vpci - ok
21:38:08.0875 0x0078  vsmraid - ok
21:38:08.0891 0x0078  VSS - ok
21:38:08.0906 0x0078  VSTXRAID - ok
21:38:08.0922 0x0078  vwifibus - ok
21:38:08.0922 0x0078  vwififlt - ok
21:38:08.0922 0x0078  vwifimp - ok
21:38:08.0938 0x0078  W32Time - ok
21:38:08.0969 0x0078  WacomPen - ok
21:38:09.0016 0x0078  WalletService - ok
21:38:09.0032 0x0078  wanarp - ok
21:38:09.0032 0x0078  wanarpv6 - ok
21:38:09.0079 0x0078  wbengine - ok
21:38:09.0094 0x0078  WbioSrvc - ok
21:38:09.0110 0x0078  Wcmsvc - ok
21:38:09.0110 0x0078  wcncsvc - ok
21:38:09.0141 0x0078  WcsPlugInService - ok
21:38:09.0157 0x0078  WdBoot - ok
21:38:09.0172 0x0078  Wdf01000 - ok
21:38:09.0188 0x0078  WdFilter - ok
21:38:09.0188 0x0078  WdiServiceHost - ok
21:38:09.0204 0x0078  WdiSystemHost - ok
21:38:09.0204 0x0078  wdiwifi - ok
21:38:09.0204 0x0078  WdNisDrv - ok
21:38:09.0251 0x0078  WdNisSvc - ok
21:38:09.0251 0x0078  WebClient - ok
21:38:09.0251 0x0078  Wecsvc - ok
21:38:09.0298 0x0078  WEPHOSTSVC - ok
21:38:09.0313 0x0078  wercplsupport - ok
21:38:09.0329 0x0078  WerSvc - ok
21:38:09.0344 0x0078  WFPLWFS - ok
21:38:09.0344 0x0078  WiaRpc - ok
21:38:09.0376 0x0078  WIMMount - ok
21:38:09.0376 0x0078  WinDefend - ok
21:38:09.0407 0x0078  WindowsTrustedRT - ok
21:38:09.0454 0x0078  WindowsTrustedRTProxy - ok
21:38:09.0469 0x0078  WinHttpAutoProxySvc - ok
21:38:09.0516 0x0078  WinMad - ok
21:38:09.0579 0x0078  Winmgmt - ok
21:38:09.0610 0x0078  WinRM - ok
21:38:09.0673 0x0078  WINUSB - ok
21:38:09.0704 0x0078  WinVerbs - ok
21:38:09.0751 0x0078  WlanSvc - ok
21:38:09.0766 0x0078  wlidsvc - ok
21:38:09.0782 0x0078  WmiAcpi - ok
21:38:09.0813 0x0078  wmiApSrv - ok
21:38:09.0829 0x0078  WMPNetworkSvc - ok
21:38:09.0844 0x0078  [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof             C:\WINDOWS\system32\drivers\Wof.sys
21:38:09.0876 0x0078  Wof - ok
21:38:09.0923 0x0078  workfolderssvc - ok
21:38:09.0954 0x0078  wpcfltr - ok
21:38:09.0985 0x0078  WPDBusEnum - ok
21:38:10.0016 0x0078  WpdUpFltr - ok
21:38:10.0016 0x0078  WpnService - ok
21:38:10.0063 0x0078  ws2ifsl - ok
21:38:10.0095 0x0078  wscsvc - ok
21:38:10.0110 0x0078  WSearch - ok
21:38:10.0157 0x0078  WSService - ok
21:38:10.0157 0x0078  wuauserv - ok
21:38:10.0173 0x0078  WudfPf - ok
21:38:10.0173 0x0078  WUDFRd - ok
21:38:10.0204 0x0078  wudfsvc - ok
21:38:10.0220 0x0078  WUDFWpdFs - ok
21:38:10.0220 0x0078  WUDFWpdMtp - ok
21:38:10.0235 0x0078  WwanSvc - ok
21:38:10.0251 0x0078  XblAuthManager - ok
21:38:10.0266 0x0078  XblGameSave - ok
21:38:10.0282 0x0078  xboxgip - ok
21:38:10.0282 0x0078  XboxNetApiSvc - ok
21:38:10.0313 0x0078  xinputhid - ok
21:38:10.0532 0x0078  [ 27B1453C72A71DB1E32C043EFBF7DE73, 6BE61174D4074764F3061635AB633A4DDBC93CE8A6EF3B3E997D7B8A99C1E7EF ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
21:38:10.0594 0x0078  ZeroConfigService - ok
21:38:10.0610 0x0078  ================ Scan global ===============================
21:38:10.0766 0x0078  [ Global ] - ok
21:38:10.0766 0x0078  ================ Scan MBR ==================================
21:38:10.0782 0x0078  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
21:38:10.0926 0x0078  \Device\Harddisk0\DR0 - ok
21:38:10.0926 0x0078  ================ Scan VBR ==================================
21:38:10.0957 0x0078  [ F491CCB48B89CAA98713D2A2522D1868 ] \Device\Harddisk0\DR0\Partition1
21:38:10.0972 0x0078  \Device\Harddisk0\DR0\Partition1 - ok
21:38:10.0972 0x0078  [ E4002E8D31414780B003B1C1AA5C6EF3 ] \Device\Harddisk0\DR0\Partition2
21:38:10.0988 0x0078  \Device\Harddisk0\DR0\Partition2 - ok
21:38:11.0019 0x0078  [ A4020249126334F22F2D0FF7968D974F ] \Device\Harddisk0\DR0\Partition3
21:38:11.0019 0x0078  \Device\Harddisk0\DR0\Partition3 - ok
21:38:11.0019 0x0078  [ 56B5B579C6278A2E7B0CEBA368896E13 ] \Device\Harddisk0\DR0\Partition4
21:38:11.0035 0x0078  \Device\Harddisk0\DR0\Partition4 - ok
21:38:11.0035 0x0078  ================ Scan generic autorun ======================
21:38:11.0035 0x0078  ETDCtrl - ok
21:38:11.0489 0x1bb4  Object required for P2P: [ AA173D4202F9BFDD1C50B37550560780 ] ibtusb
21:38:11.0520 0x0078  [ D3BD123CF28F0B42E7126F06322CB447, EE956599EF414BBA69E55D58BCC3127F384ACD8335B9F830F7EA5927DFF38E5D ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
21:38:12.0055 0x0078  RtHDVCpl - ok
21:38:12.0117 0x0078  [ 4D87916E4A24532C1314EC89DC554DDE, 487C45494012DBED5782511029F348020C8F18BFF1263E9C28DE01D4F7364661 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
21:38:12.0164 0x0078  RtHDVBg_Dolby - ok
21:38:12.0212 0x0078  [ 4D87916E4A24532C1314EC89DC554DDE, 487C45494012DBED5782511029F348020C8F18BFF1263E9C28DE01D4F7364661 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
21:38:12.0243 0x0078  RtHDVBg_LENOVO_DOLBYDRAGON - ok
21:38:12.0305 0x0078  [ 4D87916E4A24532C1314EC89DC554DDE, 487C45494012DBED5782511029F348020C8F18BFF1263E9C28DE01D4F7364661 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
21:38:12.0337 0x0078  RtHDVBg_LENOVO_MICPKEY - ok
21:38:12.0477 0x0078  [ 11E2687D7AD9B4E8051F3FF68063E332, 7AF318768561272B094D86087FF8F502F095D0018A3315E626C7D71BD82E3172 ] C:\WINDOWS\RTFTrack.exe
21:38:12.0665 0x0078  RtsFT - ok
21:38:12.0743 0x0078  OneDriveSetup - ok
21:38:12.0743 0x0078  OneDriveSetup - ok
21:38:12.0868 0x0078  [ 61F488AC3053DEB2AADB6A34DEBC8876, B5C5E0325F0FB4A37E80F08273B7483630F676C6342519564798CE7D1F121CB7 ] C:\Users\Vanessa\AppData\Local\Microsoft\OneDrive\OneDrive.exe
21:38:12.0899 0x0078  OneDrive - ok
21:38:12.0915 0x0078  Uninstall C:\Users\Vanessa\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64 - ok
21:38:12.0930 0x0078  Waiting for KSN requests completion. In queue: 23
21:38:13.0932 0x0078  Waiting for KSN requests completion. In queue: 23
21:38:14.0182 0x1bb4  Object send P2P result: true
21:38:14.0182 0x1bb4  Object required for P2P: [ 9EA771C01B8F99360F5BE1F732C59C3F ] MozillaMaintenance
21:38:14.0947 0x0078  Waiting for KSN requests completion. In queue: 17
21:38:15.0963 0x0078  Waiting for KSN requests completion. In queue: 9
21:38:16.0682 0x1bb4  Object send P2P result: true
21:38:17.0072 0x0078  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x61100 ( enabled : updated )
21:38:17.0103 0x0078  Win FW state via NFP2: enabled ( trusted )
21:38:19.0542 0x0078  ============================================================
21:38:19.0542 0x0078  Scan finished
21:38:19.0542 0x0078  ============================================================
21:38:19.0558 0x169c  Detected object count: 0
21:38:19.0558 0x169c  Actual detected object count: 0
21:39:12.0403 0x0fbc  Deinitialize success
         
Vielen Dank nochmal für die Hilfe!

Alt 15.03.2016, 14:48   #5
M-K-D-B
/// TB-Ausbilder
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Servus,


und dieser Proxy in Firefox ist normal bzw. das gehört so bei dir?
Zitat:
FF NetworkProxy: "autoconfig_url", "data:application/x-ns-proxy-autoconfig;base64,ZnVuY3Rpb24gRmluZFByb3h5Rm9yVVJMKHVybCwgaG9zdCl7CiAgdmFyIGNvdW50cnkgPSAnREsnOwogIHZhciBteWlwID0gbXlJcEFkZHJlc3MoKTsKICB2YXIgaXBiaXRz ID0gbXlpcC5zcGxpdCgnLicpOwogIHZhciBteXNlZyA9IHBhcnNlSW50KGlwYml0c1szXSk7CiAgdmFyIHAgPSBbMzIyMzQ2OTkwMCwgMzIyMzQ2OTkwMiwgMzIyNjU4OTQ2NywgNjI4ODA1NjgxLC AzMjMxNDA2OTIxLCAzMzM0OTU3NzczLCAxODA2MzY1Mjk2LCAxNzkwNjUzMTY1LCAxNDgxNjg2OTMxLCAzMDM5NDE3MDcyLCAzMDM5NDE4NjcyLCAzMDM5NDE4NjczLCAzMDM5NDE4Nzk2LCAyOTkx NTYxOTc1LCAyOTkxNTU0NjY5XTsKICBmb3IodmFyIGkgaW4gcCl7CiAgICBuID0gcFtpXTsKICAgIHZhciBkID0gbiUyNTY7CiAgICBmb3IodmFyIGogPSAzOyBqID4gMDsgai0tKXsKICAgICAgbi A9IE1hdGguZmxvb3Iobi8yNTYpOwogICAgICBkID0gbiUyNTYgKyAnLicgKyBkOwogICAgfQogICAgcFtpXSA9IGQ7CiAgfQogIHZhciBwcm94eV9jb25maWdzID0gWwogICAgJ1BST1hZICcrcFsw XSsnOjgwOyBQUk9YWSAnK3BbMV0rJzo4MDsgRElSRUNUJywKICAgICdQUk9YWSAnK3BbMV0rJzo4MDsgUFJPWFkgJytwWzBdKyc6ODA7IERJUkVDVCcKICBdOwogIHZhciBuZXRmbGl4X3Byb3h5X2 NvbmZpZ3MgPSBbCiAgICAnUFJPWFkgJytwWzZdKyc6ODA7IFBST1hZICcrcFs1XSsnOjgwOyBESVJFQ1QnLAogICAgJ1BST1hZICcrcFs1XSsnOjgwOyBQUk9YWSAnK3BbNl0rJzo4MDsgRElSRUNU JwogIF07CiAgdmFyIHVrX2NvbmZpZ3MgPSBbCiAgICAnUFJPWFkgJytwWzNdKyc6ODA7IFBST1hZICcrcFs4XSsnOjgwOyBQUk9YWSAnK3BbMTNdKyc6ODA7IFBST1hZICcrcFsxNF0rJzo4MDsgRE lSRUNUJywKICAgICdQUk9YWSAnK3BbOF0rJzo4MDsgUFJPWFkgJytwWzEzXSsnOjgwOyBQUk9YWSAnK3BbMTRdKyc6ODA7IFBST1hZICcrcFs4XSsnOjgwOyBESVJFQ1QnLAogICAgJ1BST1hZICcr cFsxM10rJzo4MDsgUFJPWFkgJytwWzE0XSsnOjgwOyBQUk9YWSAnK3BbM10rJzo4MDsgUFJPWFkgJytwWzhdKyc6ODA7IERJUkVDVCcsCiAgICAnUFJPWFkgJytwWzE0XSsnOjgwOyBQUk9YWSAnK3 BbM10rJzo4MDsgUFJPWFkgJytwWzhdKyc6ODA7IFBST1hZICcrcFsxM10rJzo4MDsgRElSRUNUJywKICBdOwogIHZhciBicl9jb25maWdzID0gWwogICAgJ1BST1hZICcrcFs5XSsnOjgwOyBQUk9Y WSAnK3BbMTBdKyc6ODA7IFBST1hZICcrcFsxMV0rJzo4MDsgUFJPWFkgJytwWzEyXSsnOjgwOyBESVJFQ1QnLAogICAgJ1BST1hZICcrcFsxMl0rJzo4MDsgUFJPWFkgJytwWzldKyc6ODA7IFBST1 hZICcrcFsxMF0rJzo4MDsgUFJPWFkgJytwWzExXSsnOjgwOyBESVJFQ1QnLAogICAgJ1BST1hZICcrcFsxMV0rJzo4MDsgUFJPWFkgJytwWzEyXSsnOjgwOyBQUk9YWSAnK3BbOV0rJzo4MDsgUFJP WFkgJytwWzEwXSsnOjgwOyBESVJFQ1QnLAogICAgJ1BST1hZICcrcFsxMF0rJzo4MDsgUFJPWFkgJytwWzExXSsnOjgwOyBQUk9YWSAnK3BbMTJdKyc6ODA7IFBST1hZICcrcFs5XSsnOjgwOyBESV JFQ1QnCiAgXTsKICB2YXIgbmV0ZmxpeF9wcm94aWVzID0gbmV0ZmxpeF9wcm94eV9jb25maWdzW215c2VnICUgMl07CiAgdmFyIHByb3hpZXMgPSBwcm94eV9jb25maWdzW215c2VnICUgMl07CiAg aWYoY291bnRyeSA9PT0gJ1VTJyl7CiAgICBwcm94aWVzID0gJ0RJUkVDVCc7CiAgfQogIGlmKCgvYXR2LShwc3xleHQpXC5hbWF6b25cLmNvbS8pLnRlc3QoaG9zdCkgJiYgY291bnRyeSAhPT0gIl VTIil7CiAgICByZXR1cm4gcHJveGllczsKICB9CiAgaWYoY291bnRyeSAhPT0gJ0dCJyl7CiAgICB2YXIgdWtwcm94aWVzID0gdWtfY29uZmlnc1tteXNlZyAlIDRdOwogICAgaWYoCiAgICAgICgo L2JiY1wuY29cLnVrXC9pcGxheWVyXC90di8pLnRlc3QodXJsKSYmKC93YXRjaGxpdmUvKS50ZXN0KHVybCkpCiAgICAgIHx8KC9eKHd3d3xuZXdzKVwuYmJjXC5jb1wudWskLykudGVzdChob3N0KQ ogICAgICB8fCgoL3BsYXlsaXN0c1wuYmJjXC5jb1wudWsvKS50ZXN0KGhvc3QpJiYoL1wuc3htbC8pLnRlc3QodXJsKSkKICAgICAgfHwoL2JiY1wuY29cLnVrXC9pcGxheWVyLykudGVzdCh1cmwp CiAgICAgIHx8KC9vcGVuXC5saXZlXC5iYmNcLmNvXC51ay8pLnRlc3QoaG9zdCkKICAgICAgfHwoL2JiY1wuY29cLnVrXC5lZGdlc3VpdGVcLm5ldFwvY3Jvc3Nkb21haW5cLnhtbC8pLnRlc3QodX JsKQogICAgICB8fCgvYmJjZm1oZHNcLnZvXC5sbG53ZFwubmV0XC9jcm9zc2RvbWFpblwueG1sLykudGVzdCh1cmwpCiAgICAgIHx8KC9iYmNcLmNvXC51a1wuZWRnZXN1aXRlXC5uZXRcL2hkcy1s aXZlXC9saXZlcGtnci8pLnRlc3QodXJsKQogICAgICB8fCgvYmJjXC5jb1wudWtcLmVkZ2VzdWl0ZVwubmV0XC9oZHMtbGl2ZVwvc3RyZWFtc1wvbGl2ZXBrZ3IvKS50ZXN0KHVybCkKICAgICAgfH woL2JiY2ZtaGRzXC52b1wubGxud2RcLm5ldFwvaGRzLWxpdmVcL3N0cmVhbXNcL2xpdmVwa2dyXC9zdHJlYW1zLykudGVzdCh1cmwpCiAgICAgIHx8KCgvYmJjZm1oZHNcLnZvXC5sbG53ZFwubmV0 XC9oZHMtbGl2ZVwvbGl2ZXBrZ3IvKS50ZXN0KHVybCkgJiYgKC9mNG0vKS50ZXN0KHVybCkpCiAgICAgIHx8KC9iYmNcLmNvXC51a1wvbWVkaWFzZWxlY3Rvci8pLnRlc3QodXJsKQogICAgICB8fC gvYWlzXC5jaGFubmVsNFwuY29tLykudGVzdChob3N0KQogICAgICB8fCgvYmJjXC5jb1wudWtcL21vYmlsZVwvYXBwc1wvaXBsYXllci8pLnRlc3QodXJsKQogICAgICB8fCgvaXR2XC5jb21cL3Vr b25seS8pLnRlc3QodXJsKQogICAgICB8fCgvXihuZWR8dGVkfG1lcmN1cnl8dG9tKVwuaXR2XC5jb20kLykudGVzdChob3N0KQogICAgICB8fCgvYmJjaVwuY29cLnVrLykudGVzdChob3N0KQogIC AgICB8fCgvbGl2ZVwuYmJjXC5jb1wudWsvKS50ZXN0KGhvc3QpCiAgICAgIHx8KC9iYmNtZWRpYVwuZmNvZFwubGxud2RcLm5ldC8pLnRlc3QoaG9zdCkKICAgICAgfHwoL1wvaWRsZVwvW2EtekEt WjAtOVwtX117MTZ9XC8vKS50ZXN0KHVybCkKICAgICAgfHwoL1wvc2VuZFwvW2EtekEtWjAtOVwtX117MTZ9XC8vKS50ZXN0KHVybCkKICAgICAgfHwoL2xvbmRvbmxpdmVcLmNvXC51ayQvKS50ZX N0KGhvc3QpCiAgICAgIHx8KC9zc2xcLmJiY1wuY29cLnVrJC8pLnRlc3QoaG9zdCkKICAgICl7CiAgICAgIHJldHVybiB1a3Byb3hpZXM7CiAgICB9CiAgfQogIGlmKChob3N0ID09ICdsb2NhbGhv c3QnKXx8KHNoRXhwTWF0Y2goaG9zdCwgJ2xvY2FsaG9zdC4qJykpfHwoc2hFeHBNYXRjaChob3N0LCAnKi5sb2NhbCcpKXx8KGhvc3QgPT0gJzEyNy4wLjAuMScpKXsKICAgIHJldHVybiAnRElSRU NUJzsKICB9CiAgaWYoaG9zdCA9PSAnaWhvc3QubmV0ZmxpeC5jb20nKXsKICAgIHJldHVybiAnRElSRUNUJzsKICB9CiAgaWYoaXNQbGFpbkhvc3ROYW1lKGhvc3QpIHx8CiAgICBzaEV4cE1hdGNo KGhvc3QsICcqLmxvY2FsJykgfHwKICAgIGlzSW5OZXQoZG5zUmVzb2x2ZShob3N0KSwgJzEwLjAuMC4wJywgJzI1NS4wLjAuMCcpIHx8CiAgICBpc0luTmV0KGRuc1Jlc29sdmUoaG9zdCksICcxNz IuMTYuMC4wJywgICcyNTUuMjQwLjAuMCcpIHx8CiAgICBpc0luTmV0KGRuc1Jlc29sdmUoaG9zdCksICcxOTIuMTY4LjAuMCcsICAnMjU1LjI1NS4wLjAnKSB8fAogICAgaXNJbk5ldChkbnNSZXNv bHZlKGhvc3QpLCAnMTI3LjAuMC4wJywgJzI1NS4yNTUuMjU1LjAnKSl7CiAgICByZXR1cm4gJ0RJUkVDVCc7CiAgfQogIGlmKHNoRXhwTWF0Y2goaG9zdCwgJy9eXGQrXC5cZCtcLlxkK1wuXGQrJC 9nJykpewogICAgaWYoaXNJbk5ldChob3N0LCAnMTAuMC4wLjAnLCAnMjU1LjAuMC4wJyl8fGlzSW5OZXQoaG9zdCwgJzE5Mi4xNjguMC4wJywgJzI1NS4yNTUuMC4wJykpIHsKICAgICAgcmV0dXJu ICdESVJFQ1QnOwogICAgfQogIH0KICBpZigoLyhebGlua1wudGhlcGxhdGZvcm1cLmNvbSQpfChedXJzXC5wYnNcLm9yZyQpLykudGVzdChob3N0KSl7CiAgICByZXR1cm4gJ1BST1hZICcrcFsyXS snOjgwJzsKICB9CiAgaWYoKC8oXnZpZGVvY2dpXC5kcnRcLmNic2lnXC5uZXQkKXwoXm1lZGlhXC5jd3R2XC5jb20kKS8pLnRlc3QoaG9zdCkpewogICAgcmV0dXJuIHByb3hpZXM7CiAgfQogIGlm KCgvXnd3d1wuc2xhY2tlclwuY29tJC8pLnRlc3QoaG9zdCkmJigvXC8oeHNsdGVcL3VzZXJDb250ZW50KXwod3N2MVwvc2Vzc2lvbikvKS50ZXN0KHVybCkpewogICAgcmV0dXJuIHByb3hpZXM7Ci AgfQogIGlmKCgvXnZpZGVvXC5uYmN1bmlcLmNvbSQvKS50ZXN0KGhvc3QpJiYoL2dlb1wueG1sLykudGVzdCh1cmwpKXsKICAgIHJldHVybiBwcm94aWVzOwogIH0KICBpZigoL3Nvbmd6YVwuY29t XC9jb25maWdcLmpzfGdlb2ZpbHRlcnxcL3ZpZGVvXC9nZW9sb2NhdGlvbnxnZW9Db3VudHJ5XC54bWx8Z2VvLWNoZWNrfFwuaXNtXC9tYW5pZmVzdHxcL3NlcnZpY2VzXC92aWV3ZXJcLyhodG1sRm VkZXJhdGVkfGZlZGVyYXRlZF9mOSl8XC9zZXJ2aWNlc1wvbWVzc2FnZWJyb2tlclwvYW1mLykudGVzdCh1cmwpKXsKICAgIHJldHVybiBwcm94aWVzOwogIH0KICBpZigoL15hcGlcLmFiY1wuY29t JHxedzg4XC5nb1wuY29tJC8pLnRlc3QoaG9zdCkpewogICAgcmV0dXJuIHByb3hpZXM7CiAgfQogIGlmKCgvXih3d3dcLik/dGhld2JcLmNvbSQvKS50ZXN0KGhvc3QpKXsKICAgIHJldHVybiBwcm94aWVzOwogIH0KICBpZigoL14od3d3XC58ZXh0XC4pP2xhc3RcLmZtJC8pLnRlc3QoaG9zdCkpewogICAgcmV0dXJuICdQUk 9YWSAnK3BbMl0rJzo4MCc7CiAgfQogIGlmKGNvdW50cnkgIT09ICdHQicgJiYgKCgvXm1lZGlhXC5tdHZuc2VydmljZXNcLmNvbSQvKS50ZXN0KGhvc3QpIHx8ICgvXmludGxcLmVzcGVyYW50b1wu bXR2aVwuY29tJC8pLnRlc3QoaG9zdCkpICYmICgvbmlja1wuY29cLnVrLykudGVzdCh1cmwpICYmICgvXC5zd2YvKS50ZXN0KHVybCkgPT09IGZhbHNlKXsKICAgIHJldHVybiB1a3Byb3hpZXM7Ci AgfQogIGlmKAogICAgKC9ebWVkaWFcLm10dm5zZXJ2aWNlc1wuY29tJC8pLnRlc3QoaG9zdCkKICAgIHx8KC93d3dcLnNwaWtlXC5jb21cL2ZlZWRzXC9tZWRpYWdlbi8pLnRlc3QodXJsKQogICAg fHwoL1wvd2lkZ2V0c1wvZ2VvXC9nZW9sb2FkXC5qaHRtbC8pLnRlc3QodXJsKQogICAgfHwoL1wvaW5jbHVkZXNcL2dlb1wuamh0bWwvKS50ZXN0KHVybCkKICAgIHx8KC9hY3Rpdml0eVwuZmx1eF wuY29tXC9nZW9cLmh0bWwvKS50ZXN0KHVybCkKICAgIHx8KC9cL21lZGlhR2VuXC5qaHRtbC8pLnRlc3QodXJsKQogICAgfHwoL2dlb2NoZWNrXC50dXJuZXJcLnR2XC5lZGdlc3VpdGVcLm5ldC8p LnRlc3QoaG9zdCkKICApewogICAgcmV0dXJuIHByb3hpZXM7CiAgfQogIGlmKCgvXm11c2ljXC50d2l0dGVyXC5jb20kLykudGVzdChob3N0KSAmJiBbJ0FVJywnR0InLCdVUycsJ0NBJywnTlonLC dJRSddLmluZGV4T2YoY291bnRyeSkgPT09IC0xKXsKICAgIHJldHVybiBwcm94aWVzOwogIH0KICBpZigoL152aWRlb1wucXVlcnlcLnlhaG9vXC5jb20kLykudGVzdChob3N0KSAmJiAoL3lhaG9v XC5tZWRpYVwudmlkZW9cLnN0cmVhbXMvKS50ZXN0KHVybCkpewogICAgcmV0dXJuIHByb3hpZXM7CiAgfQogIGlmKCgvbmV0ZmxpeFwuY29tXC9GaWxlUGFja2FnZUdldHRlci9pKS50ZXN0KHVybC kpewogICAgcmV0dXJuIG5ldGZsaXhfcHJveGllczsKICB9CiAgaWYoKC9zb25nemFcLmNvbVwvKGFwaXxhZHZlcnRpc2luZylcL3xodWx1XC5jb21cL21vemFydFwvLip8XC4oaWNvfGpwZ3xwbmd8 Z2lmfG1wM3xjc3N8bXA0fGZsdnxzd2Z8anNvbikoXD8uKik/JHxeY3JhY2tsZVwuY29tXC9mbGFzaFwvJC8pLnRlc3QodXJsKXx8KC8oXnByZXNlbnRhdGlvbnRyYWNraW5nfGJsb2d8c2lnbnVwKVwubmV0ZmxpeFwuY29tJHxeKHJ8cHx0MnxsbFwuYXx0fHQtbD N8YWRzfGFzc2V0c3x1cmxjaGVjaylcLmh1bHVcLmNvbSR8XihzdGF0c3xibG9nfGF1ZGlvLip8Y29uc3QuKnxtZWRpYXNlcnZlci4qfGNvbnQuKilcLnBhbmRvcmFcLmNvbSQvKS50ZXN0KGhvc3Qp KXsKICAgIHJldHVybiAnRElSRUNUJzsKICB9CiAgaWYoY291bnRyeSAhPT0gIkJSIil7CiAgICB2YXIgYnJwcm94aWVzID0gYnJfY29uZmlnc1tteXNlZyAlIDRdOwogICAgaWYoKC9zZWN1cml0eV wudmlkZW9cLmdsb2JvXC5jb20kLykudGVzdChob3N0KSl7CiAgICAgIHJldHVybiBicnByb3hpZXM7CiAgICB9CiAgfQogIGlmKCgoL2VwaXhoZFwuY29tLykudGVzdChob3N0KSB8fCAoL2VwaXho ZHNcLWZcLmFrYW1haWhkXC5uZXQvKS50ZXN0KGhvc3QpKSAmJiBjb3VudHJ5ICE9PSAiVVMiKXsKICAgIHJldHVybiBwcm94aWVzOwogIH0KICBpZigoL3Zldm9cLmNvbS8pLnRlc3QoaG9zdCkpew ogICAgcmV0dXJuIHByb3hpZXM7CiAgfQogIGlmKCgvbmV4dGlzc3VlXC5jb20vKS50ZXN0KGhvc3QpKXsKICAgIHJldHVybiBwcm94aWVzOwogIH0KICBpZigoL2FjY291bnRcLmJlYXRzbXVzaWNc LmNvbSQvKS50ZXN0KGhvc3QpICYmIGNvdW50cnkgIT09ICJVUyIpewogICAgcmV0dXJuIHByb3hpZXM7CiAgfQogIGlmKCgvXihbXHdcLi1dK1wuKT9odWx1XC5jb20kLykudGVzdChob3N0KSl7Ci AgICByZXR1cm4gbmV0ZmxpeF9wcm94aWVzOwogIH0KICBpZigoL15zb3V0aHBhcmtcLmNjXC5jb20kLykudGVzdChob3N0KSAmJiBjb3VudHJ5ICE9PSAiVVMiKXsKICAgIHJldHVybiBuZXRmbGl4 X3Byb3hpZXM7CiAgfQogIGlmKCgvXihbXHdcLi1dK1wuKT9odWx1XC5qcCQvKS50ZXN0KGhvc3QpICYmIGNvdW50cnkgIT09ICJKUCIpewogICAgcmV0dXJuICdQUk9YWSAnKyBwWzddICsgJzo4MD sgRElSRUNUOyc7CiAgfQogIGlmKCgvKF4oW1x3XC4tXStcLik/KHNvbmd6YXx3d3dcLmloZWFydHx3d3dcLmNyYWNrbGV8dWxpdmV8ZnVuaW1hdGlvbilcLmNvbSQpLykudGVzdChob3N0KSl7CiAgICByZXR1cm4gcHJveGllczsKICB9CiAgaWYoKC9uZXRmbGl4XC 5jb21cLyhsb2dpbnxzaWdub3V0fGxvZ291dHxzaWduaW4pL2kpLnRlc3QodXJsKSAmJiBbJ1VTJywnR0InLCdDQSddLmluZGV4T2YoY291bnRyeSkgPj0gMCl7CiAgICByZXR1cm4gJ0RJUkVDVCc7 CiAgfQogIGlmKCgvKF4oW1x3XC4tXStcLik/bmV0ZmxpeHxwYW5kb3JhXC5jb20kKS8pLnRlc3QoaG9zdCkpewogICAgcmV0dXJuIG5ldGZsaXhfcHJveGllczsKICB9CiAgaWYoWydBRCcsJ0FVJywnQVQnLCdCRScsJ0RLJywnRk8nLCdGSScsJ0 ZSJywnREUnLCdJRScsJ0lUJywnTEknLCdMVScsJ0xWJywnTVgnLCdNQycsJ05MJywnTlonLCdOTycsJ1BMJywnUFQnLCdFUycsJ1NFJywnQ0gnLCdHQicsJ1VTJywnSEsnLCdFRScsJ0xUJywnTVkn LCdTRycsJ0lTJ10uaW5kZXhPZihjb3VudHJ5KSA9PT0gLTEpewogICAgaWYoKC9eKFtcd1wuLV0rXC4pP3Nwb3RpZnlcLmNvbS8pLnRlc3QoaG9zdCkpewogICAgICByZXR1cm4gJ1BST1hZICcrcF syXSsnOjgwJzsKICAgIH0KICB9CgogIHJldHVybiAnRElSRUNUJzsKfQ=="
FF NetworkProxy: "type", 2


Alt 15.03.2016, 14:54   #6
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



*kurz einmisch*

ViviPC hat eigentlich ein Problem mit Ihrem "WLAN-Provider", sie bekommt keine Verbindung ins Internet...woran genau das scheitert weiß ich nicht, das wird in ihrem ersten Thread vllt noch ans Licht kommen => http://www.trojaner-board.de/176754-...ufzubauen.html

Der base64 code ergibt decodiert in UTF-8 das hier:

Code:
ATTFilter
function FindProxyForURL(url, host){
  var country = 'DK';
  var myip = myIpAddress();
  var ipbits = myip.split('.');
  var myseg = parseInt(ipbits[3]);
  var p = [3223469900, 3223469902, 3226589467, 628805681, 3231406921, 3334957773, 1806365296, 1790653165, 1481686931, 3039417072, 3039418672, 3039418673, 3039418796, 2991561975, 2991554669];
  for(var i in p){
    n = p[i];
    var d = n%256;
    for(var j = 3; j > 0; j--){
      n = Math.floor(n/256);
      d = n%256 + '.' + d;
    }
    p[i] = d;
  }
  var proxy_configs = [
    'PROXY '+p[0]+':80; PROXY '+p[1]+':80; DIRECT',
    'PROXY '+p[1]+':80; PROXY '+p[0]+':80; DIRECT'
  ];
  var netflix_proxy_configs = [
    'PROXY '+p[6]+':80; PROXY '+p[5]+':80; DIRECT',
    'PROXY '+p[5]+':80; PROXY '+p[6]+':80; DIRECT'
  ];
  var uk_configs = [
    'PROXY '+p[3]+':80; PROXY '+p[8]+':80; PROXY '+p[13]+':80; PROXY '+p[14]+':80; DIRECT',
    'PROXY '+p[8]+':80; PROXY '+p[13]+':80; PROXY '+p[14]+':80; PROXY '+p[8]+':80; DIRECT',
    'PROXY '+p[13]+':80; PROXY '+p[14]+':80; PROXY '+p[3]+':80; PROXY '+p[8]+':80; DIRECT',
    'PROXY '+p[14]+':80; PROXY '+p[3]+':80; PROXY '+p[8]+':80; PROXY '+p[13]+':80; DIRECT',
  ];
  var br_configs = [
    'PROXY '+p[9]+':80; PROXY '+p[10]+':80; PROXY '+p[11]+':80; PROXY '+p[12]+':80; DIRECT',
    'PROXY '+p[12]+':80; PROXY '+p[9]+':80; PROXY '+p[10]+':80; PROXY '+p[11]+':80; DIRECT',
    'PROXY '+p[11]+':80; PROXY '+p[12]+':80; PROXY '+p[9]+':80; PROXY '+p[10]+':80; DIRECT',
    'PROXY '+p[10]+':80; PROXY '+p[11]+':80; PROXY '+p[12]+':80; PROXY '+p[9]+':80; DIRECT'
  ];
  var netflix_proxies = netflix_proxy_configs[myseg % 2];
  var proxies = proxy_configs[myseg % 2];
  if(country === 'US'){
    proxies = 'DIRECT';
  }
  if((/atv-(ps|ext)\.amazon\.com/).test(host) && country !== "US"){
    return proxies;
  }
  if(country !== 'GB'){
    var ukproxies = uk_configs[myseg % 4];
    if(
      ((/bbc\.co\.uk\/iplayer\/tv/).test(url)&&(/watchlive/).test(url))
      ||(/^(www|news)\.bbc\.co\.uk$/).test(host)
      ||((/playlists\.bbc\.co\.uk/).test(host)&&(/\.sxml/).test(url))
      ||(/bbc\.co\.uk\/iplayer/).test(url)
      ||(/open\.live\.bbc\.co\.uk/).test(host)
      ||(/bbc\.co\.uk\.edgesuite\.net\/crossdomain\.xml/).test(url)
      ||(/bbcfmhds\.vo\.llnwd\.net\/crossdomain\.xml/).test(url)
      ||(/bbc\.co\.uk\.edgesuite\.net\/hds-live\/livepkgr/).test(url)
      ||(/bbc\.co\.uk\.edgesuite\.net\/hds-live\/streams\/livepkgr/).test(url)
      ||(/bbcfmhds\.vo\.llnwd\.net\/hds-live\/streams\/livepkgr\/streams/).test(url)
      ||((/bbcfmhds\.vo\.llnwd\.net\/hds-live\/livepkgr/).test(url) && (/f4m/).test(url))
      ||(/bbc\.co\.uk\/mediaselector/).test(url)
      ||(/ais\.channel4\.com/).test(host)
      ||(/bbc\.co\.uk\/mobile\/apps\/iplayer/).test(url)
      ||(/itv\.com\/ukonly/).test(url)
      ||(/^(ned|ted|mercury|tom)\.itv\.com$/).test(host)
      ||(/bbci\.co\.uk/).test(host)
      ||(/live\.bbc\.co\.uk/).test(host)
      ||(/bbcmedia\.fcod\.llnwd\.net/).test(host)
      ||(/\/idle\/[a-zA-Z0-9\-_]{16}\//).test(url)
      ||(/\/send\/[a-zA-Z0-9\-_]{16}\//).test(url)
      ||(/londonlive\.co\.uk$/).test(host)
      ||(/ssl\.bbc\.co\.uk$/).test(host)
    ){
      return ukproxies;
    }
  }
  if((host == 'localhost')||(shExpMatch(host, 'localhost.*'))||(shExpMatch(host, '*.local'))||(host == '127.0.0.1')){
    return 'DIRECT';
  }
  if(host == 'ihost.netflix.com'){
    return 'DIRECT';
  }
  if(isPlainHostName(host) ||
    shExpMatch(host, '*.local') ||
    isInNet(dnsResolve(host), '10.0.0.0', '255.0.0.0') ||
    isInNet(dnsResolve(host), '172.16.0.0',  '255.240.0.0') ||
    isInNet(dnsResolve(host), '192.168.0.0',  '255.255.0.0') ||
    isInNet(dnsResolve(host), '127.0.0.0', '255.255.255.0')){
    return 'DIRECT';
  }
  if(shExpMatch(host, '/^\d+\.\d+\.\d+\.\d+$/g')){
    if(isInNet(host, '10.0.0.0', '255.0.0.0')||isInNet(host, '192.168.0.0', '255.255.0.0')) {
      return 'DIRECT';
    }
  }
  if((/(^link\.theplatform\.com$)|(^urs\.pbs\.org$)/).test(host)){
    return 'PROXY '+p[2]+':80';
  }
  if((/(^videocgi\.drt\.cbsig\.net$)|(^media\.cwtv\.com$)/).test(host)){
    return proxies;
  }
  if((/^www\.slacker\.com$/).test(host)&&(/\/(xslte\/userContent)|(wsv1\/session)/).test(url)){
    return proxies;
  }
  if((/^video\.nbcuni\.com$/).test(host)&&(/geo\.xml/).test(url)){
    return proxies;
  }
  if((/songza\.com\/config\.js|geofilter|\/video\/geolocation|geoCountry\.xml|geo-check|\.ism\/manifest|\/services\/viewer\/(htmlFederated|federated_f9)|\/services\/messagebroker\/amf/).test(url)){
    return proxies;
  }
  if((/^api\.abc\.com$|^w88\.go\.com$/).test(host)){
    return proxies;
  }
  if((/^(www\.)?thewb\.com$/).test(host)){
    return proxies;
  }
  if((/^(www\.|ext\.)?last\.fm$/).test(host)){
    return 'PROXY '+p[2]+':80';
  }
  if(country !== 'GB' && ((/^media\.mtvnservices\.com$/).test(host) || (/^intl\.esperanto\.mtvi\.com$/).test(host)) && (/nick\.co\.uk/).test(url) && (/\.swf/).test(url) === false){
    return ukproxies;
  }
  if(
    (/^media\.mtvnservices\.com$/).test(host)
    ||(/www\.spike\.com\/feeds\/mediagen/).test(url)
    ||(/\/widgets\/geo\/geoload\.jhtml/).test(url)
    ||(/\/includes\/geo\.jhtml/).test(url)
    ||(/activity\.flux\.com\/geo\.html/).test(url)
    ||(/\/mediaGen\.jhtml/).test(url)
    ||(/geocheck\.turner\.tv\.edgesuite\.net/).test(host)
  ){
    return proxies;
  }
  if((/^music\.twitter\.com$/).test(host) && ['AU','GB','US','CA','NZ','IE'].indexOf(country) === -1){
    return proxies;
  }
  if((/^video\.query\.yahoo\.com$/).test(host) && (/yahoo\.media\.video\.streams/).test(url)){
    return proxies;
  }
  if((/netflix\.com\/FilePackageGetter/i).test(url)){
    return netflix_proxies;
  }
  if((/songza\.com\/(api|advertising)\/|hulu\.com\/mozart\/.*|\.(ico|jpg|png|gif|mp3|css|mp4|flv|swf|json)(\?.*)?$|^crackle\.com\/flash\/$/).test(url)||(/(^presentationtracking|blog|signup)\.netflix\.com$|^(r|p|t2|ll\.a|t|t-l3|ads|assets|urlcheck)\.hulu\.com$|^(stats|blog|audio.*|const.*|mediaserver.*|cont.*)\.pandora\.com$/).test(host)){
    return 'DIRECT';
  }
  if(country !== "BR"){
    var brproxies = br_configs[myseg % 4];
    if((/security\.video\.globo\.com$/).test(host)){
      return brproxies;
    }
  }
  if(((/epixhd\.com/).test(host) || (/epixhds\-f\.akamaihd\.net/).test(host)) && country !== "US"){
    return proxies;
  }
  if((/vevo\.com/).test(host)){
    return proxies;
  }
  if((/nextissue\.com/).test(host)){
    return proxies;
  }
  if((/account\.beatsmusic\.com$/).test(host) && country !== "US"){
    return proxies;
  }
  if((/^([\w\.-]+\.)?hulu\.com$/).test(host)){
    return netflix_proxies;
  }
  if((/^southpark\.cc\.com$/).test(host) && country !== "US"){
    return netflix_proxies;
  }
  if((/^([\w\.-]+\.)?hulu\.jp$/).test(host) && country !== "JP"){
    return 'PROXY '+ p[7] + ':80; DIRECT;';
  }
  if((/(^([\w\.-]+\.)?(songza|www\.iheart|www\.crackle|ulive|funimation)\.com$)/).test(host)){
    return proxies;
  }
  if((/netflix\.com\/(login|signout|logout|signin)/i).test(url) && ['US','GB','CA'].indexOf(country) >= 0){
    return 'DIRECT';
  }
  if((/(^([\w\.-]+\.)?netflix|pandora\.com$)/).test(host)){
    return netflix_proxies;
  }
  if(['AD','AU','AT','BE','DK','FO','FI','FR','DE','IE','IT','LI','LU','LV','MX','MC','NL','NZ','NO','PL','PT','ES','SE','CH','GB','US','HK','EE','LT','MY','SG','IS'].indexOf(country) === -1){
    if((/^([\w\.-]+\.)?spotify\.com/).test(host)){
      return 'PROXY '+p[2]+':80';
    }
  }

  return 'DIRECT';
}
         
__________________
--> System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen

Alt 15.03.2016, 16:36   #7
ViviPC
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Hallo,

@cosinus: Der andere Thread enthält bis auf wenige Worte genau denselben Text wie hier. @Mathias: Ja, den Proxy habe ich rein gesetzt. Aber das Internet-Problem liegt leider nicht an Firefox oder dem Proxy; es hat auch vorher nicht funktioniert.

Danke für die Mühe!

Alt 16.03.2016, 14:24   #8
M-K-D-B
/// TB-Ausbilder
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Servus,


den WLAN-Treiber hast du schon deinstalliert und neu installiert?

Ich verstehe nicht ganz, inwiefern dein Problem etwas mit Malware zu tun hat...

Alt 16.03.2016, 14:35   #9
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Zitat:
Zitat von M-K-D-B Beitrag anzeigen
Ich verstehe nicht ganz, inwiefern dein Problem etwas mit Malware zu tun hat...
Vivi ist hier nur, weil Felix erst helfen wollte, wenn der Rechner vom Malwareteam freigegeben wurde
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 16.03.2016, 15:52   #10
ViviPC
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Hi,

ja, Felix meinte, es könne ein Malware-Problem sein, daher habe ich diesen Thread geöffnet.
Falls du nicht denkst, dass es ein solches Problem ist, wende ich mich wieder an Felix

Ich habe einige Male den W-Lan-Treiber über den Geräte-Manager aktualisiert, aber das hat nichts gebracht.

Alt 16.03.2016, 16:19   #11
M-K-D-B
/// TB-Ausbilder
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Servus,


ok, wir lassen ein paar Tools laufen, ob Malware da ist (was ich aber nicht glaube, nur um sicher zu gehen)...




Schritt 1
Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).






Schritt 2
Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.







Schritt 3

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.







Schritt 4
  • Starte die FRST.exe erneut. Setze einen Haken vor Addition.txt und drücke auf Scan.
  • FRST erstellt nun zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.






Bitte poste mit deiner nächsten Antwort
  • die Logdatei von AdwCleaner,
  • die Logdatei von MBAM,
  • die Logdatei von JRT,
  • die beiden neuen Logdateien von FRST.

Alt 17.03.2016, 18:23   #12
ViviPC
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Hallo,

ok, hier alle fünf Logdateien.

Den AdwCleaner musste ich nicht neu starten, denn er hat nichts gefunden. Trotzdem die Logdatei hier:

Code:
ATTFilter
# AdwCleaner v5.102 - Bericht erstellt am 16/03/2016 um 21:47:14
# Aktualisiert am 13/03/2016 von Xplode
# Datenbank : 2016-03-16.1 [Server]
# Betriebssystem : Windows 10 Pro  (x64)
# Benutzername : Vanessa - DESKTOP-1TA3T6T
# Gestartet von : C:\Users\Vanessa\Desktop\AdwCleaner_5.102.exe
# Option : Suchlauf
# Unterstützung : hxxp://toolslib.net/forum

***** [ Dienste ] *****


***** [ Ordner ] *****


***** [ Dateien ] *****


***** [ DLL ] *****


***** [ Verknüpfungen ] *****


***** [ Aufgabenplanung ] *****


***** [ Registrierungsdatenbank ] *****


***** [ Internetbrowser ] *****


*************************

C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [659 Bytes] - [16/03/2016 21:47:14]

########## EOF - C:\Program Files (x86)\AdwCleaner\AdwCleaner[S1].txt - [751 Bytes] ##########
         
Die MBAM, ebenfalls ohne Funde:

Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlaufdatum: 17.03.2016
Suchlaufzeit: 17:41
Protokolldatei: mbam.txt
Administrator: Ja

Version: 2.2.0.1024
Malware-Datenbank: v2016.03.17.04
Rootkit-Datenbank: v2016.03.12.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: Vanessa

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 323289
Abgelaufene Zeit: 10 Min., 39 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(keine bösartigen Elemente erkannt)

Module: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)

Registrierungswerte: 0
(keine bösartigen Elemente erkannt)

Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)

Ordner: 0
(keine bösartigen Elemente erkannt)

Dateien: 0
(keine bösartigen Elemente erkannt)

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)
         
Die JRT-Logdatei:

Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.4 (03.14.2016)
Operating System: Windows 10 Pro x64 
Ran by Vanessa (Administrator) on 17.03.2016 at 17:56:22,94
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 1 

Successfully deleted: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\search.lnk (Shortcut) 

Deleted the following from C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\33euou60.default\prefs.js
user_pref(browser.urlbar.suggest.searches, true);



Registry: 0 





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 17.03.2016 at 17:57:17,71
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
Und die beiden FRSTs:

FRST-Teil 1:

Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
durchgeführt von Vanessa (Administrator) auf DESKTOP-1TA3T6T (17-03-2016 17:58:24)
Gestartet von C:\Users\Vanessa\Desktop
Geladene Profile: Vanessa (Verfügbare Profile: Vanessa)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.113_none_7689896a26389b16\TiWorker.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2016-03-04] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16404224 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [5062384 2016-03-04] (Realtek semiconductor)
HKU\S-1-5-21-1189241312-1818108196-3406372783-1001\...\RunOnce: [Uninstall C:\Users\Vanessa\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vanessa\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{9cb4147f-a930-4a43-ae28-3ce5aa9e2f52}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{efbabfc9-ffbd-4c3a-bcf6-c03c5a64a1a3}: [DhcpNameServer] 10.143.181.130 10.143.189.130
Tcpip\..\Interfaces\{fc559a83-3708-49a8-bb36-9be4b4f2ce79}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================

FireFox:
========
FF ProfilePath: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\33euou60.default
FF NetworkProxy: "autoconfig_url", "data:application/x-ns-proxy-autoconfig;base64,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"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll [2016-03-10] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll [2016-03-10] ()
FF Extension: Adblock Plus - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\33euou60.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-03-10]
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-03-04] [ist nicht signiert]

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2016-03-04] (ELAN Microelectronics Corp.)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [365032 2016-03-04] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2016-01-04] ()
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3832224 2016-01-04] (Intel® Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [299280 2016-03-04] (Intel Corporation)
S3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [194320 2016-03-04] (Intel Corporation)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3515664 2016-01-21] (Intel Corporation)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2016-03-04] (Realtek Semiconductor Corp.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [887552 2016-03-04] (Realtek                                            )
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3069680 2016-03-04] (Realtek Semiconductor Corp.)
S3 ssudqcfilter; C:\Windows\System32\drivers\ssudqcfilter.sys [57648 2016-03-04] (QUALCOMM Incorporated)
R3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [23040 2015-10-30] (Microsoft Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-17 17:57 - 2016-03-17 17:57 - 00000812 _____ C:\Users\Vanessa\Desktop\JRT.txt
2016-03-17 17:54 - 2016-03-17 17:56 - 01610352 _____ (Malwarebytes) C:\Users\Vanessa\Desktop\JRT.exe
2016-03-17 17:53 - 2016-03-17 17:53 - 00001198 _____ C:\Users\Vanessa\Desktop\mbam.txt
2016-03-17 17:40 - 2016-03-17 17:40 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-03-17 17:39 - 2016-03-17 17:39 - 00001175 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-03-17 17:39 - 2016-03-17 17:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-03-17 17:39 - 2016-03-17 17:39 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-03-17 17:39 - 2016-03-17 17:39 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2016-03-17 17:39 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-03-17 17:39 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-03-17 17:39 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-03-16 21:56 - 2016-03-17 17:39 - 22908888 _____ (Malwarebytes ) C:\Users\Vanessa\Desktop\mbam-setup-2.2.0.1024.exe
2016-03-16 21:49 - 2016-03-16 21:49 - 00000852 _____ C:\Users\Vanessa\Desktop\AdwCleaner[S1].txt
2016-03-16 21:41 - 2016-03-16 21:47 - 00000000 ____D C:\Program Files (x86)\AdwCleaner
2016-03-16 21:27 - 2016-03-16 21:41 - 01527296 _____ C:\Users\Vanessa\Desktop\AdwCleaner_5.102.exe
2016-03-16 15:32 - 2016-03-16 15:32 - 00026823 _____ C:\Users\Vanessa\Desktop\view.htm
2016-03-14 21:37 - 2016-03-14 21:39 - 00062578 _____ C:\Users\Vanessa\Desktop\TDSSKiller.3.1.0.9_14.03.2016_21.37.32_log.txt
2016-03-14 21:33 - 2016-03-14 21:34 - 00019064 _____ C:\Users\Vanessa\Desktop\Addition.txt
2016-03-14 21:32 - 2016-03-17 17:59 - 00017385 _____ C:\Users\Vanessa\Desktop\FRST.txt
2016-03-14 21:32 - 2016-03-17 17:58 - 00000000 ____D C:\FRST
2016-03-14 21:30 - 2016-03-14 21:37 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Vanessa\Desktop\tdsskiller.exe
2016-03-14 21:30 - 2016-03-14 21:31 - 02374144 _____ (Farbar) C:\Users\Vanessa\Desktop\FRST64.exe
2016-03-14 17:42 - 2016-03-14 17:42 - 00000000 ___HD C:\WINDOWS\system32\WLANProfiles
2016-03-14 17:42 - 2016-03-14 17:42 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\ProgramData\Package Cache
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\ProgramData\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files\Common Files\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files (x86)\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files (x86)\Cisco
2016-03-14 17:36 - 2016-03-14 17:37 - 19723288 _____ (Intel(R) Corporation) C:\Users\Vanessa\Downloads\Wireless_18.33.0_Driver64_Win10.exe
2016-03-14 17:34 - 2016-03-14 17:39 - 100745304 _____ (Intel(R) Corporation) C:\Users\Vanessa\Downloads\Wireless_18.33.0_PROSet64_Win10.exe
2016-03-12 10:06 - 2016-03-12 10:06 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-03-11 19:30 - 2016-03-11 19:30 - 00000000 ____D C:\Users\Vanessa\AppData\Local\PeerDistRepub
2016-03-11 17:07 - 2016-03-11 17:07 - 00000000 ____D C:\ProgramData\GameHouse
2016-03-11 01:55 - 2016-03-16 15:10 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\All Users
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Vorlagen
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Startmenü
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Dokumente
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Dokumente und Einstellungen
2016-03-11 01:50 - 2016-03-17 09:52 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-03-11 01:50 - 2016-03-11 01:50 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____D C:\WINDOWS\system32\DAX2
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____D C:\Program Files\Realtek
2016-03-11 01:50 - 2016-03-10 17:01 - 00000000 ____D C:\Intel
2016-03-11 01:50 - 2016-03-04 23:48 - 00091128 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2016-03-11 01:49 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files\Intel
2016-03-11 01:48 - 2016-03-11 01:48 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2016-03-11 01:46 - 2016-03-11 12:21 - 00194272 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-11 01:46 - 2016-03-11 01:46 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-03-10 20:01 - 2016-03-10 20:01 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Macromedia
2016-03-10 20:01 - 2016-03-10 20:01 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Macromedia
2016-03-10 19:56 - 2016-03-10 19:57 - 00000000 ____D C:\Users\Vanessa\Desktop\Sicherung aller Dateien
2016-03-10 19:51 - 2016-03-17 17:50 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-03-10 19:51 - 2016-03-10 19:52 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Adobe
2016-03-10 19:51 - 2016-03-10 19:51 - 00003860 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-03-10 18:22 - 2015-12-09 04:39 - 00301728 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-03-10 18:20 - 2016-03-10 18:21 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-10 18:20 - 2016-03-10 18:20 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-10 17:27 - 2016-03-10 17:36 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Mozilla
2016-03-10 17:27 - 2016-03-10 17:27 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-03-10 17:27 - 2016-03-10 17:27 - 00001220 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-03-10 17:27 - 2016-03-10 17:27 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Mozilla
2016-03-10 17:27 - 2016-03-10 17:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-10 17:27 - 2016-03-10 17:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-03-10 17:25 - 2016-03-10 17:26 - 00242416 _____ C:\Users\Vanessa\Downloads\Firefox Setup Stub 45.0.exe
2016-03-10 17:25 - 2016-03-10 17:25 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2016-03-10 17:23 - 2016-03-10 17:23 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Comms
2016-03-10 17:13 - 2016-03-10 17:13 - 00000000 ____D C:\Users\Vanessa\Desktop\Zertifikate
2016-03-10 17:09 - 2016-03-10 17:09 - 03370713 _____ C:\Users\Vanessa\Desktop\WLan Hotzonne.pdf
2016-03-10 17:09 - 2016-03-10 17:09 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-03-10 17:07 - 2016-03-16 15:15 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-10 17:07 - 2016-03-11 17:08 - 00002393 _____ C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-03-10 17:07 - 2016-03-11 17:08 - 00000000 ___RD C:\Users\Vanessa\OneDrive
2016-03-10 17:07 - 2016-03-10 17:07 - 00000000 ____D C:\Users\Vanessa\AppData\Local\NetworkTiles
2016-03-10 17:07 - 2016-03-10 17:07 - 00000000 ____D C:\Users\Vanessa\AppData\Local\MicrosoftEdge
2016-03-10 17:06 - 2016-03-10 17:06 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-03-10 17:05 - 2016-03-10 17:05 - 00000000 ____D C:\Users\Vanessa\AppData\Local\ActiveSync
2016-03-10 17:04 - 2016-03-10 17:04 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Publishers
2016-03-10 17:03 - 2016-03-17 09:52 - 00000000 __SHD C:\Users\Vanessa\IntelGraphicsProfiles
2016-03-10 17:03 - 2016-03-14 17:42 - 00000000 ____D C:\Users\Vanessa
2016-03-10 17:03 - 2016-03-11 12:34 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-10 17:03 - 2016-03-10 17:26 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Packages
2016-03-10 17:03 - 2016-03-10 17:03 - 00000020 ___SH C:\Users\Vanessa\ntuser.ini
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Vorlagen
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Startmenü
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Netzwerkumgebung
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Lokale Einstellungen
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Eigene Dateien
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Druckumgebung
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Documents\Eigene Videos
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Documents\Eigene Musik
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Documents\Eigene Bilder
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\AppData\Local\Verlauf
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\AppData\Local\Anwendungsdaten
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Anwendungsdaten
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Adobe
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 ____D C:\Users\Vanessa\AppData\Local\VirtualStore
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 ____D C:\Users\Vanessa\AppData\Local\TileDataLayer
2016-03-10 16:57 - 2016-03-10 16:57 - 00000000 ____D C:\ProgramData\USOShared
2016-03-10 16:57 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-03-10 16:45 - 2016-03-10 16:45 - 00000000 _____ C:\Recovery.txt
2016-03-10 16:42 - 2016-03-10 16:58 - 00000000 ___DC C:\WINDOWS\Panther
2016-03-10 16:42 - 2016-03-10 16:42 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-03-10 16:42 - 2016-03-10 16:42 - 00000000 ____D C:\WINDOWS\InfusedApps
2016-03-10 16:41 - 2016-03-10 16:41 - 00000000 ____D C:\Program Files\Elantech
2016-03-10 16:40 - 2016-03-10 16:40 - 00000000 ____D C:\WINDOWS\Setup
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\OCR
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files\MSBuild
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-03-10 16:38 - 2016-03-16 15:15 - 00776766 _____ C:\WINDOWS\system32\perfh007.dat
2016-03-10 16:38 - 2016-03-16 15:15 - 00155544 _____ C:\WINDOWS\system32\perfc007.dat
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\de
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\0409
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\winrm
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\WCN
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\de
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\0409
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-03-10 16:38 - 2016-03-10 16:37 - 00305634 _____ C:\WINDOWS\system32\perfi007.dat
2016-03-10 16:38 - 2016-03-10 16:37 - 00040390 _____ C:\WINDOWS\system32\perfd007.dat
2016-03-10 16:34 - 2016-03-08 08:12 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-03-10 16:34 - 2016-03-08 08:12 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-10 16:32 - 2016-03-17 09:57 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-10 16:32 - 2016-03-17 09:56 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-10 16:32 - 2016-03-15 08:41 - 00000000 ____D C:\WINDOWS\appcompat
2016-03-10 16:32 - 2016-03-14 00:25 - 00000000 ____D C:\WINDOWS\rescache
2016-03-10 16:32 - 2016-03-11 01:55 - 00000000 ____D C:\WINDOWS\CSC
2016-03-10 16:32 - 2016-03-11 01:55 - 00000000 ____D C:\Program Files\Windows NT
2016-03-10 16:32 - 2016-03-11 01:53 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-03-10 16:32 - 2016-03-11 01:27 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 __RSD C:\WINDOWS\Media
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\Provisioning
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 16:32 - 2016-03-11 01:25 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-10 16:32 - 2016-03-11 01:25 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-10 16:32 - 2016-03-11 01:25 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-10 16:32 - 2016-03-10 17:21 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-03-10 16:32 - 2016-03-10 17:04 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-03-10 16:32 - 2016-03-10 17:04 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-03-10 16:32 - 2016-03-10 17:03 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-03-10 16:32 - 2016-03-10 16:57 - 00000000 ____D C:\WINDOWS\system32\spool
2016-03-10 16:32 - 2016-03-10 16:57 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-03-10 16:32 - 2016-03-10 16:57 - 00000000 ____D C:\ProgramData\USOPrivate
2016-03-10 16:32 - 2016-03-10 16:45 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-03-10 16:32 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-03-10 16:32 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\setup
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\Com
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\IME
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\Help
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Windows Defender
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Common Files\System
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-03-10 16:32 - 2016-03-10 16:33 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __RHD C:\Users\Public\Libraries
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\system32\Nui
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___RD C:\WINDOWS\DesktopTileResources
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Web
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Vss
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\tracing
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\TAPI
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\ras
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SystemResources
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SystemApps
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\winevt
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\ras
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\IME
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\icsxml
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\ias
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\downlevel
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\System
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SKB
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\ShellNew
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\security
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\schemas
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SchCache
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Resources
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Registration
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\PLA
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Performance
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\ModemLogs
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\L2Schemas
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\InputMethod
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Globalization
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Cursors
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Branding
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\addins
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\ProgramData\Comms
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\Program Files\Common Files\Services
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\Program Files (x86)\Windows NT
2016-03-10 16:32 - 2016-03-10 16:29 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2016-03-10 16:32 - 2016-03-10 16:29 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2016-03-10 16:32 - 2016-03-10 16:29 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2016-03-10 16:32 - 2016-03-10 16:29 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2016-03-10 16:32 - 2016-03-10 16:29 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2016-03-10 16:32 - 2016-03-10 16:29 - 00015462 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-03-10 16:32 - 2016-03-10 16:29 - 00008798 _____ C:\WINDOWS\SysWOW64\icrav03.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00008798 _____ C:\WINDOWS\system32\icrav03.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2016-03-10 16:32 - 2016-03-10 16:29 - 00001988 _____ C:\WINDOWS\SysWOW64\ticrf.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00001988 _____ C:\WINDOWS\system32\ticrf.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2016-03-10 16:32 - 2016-03-10 16:29 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2016-03-10 16:32 - 2016-03-10 16:29 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2016-03-10 16:32 - 2016-03-10 16:29 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2016-03-10 16:32 - 2016-03-10 16:29 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2016-03-10 16:32 - 2016-03-10 16:29 - 00000389 _____ C:\WINDOWS\system32\AutoWorkplace.exe.config
2016-03-10 16:32 - 2016-03-10 16:29 - 00000219 _____ C:\WINDOWS\system.ini
2016-03-10 16:32 - 2016-03-10 16:29 - 00000092 _____ C:\WINDOWS\win.ini
2016-03-10 16:31 - 2016-03-16 16:29 - 00000000 ____D C:\WINDOWS\INF
2016-03-10 16:21 - 2016-03-17 16:56 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-10 16:17 - 2016-03-16 15:10 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-03-10 16:17 - 2016-03-10 16:57 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-10 16:17 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\servicing
2016-03-10 16:17 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\SMI
2016-03-10 16:17 - 2015-10-30 07:33 - 00000164 _____ C:\WINDOWS\system32\config\FP
2016-03-10 16:08 - 2016-03-10 16:45 - 00000000 ___HD C:\$SysReset
2016-03-09 08:35 - 2016-03-01 06:31 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-09 08:35 - 2016-03-01 06:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-09 08:35 - 2016-02-24 10:52 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-03-09 08:35 - 2016-02-24 10:51 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 08:35 - 2016-02-24 10:48 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-09 08:35 - 2016-02-24 10:47 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-09 08:35 - 2016-02-24 10:40 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-09 08:35 - 2016-02-24 10:34 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-09 08:35 - 2016-02-24 10:28 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-03-09 08:35 - 2016-02-24 10:15 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-03-09 08:35 - 2016-02-24 09:58 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-09 08:35 - 2016-02-24 09:54 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-03-09 08:35 - 2016-02-24 09:51 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-09 08:35 - 2016-02-24 09:50 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-03-09 08:35 - 2016-02-24 09:46 - 06607080 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-09 08:35 - 2016-02-24 09:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 08:35 - 2016-02-24 09:39 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-03-09 08:35 - 2016-02-24 09:39 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-03-09 08:35 - 2016-02-24 09:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-03-09 08:35 - 2016-02-24 09:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 08:35 - 2016-02-24 09:11 - 01997152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-09 08:35 - 2016-02-24 09:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-03-09 08:35 - 2016-02-24 09:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-03-09 08:35 - 2016-02-24 09:11 - 00652392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-03-09 08:35 - 2016-02-24 09:11 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-09 08:35 - 2016-02-24 09:11 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-09 08:35 - 2016-02-24 09:10 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 08:35 - 2016-02-24 09:10 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-09 08:35 - 2016-02-24 09:09 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-09 08:35 - 2016-02-24 09:09 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-09 08:35 - 2016-02-24 09:06 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-03-09 08:35 - 2016-02-24 08:59 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-03-09 08:35 - 2016-02-24 08:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 08:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 08:35 - 2016-02-24 08:38 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-03-09 08:35 - 2016-02-24 08:38 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 08:35 - 2016-02-24 08:37 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 08:35 - 2016-02-24 08:36 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 08:35 - 2016-02-24 08:35 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-03-09 08:35 - 2016-02-24 08:35 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-03-09 08:35 - 2016-02-24 08:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-09 08:35 - 2016-02-24 08:35 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-03-09 08:35 - 2016-02-24 08:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-09 08:35 - 2016-02-24 08:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-09 08:35 - 2016-02-24 08:31 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-03-09 08:35 - 2016-02-24 08:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-03-09 08:35 - 2016-02-24 08:28 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 08:35 - 2016-02-24 08:23 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-03-09 08:35 - 2016-02-24 08:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-09 08:35 - 2016-02-24 08:23 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 08:22 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 08:35 - 2016-02-24 08:20 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-03-09 08:35 - 2016-02-24 08:20 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-03-09 08:35 - 2016-02-24 08:20 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 08:35 - 2016-02-24 08:19 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-03-09 08:35 - 2016-02-24 08:19 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-09 08:35 - 2016-02-24 08:15 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-03-09 08:35 - 2016-02-24 08:14 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-03-09 08:35 - 2016-02-24 08:13 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 08:35 - 2016-02-24 08:12 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-03-09 08:35 - 2016-02-24 08:12 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 08:35 - 2016-02-24 08:10 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-03-09 08:35 - 2016-02-24 08:09 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 08:35 - 2016-02-24 08:09 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-03-09 08:35 - 2016-02-24 08:07 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 08:35 - 2016-02-24 08:05 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-03-09 08:35 - 2016-02-24 08:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-03-09 08:35 - 2016-02-24 08:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 08:35 - 2016-02-24 08:01 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 08:35 - 2016-02-24 08:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 08:35 - 2016-02-24 08:01 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-03-09 08:35 - 2016-02-24 08:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 08:35 - 2016-02-24 07:59 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 08:35 - 2016-02-24 07:59 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 08:35 - 2016-02-24 07:59 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-03-09 08:35 - 2016-02-24 07:58 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-09 08:35 - 2016-02-24 07:55 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-03-09 08:35 - 2016-02-24 07:55 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 08:35 - 2016-02-24 07:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-03-09 08:35 - 2016-02-24 07:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 08:35 - 2016-02-24 07:54 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-09 08:35 - 2016-02-24 07:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 08:35 - 2016-02-24 07:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 07:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-03-09 08:35 - 2016-02-24 07:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-03-09 08:35 - 2016-02-24 07:52 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-09 08:35 - 2016-02-24 07:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-03-09 08:35 - 2016-02-24 07:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-03-09 08:35 - 2016-02-24 07:49 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-03-09 08:35 - 2016-02-24 07:47 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-03-09 08:35 - 2016-02-24 07:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-03-09 08:35 - 2016-02-24 07:43 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-03-09 08:35 - 2016-02-24 07:43 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 08:35 - 2016-02-24 07:42 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-03-09 08:35 - 2016-02-24 07:42 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-03-09 08:35 - 2016-02-24 07:41 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 08:35 - 2016-02-24 07:41 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 08:35 - 2016-02-24 07:40 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-09 08:35 - 2016-02-24 07:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-03-09 08:35 - 2016-02-24 07:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 07:39 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-09 08:35 - 2016-02-24 07:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2016-03-09 08:35 - 2016-02-24 07:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-03-09 08:35 - 2016-02-24 07:36 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 08:35 - 2016-02-24 07:34 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-03-09 08:35 - 2016-02-24 07:34 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-03-09 08:35 - 2016-02-24 07:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-03-09 08:35 - 2016-02-24 07:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-03-09 08:35 - 2016-02-24 07:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
2016-03-09 08:35 - 2016-02-24 07:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2016-03-09 08:35 - 2016-02-24 07:28 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 08:35 - 2016-02-24 07:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-03-09 08:35 - 2016-02-24 07:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2016-03-09 08:35 - 2016-02-24 07:25 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 08:35 - 2016-02-24 07:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2016-03-09 08:35 - 2016-02-24 07:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2016-03-09 08:35 - 2016-02-24 07:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 08:35 - 2016-02-24 07:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-03-09 08:35 - 2016-02-24 07:18 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-09 08:35 - 2016-02-24 07:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-03-09 08:35 - 2016-02-24 07:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2016-03-09 08:35 - 2016-02-24 07:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-03-09 08:35 - 2016-02-24 07:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-09 08:35 - 2016-02-24 07:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-03-09 08:35 - 2016-02-24 07:11 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-09 08:35 - 2016-02-24 07:09 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-03-09 08:35 - 2016-02-24 07:09 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-03-09 08:35 - 2016-02-24 07:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-03-09 08:35 - 2016-02-24 07:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-09 08:35 - 2016-02-24 07:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-09 08:35 - 2016-02-24 07:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-03-09 08:35 - 2016-02-24 07:07 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-03-09 08:35 - 2016-02-24 07:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-09 08:35 - 2016-02-24 07:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-03-09 08:35 - 2016-02-24 07:01 - 01831936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 08:35 - 2016-02-24 07:00 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-09 08:35 - 2016-02-24 07:00 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-03-09 08:35 - 2016-02-24 06:57 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 08:35 - 2016-02-24 06:55 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 08:35 - 2016-02-24 06:43 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-03-09 08:35 - 2016-02-24 06:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-09 08:35 - 2016-02-24 06:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2016-03-09 08:35 - 2016-02-24 06:20 - 22376960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-09 08:35 - 2016-02-24 06:18 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-09 08:35 - 2016-02-24 06:12 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-09 08:35 - 2016-02-24 06:12 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-03-09 08:35 - 2016-02-24 06:10 - 24600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-09 08:35 - 2016-02-24 06:09 - 06972416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 08:35 - 2016-02-24 06:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-09 08:35 - 2016-02-24 06:03 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-09 08:35 - 2016-02-24 05:59 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-03-09 08:35 - 2016-02-24 05:55 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-03-06 18:20 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-03-06 18:20 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-06 18:20 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-03-06 18:20 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-06 18:20 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-06 18:20 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-05 13:35 - 2016-02-23 12:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-05 13:35 - 2016-02-23 11:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-05 13:35 - 2016-02-23 11:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-05 13:35 - 2016-02-23 11:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-05 13:35 - 2016-02-23 11:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-05 13:35 - 2016-02-23 11:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-05 13:35 - 2016-02-23 10:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-05 13:35 - 2016-02-23 10:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-05 13:35 - 2016-02-23 10:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-03-05 13:35 - 2016-02-23 10:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-03-05 13:35 - 2016-02-23 10:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-05 13:35 - 2016-02-23 08:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-05 13:35 - 2016-02-23 08:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-05 13:35 - 2016-02-23 07:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-05 13:35 - 2016-02-23 07:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-03-05 13:35 - 2016-02-23 07:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-05 13:35 - 2016-02-23 07:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-03-05 13:35 - 2016-02-23 07:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-05 13:35 - 2016-02-23 07:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-05 13:35 - 2016-02-23 07:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-05 13:35 - 2016-02-09 04:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-03-05 13:35 - 2016-02-09 04:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-05 13:35 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation)
         

Alt 17.03.2016, 18:24   #13
ViviPC
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



FRST-Teil 2:

Code:
ATTFilter
C:\WINDOWS\explorer.exe
2016-03-05 13:35 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-03-05 13:35 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-03-05 13:35 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-03-05 13:35 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-03-05 13:35 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-03-05 13:35 - 2016-01-16 07:21 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-03-05 13:35 - 2016-01-16 06:45 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-03-05 13:35 - 2016-01-16 06:38 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-03-05 13:35 - 2016-01-16 06:35 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-03-05 13:35 - 2016-01-16 06:31 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-03-05 13:35 - 2016-01-16 06:29 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-03-05 13:35 - 2016-01-16 06:24 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-03-05 13:35 - 2016-01-16 06:21 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-03-05 13:35 - 2016-01-16 06:20 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-03-05 13:35 - 2016-01-16 06:20 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-03-05 13:35 - 2016-01-16 06:18 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-03-05 13:35 - 2016-01-16 06:17 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-03-05 13:35 - 2016-01-16 06:16 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-03-05 13:35 - 2016-01-16 06:15 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-03-05 13:35 - 2016-01-05 03:45 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-03-05 13:35 - 2016-01-05 03:42 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-03-05 13:35 - 2016-01-05 03:37 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-03-05 13:35 - 2016-01-05 03:33 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-03-05 13:35 - 2016-01-05 02:43 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-03-05 13:35 - 2015-12-07 05:57 - 00973664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-03-05 13:35 - 2015-12-07 05:55 - 01281376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-03-05 13:35 - 2015-12-07 05:10 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-03-05 13:35 - 2015-11-24 09:49 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-03-05 13:35 - 2015-11-24 08:57 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-03-05 13:35 - 2015-11-24 08:29 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-03-05 13:35 - 2015-11-22 10:54 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2016-03-05 13:35 - 2015-11-22 10:42 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2016-03-05 13:35 - 2015-11-22 10:34 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-03-05 13:35 - 2015-11-22 10:27 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-03-05 13:35 - 2015-11-22 10:26 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-03-05 13:35 - 2015-11-22 10:20 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-03-05 13:35 - 2015-11-22 10:17 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-03-05 13:35 - 2015-11-13 07:43 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-03-05 13:35 - 2015-11-13 06:39 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-03-05 13:35 - 2015-11-13 06:19 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-03-05 13:34 - 2016-02-23 12:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-05 13:34 - 2016-02-23 12:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-05 13:34 - 2016-02-23 12:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-05 13:34 - 2016-02-23 12:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-05 13:34 - 2016-02-23 12:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-05 13:34 - 2016-02-23 12:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-05 13:34 - 2016-02-23 12:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-05 13:34 - 2016-02-23 12:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-05 13:34 - 2016-02-23 12:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-05 13:34 - 2016-02-23 11:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-03-05 13:34 - 2016-02-23 11:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-03-05 13:34 - 2016-02-23 11:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-05 13:34 - 2016-02-23 11:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-05 13:34 - 2016-02-23 11:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-05 13:34 - 2016-02-23 11:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-05 13:34 - 2016-02-23 11:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-05 13:34 - 2016-02-23 11:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 11:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-05 13:34 - 2016-02-23 11:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-05 13:34 - 2016-02-23 11:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-05 13:34 - 2016-02-23 11:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-05 13:34 - 2016-02-23 11:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-03-05 13:34 - 2016-02-23 11:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-05 13:34 - 2016-02-23 10:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-05 13:34 - 2016-02-23 10:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-03-05 13:34 - 2016-02-23 10:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-03-05 13:34 - 2016-02-23 10:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-05 13:34 - 2016-02-23 10:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-05 13:34 - 2016-02-23 10:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-05 13:34 - 2016-02-23 10:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-05 13:34 - 2016-02-23 10:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-05 13:34 - 2016-02-23 10:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-05 13:34 - 2016-02-23 10:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-05 13:34 - 2016-02-23 10:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-05 13:34 - 2016-02-23 10:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-05 13:34 - 2016-02-23 10:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-05 13:34 - 2016-02-23 10:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-05 13:34 - 2016-02-23 10:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-05 13:34 - 2016-02-23 10:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-05 13:34 - 2016-02-23 09:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-05 13:34 - 2016-02-23 09:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-03-05 13:34 - 2016-02-23 09:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-05 13:34 - 2016-02-23 09:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-05 13:34 - 2016-02-23 09:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-05 13:34 - 2016-02-23 09:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2016-03-05 13:34 - 2016-02-23 09:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-05 13:34 - 2016-02-23 09:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-05 13:34 - 2016-02-23 09:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-05 13:34 - 2016-02-23 09:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-05 13:34 - 2016-02-23 09:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-03-05 13:34 - 2016-02-23 09:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-05 13:34 - 2016-02-23 09:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-05 13:34 - 2016-02-23 09:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-05 13:34 - 2016-02-23 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-05 13:34 - 2016-02-23 09:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-05 13:34 - 2016-02-23 09:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-05 13:34 - 2016-02-23 09:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-05 13:34 - 2016-02-23 09:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-05 13:34 - 2016-02-23 09:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-05 13:34 - 2016-02-23 09:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-05 13:34 - 2016-02-23 09:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-05 13:34 - 2016-02-23 09:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-05 13:34 - 2016-02-23 09:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-05 13:34 - 2016-02-23 09:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-05 13:34 - 2016-02-23 09:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-05 13:34 - 2016-02-23 09:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-05 13:34 - 2016-02-23 09:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-05 13:34 - 2016-02-23 09:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-05 13:34 - 2016-02-23 09:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-05 13:34 - 2016-02-23 09:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-05 13:34 - 2016-02-23 09:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-05 13:34 - 2016-02-23 09:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-05 13:34 - 2016-02-23 09:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-05 13:34 - 2016-02-23 09:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-05 13:34 - 2016-02-23 09:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-05 13:34 - 2016-02-23 09:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-05 13:34 - 2016-02-23 09:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-03-05 13:34 - 2016-02-23 09:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-05 13:34 - 2016-02-23 09:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-05 13:34 - 2016-02-23 09:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-05 13:34 - 2016-02-23 09:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-05 13:34 - 2016-02-23 09:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-05 13:34 - 2016-02-23 09:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-05 13:34 - 2016-02-23 09:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-03-05 13:34 - 2016-02-23 08:58 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-03-05 13:34 - 2016-02-23 08:58 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-05 13:34 - 2016-02-23 08:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-05 13:34 - 2016-02-23 08:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-03-05 13:34 - 2016-02-23 08:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-03-05 13:34 - 2016-02-23 08:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-03-05 13:34 - 2016-02-23 08:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-03-05 13:34 - 2016-02-23 08:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2016-03-05 13:34 - 2016-02-23 08:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-03-05 13:34 - 2016-02-23 08:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-03-05 13:34 - 2016-02-23 08:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-03-05 13:34 - 2016-02-23 08:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-03-05 13:34 - 2016-02-23 08:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 08:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-05 13:34 - 2016-02-23 08:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-03-05 13:34 - 2016-02-23 08:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-03-05 13:34 - 2016-02-23 08:30 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-03-05 13:34 - 2016-02-23 08:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-03-05 13:34 - 2016-02-23 08:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-05 13:34 - 2016-02-23 08:28 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-03-05 13:34 - 2016-02-23 08:28 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-03-05 13:34 - 2016-02-23 08:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-05 13:34 - 2016-02-23 08:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-03-05 13:34 - 2016-02-23 08:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-03-05 13:34 - 2016-02-23 08:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-03-05 13:34 - 2016-02-23 08:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-03-05 13:34 - 2016-02-23 08:14 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-05 13:34 - 2016-02-23 08:11 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-05 13:34 - 2016-02-23 08:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-03-05 13:34 - 2016-02-23 08:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-03-05 13:34 - 2016-02-23 07:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-03-05 13:34 - 2016-02-23 07:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-03-05 13:34 - 2016-02-23 07:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-03-05 13:34 - 2016-02-23 07:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-05 13:34 - 2016-02-23 07:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-03-05 13:34 - 2016-02-23 07:42 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-03-05 13:34 - 2016-02-23 07:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-03-05 13:34 - 2016-02-23 07:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-03-05 13:34 - 2016-02-23 07:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-03-05 13:34 - 2016-02-23 07:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-03-05 13:34 - 2016-02-23 07:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-03-05 13:34 - 2016-02-23 07:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-03-05 13:34 - 2016-02-23 07:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-03-05 13:34 - 2016-02-09 05:28 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-03-05 13:34 - 2016-02-09 05:13 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-03-05 13:34 - 2016-02-09 04:24 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-03-05 13:34 - 2016-02-09 04:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-03-05 13:34 - 2016-02-09 04:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-03-05 13:34 - 2016-02-09 04:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-05 13:34 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-03-05 13:34 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-03-05 13:34 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-03-05 13:34 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-03-05 13:34 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-03-05 13:34 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-03-05 13:34 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-03-05 13:34 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-03-05 13:34 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-03-05 13:34 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-03-05 13:34 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-03-05 13:34 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-03-05 13:34 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-03-05 13:34 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-03-05 13:34 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-03-05 13:34 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-03-05 13:34 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-03-05 13:34 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-03-05 13:34 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-03-05 13:34 - 2016-01-16 07:37 - 00202472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-03-05 13:34 - 2016-01-16 07:24 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-03-05 13:34 - 2016-01-16 07:23 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-03-05 13:34 - 2016-01-16 07:20 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-03-05 13:34 - 2016-01-16 07:20 - 00431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-03-05 13:34 - 2016-01-16 07:20 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-03-05 13:34 - 2016-01-16 07:19 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-03-05 13:34 - 2016-01-16 07:12 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-03-05 13:34 - 2016-01-16 07:09 - 01089880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-03-05 13:34 - 2016-01-16 07:08 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-03-05 13:34 - 2016-01-16 07:08 - 00440152 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-03-05 13:34 - 2016-01-16 06:46 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-03-05 13:34 - 2016-01-16 06:44 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-03-05 13:34 - 2016-01-16 06:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-03-05 13:34 - 2016-01-16 06:41 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-03-05 13:34 - 2016-01-16 06:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2016-03-05 13:34 - 2016-01-16 06:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2016-03-05 13:34 - 2016-01-16 06:39 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll
2016-03-05 13:34 - 2016-01-16 06:38 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-03-05 13:34 - 2016-01-16 06:38 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-03-05 13:34 - 2016-01-16 06:37 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-03-05 13:34 - 2016-01-16 06:36 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2016-03-05 13:34 - 2016-01-16 06:36 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-03-05 13:34 - 2016-01-16 06:36 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-03-05 13:34 - 2016-01-16 06:35 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-03-05 13:34 - 2016-01-16 06:34 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-03-05 13:34 - 2016-01-16 06:34 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2016-03-05 13:34 - 2016-01-16 06:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2016-03-05 13:34 - 2016-01-16 06:33 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-03-05 13:34 - 2016-01-16 06:33 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-03-05 13:34 - 2016-01-16 06:32 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-03-05 13:34 - 2016-01-16 06:32 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2016-03-05 13:34 - 2016-01-16 06:31 - 00851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-03-05 13:34 - 2016-01-16 06:31 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-03-05 13:34 - 2016-01-16 06:31 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-03-05 13:34 - 2016-01-16 06:31 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2016-03-05 13:34 - 2016-01-16 06:30 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-03-05 13:34 - 2016-01-16 06:30 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-03-05 13:34 - 2016-01-16 06:30 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll
2016-03-05 13:34 - 2016-01-16 06:28 - 00884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2016-03-05 13:34 - 2016-01-16 06:28 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll
2016-03-05 13:34 - 2016-01-16 06:27 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-03-05 13:34 - 2016-01-16 06:26 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-03-05 13:34 - 2016-01-16 06:26 - 00260608 _____ C:\WINDOWS\system32\MTFServer.dll
2016-03-05 13:34 - 2016-01-16 06:25 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2016-03-05 13:34 - 2016-01-16 06:25 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-03-05 13:34 - 2016-01-16 06:24 - 00613888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-03-05 13:34 - 2016-01-16 06:24 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-03-05 13:34 - 2016-01-16 06:24 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-03-05 13:34 - 2016-01-16 06:23 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-03-05 13:34 - 2016-01-16 06:23 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-03-05 13:34 - 2016-01-16 06:20 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2016-03-05 13:34 - 2016-01-16 06:19 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-03-05 13:34 - 2016-01-16 06:19 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-03-05 13:34 - 2016-01-16 06:16 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2016-03-05 13:34 - 2016-01-16 06:11 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-03-05 13:34 - 2016-01-05 03:50 - 00671472 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2016-03-05 13:34 - 2016-01-05 03:48 - 00499432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2016-03-05 13:34 - 2016-01-05 03:37 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-03-05 13:34 - 2016-01-05 03:37 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-03-05 13:34 - 2016-01-05 03:37 - 00234504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2016-03-05 13:34 - 2016-01-05 03:33 - 00701384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-03-05 13:34 - 2016-01-05 03:33 - 00208176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2016-03-05 13:34 - 2016-01-05 03:33 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-03-05 13:34 - 2016-01-05 03:27 - 01594408 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-03-05 13:34 - 2016-01-05 03:23 - 01804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-03-05 13:34 - 2016-01-05 03:23 - 01309376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-03-05 13:34 - 2016-01-05 03:23 - 00786696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2016-03-05 13:34 - 2016-01-05 03:23 - 00119320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2016-03-05 13:34 - 2016-01-05 03:21 - 01371792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-03-05 13:34 - 2016-01-05 03:17 - 00695752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2016-03-05 13:34 - 2016-01-05 03:16 - 00100160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL
2016-03-05 13:34 - 2016-01-05 02:57 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-03-05 13:34 - 2016-01-05 02:57 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2016-03-05 13:34 - 2016-01-05 02:56 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-03-05 13:34 - 2016-01-05 02:54 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys
2016-03-05 13:34 - 2016-01-05 02:53 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2016-03-05 13:34 - 2016-01-05 02:50 - 00644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-03-05 13:34 - 2016-01-05 02:49 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2016-03-05 13:34 - 2016-01-05 02:49 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-03-05 13:34 - 2016-01-05 02:49 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll
2016-03-05 13:34 - 2016-01-05 02:48 - 01009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2016-03-05 13:34 - 2016-01-05 02:48 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-03-05 13:34 - 2016-01-05 02:48 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2016-03-05 13:34 - 2016-01-05 02:47 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-03-05 13:34 - 2016-01-05 02:47 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-03-05 13:34 - 2016-01-05 02:47 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2016-03-05 13:34 - 2016-01-05 02:45 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-03-05 13:34 - 2016-01-05 02:45 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-03-05 13:34 - 2016-01-05 02:44 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx
2016-03-05 13:34 - 2016-01-05 02:43 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-03-05 13:34 - 2016-01-05 02:43 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-03-05 13:34 - 2016-01-05 02:41 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2016-03-05 13:34 - 2016-01-05 02:41 - 00558592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-03-05 13:34 - 2016-01-05 02:40 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL
2016-03-05 13:34 - 2016-01-05 02:40 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommon.dll
2016-03-05 13:34 - 2016-01-05 02:39 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-03-05 13:34 - 2016-01-05 02:39 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-03-05 13:34 - 2016-01-05 02:39 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2016-03-05 13:34 - 2016-01-05 02:38 - 00389120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-03-05 13:34 - 2016-01-05 02:36 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2016-03-05 13:34 - 2016-01-05 02:36 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-03-05 13:34 - 2015-12-07 05:49 - 00412512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-03-05 13:34 - 2015-12-07 05:48 - 01092456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00526856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00462760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00337840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-03-05 13:34 - 2015-12-07 05:48 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-03-05 13:34 - 2015-12-07 05:47 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-03-05 13:34 - 2015-12-07 05:45 - 00264544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-03-05 13:34 - 2015-12-07 05:15 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-03-05 13:34 - 2015-12-07 05:09 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-03-05 13:34 - 2015-12-07 05:07 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-03-05 13:34 - 2015-12-07 05:06 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-03-05 13:34 - 2015-12-07 05:06 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-03-05 13:34 - 2015-12-07 05:05 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-03-05 13:34 - 2015-12-07 05:04 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-03-05 13:34 - 2015-12-07 05:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-03-05 13:34 - 2015-12-07 05:02 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-03-05 13:34 - 2015-12-07 05:01 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-03-05 13:34 - 2015-12-07 05:00 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-03-05 13:34 - 2015-12-07 04:59 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-03-05 13:34 - 2015-12-07 04:59 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-03-05 13:34 - 2015-12-07 04:59 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-03-05 13:34 - 2015-12-07 04:58 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-03-05 13:34 - 2015-12-07 04:57 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-03-05 13:34 - 2015-12-07 04:55 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-03-05 13:34 - 2015-12-07 04:51 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-03-05 13:34 - 2015-12-07 04:45 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-03-05 13:34 - 2015-12-07 04:45 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-03-05 13:34 - 2015-12-07 04:43 - 00931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2016-03-05 13:34 - 2015-12-07 04:39 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-03-05 13:34 - 2015-12-07 04:38 - 00871936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2016-03-05 13:34 - 2015-12-07 04:32 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-03-05 13:34 - 2015-11-24 11:26 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-03-05 13:34 - 2015-11-24 10:37 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2016-03-05 13:34 - 2015-11-24 10:26 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-03-05 13:34 - 2015-11-24 10:19 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-03-05 13:34 - 2015-11-24 10:12 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2016-03-05 13:34 - 2015-11-24 09:52 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-03-05 13:34 - 2015-11-24 09:14 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2016-03-05 13:34 - 2015-11-24 08:59 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-03-05 13:34 - 2015-11-24 08:04 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-03-05 13:34 - 2015-11-22 11:41 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-03-05 13:34 - 2015-11-22 11:34 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2016-03-05 13:34 - 2015-11-22 11:33 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2016-03-05 13:34 - 2015-11-22 11:33 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-03-05 13:34 - 2015-11-22 11:33 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll
2016-03-05 13:34 - 2015-11-22 11:30 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-03-05 13:34 - 2015-11-22 11:25 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2016-03-05 13:34 - 2015-11-22 10:55 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2016-03-05 13:34 - 2015-11-22 10:54 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-03-05 13:34 - 2015-11-22 10:50 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2016-03-05 13:34 - 2015-11-22 10:43 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2016-03-05 13:34 - 2015-11-22 10:43 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-03-05 13:34 - 2015-11-22 10:43 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll
2016-03-05 13:34 - 2015-11-22 10:42 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2016-03-05 13:34 - 2015-11-22 10:39 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-03-05 13:34 - 2015-11-22 10:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-03-05 13:34 - 2015-11-22 10:38 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll
2016-03-05 13:34 - 2015-11-22 10:37 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-03-05 13:34 - 2015-11-22 10:37 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-03-05 13:34 - 2015-11-22 10:36 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2016-03-05 13:34 - 2015-11-22 10:32 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-03-05 13:34 - 2015-11-22 10:31 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2016-03-05 13:34 - 2015-11-22 10:31 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-03-05 13:34 - 2015-11-22 10:28 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-03-05 13:34 - 2015-11-22 10:27 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-03-05 13:34 - 2015-11-22 10:26 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-03-05 13:34 - 2015-11-22 10:26 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2016-03-05 13:34 - 2015-11-22 10:26 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-03-05 13:34 - 2015-11-22 10:18 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-03-05 13:34 - 2015-11-22 10:18 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-03-05 13:34 - 2015-11-22 10:11 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-03-05 13:34 - 2015-11-21 06:44 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2016-03-05 13:34 - 2015-11-13 07:55 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2016-03-05 13:34 - 2015-11-13 07:51 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2016-03-05 13:34 - 2015-11-13 07:51 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-03-05 13:34 - 2015-11-13 07:51 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-03-05 13:34 - 2015-11-13 07:43 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2016-03-05 13:34 - 2015-11-13 07:43 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-03-05 13:34 - 2015-11-13 07:42 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-03-05 13:34 - 2015-11-13 07:42 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2016-03-05 13:34 - 2015-11-13 07:33 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-03-05 13:34 - 2015-11-13 07:33 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2016-03-05 13:34 - 2015-11-13 07:33 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-03-05 13:34 - 2015-11-13 07:32 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-03-05 13:34 - 2015-11-13 07:21 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-03-05 13:34 - 2015-11-13 07:21 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2016-03-05 13:34 - 2015-11-13 07:21 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2016-03-05 13:34 - 2015-11-13 07:21 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-03-05 13:34 - 2015-11-13 07:09 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2016-03-05 13:34 - 2015-11-13 06:58 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-03-05 13:34 - 2015-11-13 06:57 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-03-05 13:34 - 2015-11-05 13:05 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2016-03-05 13:34 - 2015-11-05 11:25 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2016-03-05 13:34 - 2015-11-05 10:10 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-03-05 13:34 - 2015-11-05 09:15 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-03-05 13:33 - 2016-02-23 10:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-05 13:33 - 2016-02-23 10:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-05 13:33 - 2016-02-23 10:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-03-05 13:33 - 2016-02-23 09:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-03-05 13:33 - 2016-02-23 09:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-03-05 13:33 - 2016-02-23 09:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-03-05 13:33 - 2016-02-23 09:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-03-05 13:33 - 2016-02-23 09:48 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-03-05 13:33 - 2016-02-23 09:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-05 13:33 - 2016-02-23 09:32 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-03-05 13:33 - 2016-02-23 09:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-03-05 13:33 - 2016-02-23 09:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-03-05 13:33 - 2016-02-23 09:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-03-05 13:33 - 2016-02-23 08:58 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-05 13:33 - 2016-02-23 08:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-03-05 13:33 - 2016-02-23 08:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-03-05 13:33 - 2016-02-23 08:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-03-05 13:33 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-03-05 13:33 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-03-05 13:33 - 2016-01-16 06:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2016-03-05 13:33 - 2016-01-16 06:44 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2016-03-05 13:33 - 2016-01-16 06:43 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll
2016-03-05 13:33 - 2016-01-16 06:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2016-03-05 13:33 - 2016-01-16 06:40 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2016-03-05 13:33 - 2016-01-16 06:38 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2016-03-05 13:33 - 2016-01-16 06:36 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll
2016-03-05 13:33 - 2016-01-16 06:35 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2016-03-05 13:33 - 2016-01-16 06:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll
2016-03-05 13:33 - 2016-01-16 06:30 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2016-03-05 13:33 - 2016-01-05 02:52 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-03-05 13:33 - 2016-01-05 02:51 - 00472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-03-05 13:33 - 2016-01-05 02:51 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-03-05 13:33 - 2016-01-05 02:49 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-03-05 13:33 - 2016-01-05 02:42 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-03-05 13:33 - 2015-12-07 05:15 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll
2016-03-05 13:33 - 2015-12-07 05:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-03-05 13:33 - 2015-12-07 05:07 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-03-05 13:33 - 2015-12-07 05:05 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundTransferHost.exe
2016-03-05 13:33 - 2015-12-07 05:01 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe
2016-03-05 13:33 - 2015-11-24 11:01 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-03-05 13:33 - 2015-11-24 10:54 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2016-03-05 13:33 - 2015-11-24 10:53 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-03-05 13:33 - 2015-11-24 10:45 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2016-03-05 13:33 - 2015-11-24 09:54 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2016-03-05 13:33 - 2015-11-22 11:00 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-03-05 13:33 - 2015-11-22 11:00 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-03-05 13:33 - 2015-11-22 10:57 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-03-05 13:33 - 2015-11-22 10:57 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll
2016-03-05 13:33 - 2015-11-22 10:57 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-03-05 13:33 - 2015-11-22 10:57 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-03-05 13:33 - 2015-11-22 10:56 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-03-05 13:33 - 2015-11-22 10:56 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-03-05 13:33 - 2015-11-22 10:56 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll
2016-03-05 13:33 - 2015-11-22 10:56 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll
2016-03-05 13:33 - 2015-11-22 10:55 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-03-05 13:33 - 2015-11-22 10:54 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-03-05 13:33 - 2015-11-22 10:52 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2016-03-05 13:33 - 2015-11-22 10:52 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-03-05 13:33 - 2015-11-22 10:51 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-03-05 13:33 - 2015-11-22 10:51 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-03-05 13:33 - 2015-11-22 10:51 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-03-05 13:33 - 2015-11-22 10:51 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-03-05 13:33 - 2015-11-22 10:49 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-03-05 13:33 - 2015-11-22 10:49 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2016-03-05 13:33 - 2015-11-22 10:48 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-03-05 13:33 - 2015-11-22 10:45 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-03-05 13:33 - 2015-11-22 10:44 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-03-05 13:33 - 2015-11-22 10:44 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-03-05 13:33 - 2015-11-22 10:42 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-03-05 13:33 - 2015-11-22 10:42 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-03-05 13:33 - 2015-11-22 10:42 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-03-05 13:33 - 2015-11-22 10:41 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-03-05 13:33 - 2015-11-22 10:40 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-03-05 13:33 - 2015-11-22 10:40 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-03-05 13:33 - 2015-11-22 10:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2016-03-05 13:33 - 2015-11-22 10:39 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-03-05 13:33 - 2015-11-22 10:39 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-03-05 13:33 - 2015-11-22 10:39 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-03-05 13:33 - 2015-11-22 10:34 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-03-05 13:33 - 2015-11-22 10:33 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll
2016-03-05 13:33 - 2015-11-22 10:29 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-03-05 13:33 - 2015-11-22 10:28 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-03-05 13:33 - 2015-11-22 10:28 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-03-05 13:33 - 2015-11-22 10:27 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-03-05 13:33 - 2015-11-22 10:27 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-03-05 13:33 - 2015-11-22 10:24 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-03-05 13:33 - 2015-11-13 07:07 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-03-05 13:33 - 2015-11-13 07:06 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-03-05 13:33 - 2015-11-13 07:05 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-03-05 13:33 - 2015-11-13 07:05 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-03-05 13:33 - 2015-11-13 07:05 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll
2016-03-05 13:33 - 2015-11-13 07:05 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2016-03-05 13:33 - 2015-11-13 07:04 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-03-05 13:33 - 2015-11-13 07:04 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2016-03-05 13:33 - 2015-11-13 07:03 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2016-03-05 13:33 - 2015-11-13 07:00 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-03-05 13:33 - 2015-11-13 06:56 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-03-05 13:33 - 2015-11-13 06:40 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll
2016-03-05 13:33 - 2015-11-13 06:34 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-03-05 13:33 - 2015-11-13 06:30 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-03-05 13:33 - 2015-11-05 11:08 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2016-03-05 13:33 - 2015-11-05 11:08 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2016-03-05 13:33 - 2015-11-05 10:03 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2016-03-05 13:33 - 2015-11-05 10:02 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 32420536 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 31495336 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 29092864 _____ (Intel Corporation) C:\WINDOWS\system32\common_clang64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 27346568 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 26071248 _____ (Intel Corporation) C:\WINDOWS\system32\igd11dxva64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 19852800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\common_clang32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 15335848 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 14419416 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 13467648 _____ (Intel Corporation) C:\WINDOWS\system32\ig8icd64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 13326392 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 11731000 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 10210816 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig8icd32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 07876072 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys
2016-03-04 23:48 - 2016-03-04 23:48 - 06536480 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 05799386 _____ C:\WINDOWS\system32\igdclbif.bin
2016-03-04 23:48 - 2016-03-04 23:48 - 05677056 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 05254144 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 05003944 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 04634112 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 04163072 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 04146264 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 04018456 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 03961344 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmcl32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 02813952 _____ C:\WINDOWS\system32\iglhxa64.cpa
2016-03-04 23:48 - 2016-03-04 23:48 - 02133168 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 02062336 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01792376 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01789752 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01654712 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01568256 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01159168 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 01018344 _____ C:\WINDOWS\system32\igfxSDK.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00955368 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00951784 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00826090 _____ C:\WINDOWS\system32\DisplayAudiox64.cab
2016-03-04 23:48 - 2016-03-04 23:48 - 00742400 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00641530 _____ C:\WINDOWS\system32\FilmModeDetection.wmv
2016-03-04 23:48 - 2016-03-04 23:48 - 00624128 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00614376 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCpHDCPSvc.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00527848 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00511260 _____ C:\WINDOWS\system32\cp_resources.bin
2016-03-04 23:48 - 2016-03-04 23:48 - 00458216 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00430592 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00422552 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00421464 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00407552 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00403671 _____ C:\WINDOWS\system32\ImageStabilization.wmv
2016-03-04 23:48 - 2016-03-04 23:48 - 00394216 _____ C:\WINDOWS\system32\igfxTray.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00381440 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00379904 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00378368 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00375173 _____ C:\WINDOWS\system32\ColorImageEnhancement.wmv
2016-03-04 23:48 - 2016-03-04 23:48 - 00369944 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00367832 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00365032 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00346088 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00341488 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCComp64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00309752 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00301392 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00292840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00285856 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00264704 _____ C:\WINDOWS\system32\igfxCPL.cpl
2016-03-04 23:48 - 2016-03-04 23:48 - 00260584 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00257536 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00246776 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00231312 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00228328 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00223720 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00223208 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00216576 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00212072 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00198144 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4364.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00194872 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00184320 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00171024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00166376 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2016-03-04 23:48 - 2016-03-04 23:48 - 00164352 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00102912 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00095232 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00094720 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00092160 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00091128 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00086528 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00075776 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00045952 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00044024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00041296 _____ C:\WINDOWS\system32\iglhxc64_dev.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00040931 _____ C:\WINDOWS\system32\iglhxo64_dev.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00040343 _____ C:\WINDOWS\system32\iglhxo64.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00040316 _____ C:\WINDOWS\system32\iglhxc64.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00039798 _____ C:\WINDOWS\system32\iglhxg64_dev.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00039658 _____ C:\WINDOWS\system32\iglhxg64.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00020480 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00020480 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00018936 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2016-03-04 23:48 - 2016-03-04 23:48 - 00004826 _____ C:\WINDOWS\system32\iglhxs64.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00001125 _____ C:\WINDOWS\system32\iglhxa64.vp
2016-03-04 23:48 - 2016-03-04 23:48 - 00000935 _____ C:\WINDOWS\system32\Gfxv4_0.exe.config
2016-03-04 23:48 - 2016-03-04 23:48 - 00000935 _____ C:\WINDOWS\system32\DPTopologyApp.exe.config
2016-03-04 23:48 - 2016-03-04 23:48 - 00000895 _____ C:\WINDOWS\system32\Gfxv2_0.exe.config
2016-03-04 23:48 - 2016-03-04 23:48 - 00000895 _____ C:\WINDOWS\system32\DPTopologyAppv2_0.exe.config
2016-03-04 20:36 - 2016-03-04 20:36 - 00122160 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\WINDOWS\system32\Drivers\ssudbus.sys
2016-03-04 20:36 - 2016-03-04 20:36 - 00057648 _____ (QUALCOMM Incorporated) C:\WINDOWS\system32\Drivers\ssudqcfilter.sys
2016-03-04 20:03 - 2016-03-04 20:03 - 05062384 _____ (Realtek semiconductor) C:\WINDOWS\RTFTrack.exe
2016-03-04 20:03 - 2016-03-04 20:03 - 03069680 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\rtsuvc.sys
2016-03-04 20:03 - 2016-03-04 20:03 - 02637552 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtCamU64.exe
2016-03-04 20:03 - 2016-03-04 20:03 - 01982192 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsDecode.dll
2016-03-04 20:03 - 2016-03-04 20:03 - 01157563 _____ C:\WINDOWS\FTDataP.xml
2016-03-04 20:03 - 2016-03-04 20:03 - 00946032 _____ C:\WINDOWS\FTData.xml
2016-03-04 20:03 - 2016-03-04 20:03 - 00817241 _____ C:\WINDOWS\FTDataR1.xml
2016-03-04 20:03 - 2016-03-04 20:03 - 00817191 _____ C:\WINDOWS\FTDataR0.xml
2016-03-04 20:03 - 2016-03-04 20:03 - 00557824 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtCamX64.dll
2016-03-04 20:03 - 2016-03-04 20:03 - 00497392 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RtCamX.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 72123392 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2016-03-04 18:39 - 2016-03-04 18:39 - 07172920 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 07096192 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 06264640 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 05804772 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2016-03-04 18:39 - 2016-03-04 18:39 - 04589312 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2016-03-04 18:39 - 2016-03-04 18:39 - 03686140 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2016-03-04 18:39 - 2016-03-04 18:39 - 03271912 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 03233472 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 02999024 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 02988288 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 02711296 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2016-03-04 18:39 - 2016-03-04 18:39 - 02493672 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 02051704 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01967336 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01961128 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01782144 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01761024 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01592584 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01508936 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 01347808 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00965032 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00953728 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00745488 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00728960 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00708320 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00679712 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00679192 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00645464 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00576280 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00533904 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00504312 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00447728 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00446928 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00442792 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00388840 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00363576 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00358272 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00343712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00332088 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00328984 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00323240 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00321720 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00311952 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00274240 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00255424 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00254400 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00253872 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00231920 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00223496 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00216352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00211064 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00196712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00167728 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00153312 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00134208 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00122328 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00118600 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00112512 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00090920 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00088352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00088328 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00086136 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00085152 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2016-03-04 18:39 - 2016-03-04 18:39 - 00025224 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2016-03-04 18:38 - 2016-03-04 18:38 - 00042328 _____ (Lenovo Corporation) C:\WINDOWS\system32\Drivers\AcpiVpc.sys
2016-03-04 18:37 - 2016-03-04 18:37 - 00376592 _____ (Intel Corporation) C:\WINDOWS\system32\ibtproppage.dll
2016-03-04 18:37 - 2016-03-04 18:37 - 00299280 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ibtusb.sys
2016-03-04 18:37 - 2016-03-04 18:37 - 00174352 _____ (Intel Corporation) C:\WINDOWS\system32\ibtsiva.exe
2016-03-04 18:36 - 2016-03-04 18:36 - 09898752 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2016-03-04 18:36 - 2016-03-04 18:36 - 00525512 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETD.sys
2016-03-04 18:36 - 2016-03-04 18:36 - 00310528 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RtsP2Stor.sys
2016-03-04 18:36 - 2016-03-04 18:36 - 00091904 _____ (Realtek Semiconductor.) C:\WINDOWS\system32\RtCRX64.dll
2016-03-04 18:36 - 2016-03-04 18:36 - 00056008 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCoInstaller01000.dll
2016-03-04 18:32 - 2016-03-04 18:32 - 00194320 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\TeeDriverW8x64.sys
2016-03-04 17:33 - 2016-03-04 17:33 - 00887552 _____ (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys
2016-03-04 17:33 - 2016-03-04 17:33 - 00084064 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-04 23:48 - 2015-10-30 08:18 - 00095232 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2016-03-11 01:50 - 2016-03-11 01:50 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-03-11 01:45

==================== Ende von FRST.txt ============================
         
Und die Addition.txt:

Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
durchgeführt von Vanessa (2016-03-17 17:59:52)
Gestartet von C:\Users\Vanessa\Desktop
Windows 10 Pro Version 1511 (X64) (2016-03-10 16:00:15)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-1189241312-1818108196-3406372783-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1189241312-1818108196-3406372783-503 - Limited - Disabled)
Gast (S-1-5-21-1189241312-1818108196-3406372783-501 - Limited - Disabled)
Vanessa (S-1-5-21-1189241312-1818108196-3406372783-1001 - Administrator - Enabled) => C:\Users\Vanessa

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.182 - Adobe Systems Incorporated)
ELAN Touchpad 11.15.0.18_X64 (HKLM\...\Elantech) (Version: 11.15.0.18 - ELAN Microelectronic Corp.)
Intel® PROSet/Wireless Software (HKLM-x32\...\{f0aecb48-77c7-45fa-b264-ea1945fdee59}) (Version: 18.33.0 - Intel Corporation)
Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.)
Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes)
Mozilla Firefox 45.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 45.0 (x86 de)) (Version: 45.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0 - Mozilla)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7592 - Realtek Semiconductor Corp.)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-1189241312-1818108196-3406372783-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Vanessa\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {0802E269-EDBE-4A60-9BCC-053E0292E753} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\WINDOWS\system32\MRT.exe [2016-03-10] (Microsoft Corporation)
Task: {EC3CABF3-5086-4ADB-88BA-2EB64855FC14} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-10] (Adobe Systems Incorporated)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-03-05 13:35 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-05 13:35 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-03-11 00:36 - 2016-03-11 00:37 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-03-05 13:33 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-03-05 13:34 - 2016-02-23 09:36 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-03-05 13:35 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-03-05 13:34 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-03-05 13:35 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-03-05 13:35 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-03-11 00:36 - 2016-03-11 00:37 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-03-11 00:36 - 2016-03-11 00:38 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2016-03-10 16:32 - 2016-03-10 16:29 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-1189241312-1818108196-3406372783-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Vanessa\Downloads\landscape_nrm_1420498727-sagittarus.jpg
DNS Servers: 192.168.42.129
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{CE8AD957-6922-4BF4-A210-77B0E98118F8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{32303F9E-BC76-451C-96A5-E738D55ADCD2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{37F6BB29-3AF4-4539-ACC9-9FECB60F4E5C}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe

==================== Wiederherstellungspunkte =========================

10-03-2016 16:57:40 Windows Modules Installer
11-03-2016 17:07:14 Windows Modules Installer
14-03-2016 17:40:28 Intel® PROSet/Wireless Software
17-03-2016 16:55:46 Windows Modules Installer
17-03-2016 17:56:23 JRT Pre-Junkware Removal

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (03/17/2016 05:56:23 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (03/17/2016 04:55:57 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".

Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (03/17/2016 03:21:53 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (03/16/2016 11:09:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.122, Zeitstempel: 0x56cbf9dd
Ausnahmecode: 0xc0000374
Fehleroffset: 0x00000000000ee6dc
ID des fehlerhaften Prozesses: 0x198c
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5

Error: (03/16/2016 02:21:54 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (03/16/2016 02:16:02 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: ShellExperienceHost.exe, Version: 10.0.10586.122, Zeitstempel: 0x56cc0133
Name des fehlerhaften Moduls: twinapi.appcore.dll, Version: 10.0.10586.0, Zeitstempel: 0x5632d2f5
Ausnahmecode: 0xc000027b
Fehleroffset: 0x000000000004b199
ID des fehlerhaften Prozesses: 0xe58
Startzeit der fehlerhaften Anwendung: 0xShellExperienceHost.exe0
Pfad der fehlerhaften Anwendung: ShellExperienceHost.exe1
Pfad des fehlerhaften Moduls: ShellExperienceHost.exe2
Berichtskennung: ShellExperienceHost.exe3
Vollständiger Name des fehlerhaften Pakets: ShellExperienceHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ShellExperienceHost.exe5

Error: (03/16/2016 02:15:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.122, Zeitstempel: 0x56cbf9dd
Ausnahmecode: 0xc0000374
Fehleroffset: 0x00000000000ee6dc
ID des fehlerhaften Prozesses: 0x288
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5

Error: (03/16/2016 12:59:50 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-1TA3T6T)
Description: Bei der Aktivierung der App „windows.immersivecontrolpanel_cw5n1h2txyewy!microsoft.windows.immersivecontrolpanel“ ist folgender Fehler aufgetreten: -2147417836. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (03/16/2016 12:59:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.122, Zeitstempel: 0x56cbf9dd
Ausnahmecode: 0xc0000374
Fehleroffset: 0x00000000000ee6dc
ID des fehlerhaften Prozesses: 0x1654
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5

Error: (03/14/2016 10:21:56 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8


Systemfehler:
=============
Error: (03/17/2016 09:52:06 AM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT-AUTORITÄT)
Description: Für den Miniport "SAMSUNG Mobile USB Remote NDIS Network Device, {9CB4147F-A930-4A43-AE28-3CE5AA9E2F52}" ist das Ereignis "74" aufgetreten.

Error: (03/17/2016 02:19:32 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenzugriff_2a50f" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/17/2016 02:19:32 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenspeicher _2a50f" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/17/2016 02:19:32 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Kontaktdaten_2a50f" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/17/2016 02:19:32 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_2a50f" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/17/2016 02:19:32 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (03/16/2016 05:18:57 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (03/16/2016 03:09:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenzugriff_2b34c" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/16/2016 03:09:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenspeicher _2b34c" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (03/16/2016 03:09:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Kontaktdaten_2b34c" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.


CodeIntegrity:
===================================
  Date: 2016-03-17 17:56:53.872
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-12 03:01:14.659
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-11 12:22:34.972
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-10 19:07:11.730
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-10 18:23:05.407
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-10 16:59:07.103
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-03-11 01:49:18.798
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz
Prozentuale Nutzung des RAM: 39%
Installierter physikalischer RAM: 4009.84 MB
Verfügbarer physikalischer RAM: 2434.32 MB
Summe virtueller Speicher: 4713.84 MB
Verfügbarer virtueller Speicher: 3250.32 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:465.21 GB) (Free:409.52 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: D9FA2484)

Partition: GPT.

==================== Ende von Addition.txt ============================
         
Ok, mal schauen, was draus wird

Alt 17.03.2016, 21:48   #14
M-K-D-B
/// TB-Ausbilder
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Servus,

bisher sieht alles gut aus.



Hinweis: Der Suchlauf mit ESET kann länger dauern.



Schritt 1
Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument


Code:
ATTFilter
start
CloseProcesses:
RemoveProxy:
CMD: ipconfig /flushdns
CMD: netsh winsock reset
EmptyTemp:
end
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.







Schritt 2

ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset







Schritt 3
Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.






Schritt 4
  • Starte die FRST.exe erneut. Setze einen Haken vor Addition.txt und drücke auf Untersuchen.
  • FRST erstellt wieder zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.





Gibt es jetzt noch Probleme mit dem PC? Wenn ja, welche?







Bitte poste mit deiner nächsten Antwort
  • die Logdatei des FRST-Fix,
  • die Logdatei von ESET,
  • die Logdatei von SecurityCheck,
  • die beiden neuen Logdateien von FRST,
  • die Beantwortung der gestellten Fragen.

Alt 19.03.2016, 17:01   #15
ViviPC
 
System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Standard

System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen



Hallo, erst mal die Logs:

Fixlog von FRST:

Code:
ATTFilter
Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
durchgeführt von Vanessa (2016-03-19 15:18:02) Run:1
Gestartet von C:\Users\Vanessa\Desktop
Geladene Profile: Vanessa (Verfügbare Profile: Vanessa)
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
start
CloseProcesses:
RemoveProxy:
CMD: ipconfig /flushdns
CMD: netsh winsock reset
EmptyTemp:
end
*****************

Prozess erfolgreich geschlossen.

========= RemoveProxy: =========

HKU\S-1-5-21-1189241312-1818108196-3406372783-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wert erfolgreich entfernt
HKU\S-1-5-21-1189241312-1818108196-3406372783-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wert erfolgreich entfernt


========= Ende von RemoveProxy: =========


=========  ipconfig /flushdns =========


Windows-IP-Konfiguration

Der DNS-Aufl�sungscache wurde geleert.

========= Ende von CMD: =========


=========  netsh winsock reset =========


Der Winsock-Katalog wurde zur�ckgesetzt.
Sie m�ssen den Computer neu starten, um den Vorgang abzuschlie�en.


========= Ende von CMD: =========

EmptyTemp: => 491.1 MB temporäre Dateien entfernt.


Das System musste neu gestartet werden.

==== Ende von Fixlog 15:18:15 ====
         
Das ESET-Log:

Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=10a322b205b6174c9062a98a321c9930
# end=init
# utc_time=2016-03-19 02:24:30
# local_time=2016-03-19 03:24:30 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=6.2.9200 NT 
Update Init
Update Download
Update Finalize
Updated modules version: 28659
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=10a322b205b6174c9062a98a321c9930
# end=updated
# utc_time=2016-03-19 02:27:14
# local_time=2016-03-19 03:27:14 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=6.2.9200 NT 
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7777
# api_version=3.1.1
# EOSSerial=10a322b205b6174c9062a98a321c9930
# engine=28659
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2016-03-19 03:44:41
# local_time=2016-03-19 04:44:41 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT 
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 92656 12216424 0 0
# scanned=151690
# found=1
# cleaned=0
# scan_time=4646
sh=716464A097F3F3C7F723C6728AF7A31D2C0824F4 ft=1 fh=1080adac2d2a6ced vn="Variante von Win32/InstallCore.ACZ evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Vanessa\Desktop\Sicherung aller Dateien\C\Users\Vanessa\Downloads\Wedding Dash 4 - Ever.exe"
         
Die Checkup von SecurityCheck:

Code:
ATTFilter
 Results of screen317's Security Check version 1.009  
   x64 (UAC is enabled)  
 Internet Explorer 11  
``````````````Antivirus/Firewall Check:`````````````` 
Windows Defender   
 WMI entry may not exist for antivirus; attempting automatic update. 
`````````Anti-malware/Other Utilities Check:````````` 
 Adobe Flash Player 	21.0.0.182  
 Mozilla Firefox (45.0.1) 
````````Process Check: objlist.exe by Laurent````````  
 Windows Defender MSMpEng.exe 
 Windows Defender MpCmdRun.exe   
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C:  % 
````````````````````End of Log``````````````````````
         
Und die beiden Logs von FRST am Ende:

FRST-Teil 1:

Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
durchgeführt von Vanessa (Administrator) auf DESKTOP-1TA3T6T (19-03-2016 16:51:49)
Gestartet von C:\Users\Vanessa\Desktop
Geladene Profile: Vanessa (Verfügbare Profile: Vanessa)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2016-03-04] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16404224 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1408752 2016-03-04] (Realtek Semiconductor)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [5062384 2016-03-04] (Realtek semiconductor)
HKU\S-1-5-21-1189241312-1818108196-3406372783-1001\...\RunOnce: [Uninstall C:\Users\Vanessa\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vanessa\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{9cb4147f-a930-4a43-ae28-3ce5aa9e2f52}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{efbabfc9-ffbd-4c3a-bcf6-c03c5a64a1a3}: [DhcpNameServer] 10.143.181.130 10.143.189.130
Tcpip\..\Interfaces\{fc559a83-3708-49a8-bb36-9be4b4f2ce79}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================

FireFox:
========
FF ProfilePath: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\33euou60.default
FF NetworkProxy: "autoconfig_url", "data:application/x-ns-proxy-autoconfig;base64,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"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_182.dll [2016-03-10] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_182.dll [2016-03-10] ()
FF Extension: Adblock Plus - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\33euou60.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-03-10]
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-03-19] [ist nicht signiert]

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2016-03-04] (ELAN Microelectronics Corp.)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [365032 2016-03-04] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2016-01-04] ()
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3832224 2016-01-04] (Intel® Corporation)
R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [299280 2016-03-04] (Intel Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [194320 2016-03-04] (Intel Corporation)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3515664 2016-01-21] (Intel Corporation)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [310528 2016-03-04] (Realtek Semiconductor Corp.)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [887552 2016-03-04] (Realtek                                            )
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3069680 2016-03-04] (Realtek Semiconductor Corp.)
S3 ssudqcfilter; C:\Windows\System32\drivers\ssudqcfilter.sys [57648 2016-03-04] (QUALCOMM Incorporated)
R3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [23040 2015-10-30] (Microsoft Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-19 16:49 - 2016-03-19 16:49 - 00000733 _____ C:\Users\Vanessa\Desktop\checkup.txt
2016-03-19 16:47 - 2016-03-19 16:48 - 00852720 _____ C:\Users\Vanessa\Desktop\SecurityCheck.exe
2016-03-19 15:24 - 2016-03-19 15:24 - 00000000 ____D C:\Program Files (x86)\ESET
2016-03-19 15:22 - 2016-03-19 15:24 - 02870984 _____ (ESET) C:\Users\Vanessa\Desktop\esetsmartinstaller_deu.exe
2016-03-19 15:18 - 2016-03-19 15:18 - 00001430 _____ C:\Users\Vanessa\Desktop\Fixlog.txt
2016-03-19 10:10 - 2016-03-19 11:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-03-17 17:57 - 2016-03-17 17:57 - 00000812 _____ C:\Users\Vanessa\Desktop\JRT.txt
2016-03-17 17:54 - 2016-03-17 17:56 - 01610352 _____ (Malwarebytes) C:\Users\Vanessa\Desktop\JRT.exe
2016-03-17 17:53 - 2016-03-17 17:53 - 00001198 _____ C:\Users\Vanessa\Desktop\mbam.txt
2016-03-17 17:40 - 2016-03-17 17:40 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-03-17 17:39 - 2016-03-17 17:39 - 00001175 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-03-17 17:39 - 2016-03-17 17:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-03-17 17:39 - 2016-03-17 17:39 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-03-17 17:39 - 2016-03-17 17:39 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2016-03-17 17:39 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-03-17 17:39 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-03-17 17:39 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-03-16 21:49 - 2016-03-16 21:49 - 00000852 _____ C:\Users\Vanessa\Desktop\AdwCleaner[S1].txt
2016-03-16 21:41 - 2016-03-16 21:47 - 00000000 ____D C:\Program Files (x86)\AdwCleaner
2016-03-16 21:27 - 2016-03-16 21:41 - 01527296 _____ C:\Users\Vanessa\Desktop\AdwCleaner_5.102.exe
2016-03-14 21:37 - 2016-03-14 21:39 - 00062578 _____ C:\Users\Vanessa\Desktop\TDSSKiller.3.1.0.9_14.03.2016_21.37.32_log.txt
2016-03-14 21:33 - 2016-03-17 18:00 - 00018519 _____ C:\Users\Vanessa\Desktop\Addition.txt
2016-03-14 21:32 - 2016-03-19 16:51 - 00018124 _____ C:\Users\Vanessa\Desktop\FRST.txt
2016-03-14 21:32 - 2016-03-19 16:51 - 00000000 ____D C:\FRST
2016-03-14 21:30 - 2016-03-14 21:37 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Vanessa\Desktop\tdsskiller.exe
2016-03-14 21:30 - 2016-03-14 21:31 - 02374144 _____ (Farbar) C:\Users\Vanessa\Desktop\FRST64.exe
2016-03-14 17:42 - 2016-03-14 17:42 - 00000000 ___HD C:\WINDOWS\system32\WLANProfiles
2016-03-14 17:42 - 2016-03-14 17:42 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\ProgramData\Package Cache
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\ProgramData\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files\Common Files\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files (x86)\Intel
2016-03-14 17:41 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files (x86)\Cisco
2016-03-14 17:36 - 2016-03-14 17:37 - 19723288 _____ (Intel(R) Corporation) C:\Users\Vanessa\Downloads\Wireless_18.33.0_Driver64_Win10.exe
2016-03-14 17:34 - 2016-03-14 17:39 - 100745304 _____ (Intel(R) Corporation) C:\Users\Vanessa\Downloads\Wireless_18.33.0_PROSet64_Win10.exe
2016-03-12 10:06 - 2016-03-12 10:06 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-03-11 19:30 - 2016-03-11 19:30 - 00000000 ____D C:\Users\Vanessa\AppData\Local\PeerDistRepub
2016-03-11 17:07 - 2016-03-11 17:07 - 00000000 ____D C:\ProgramData\GameHouse
2016-03-11 01:55 - 2016-03-19 15:19 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\Default User
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Users\All Users
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Vorlagen
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Startmenü
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Dokumente
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2016-03-11 01:55 - 2016-03-11 01:55 - 00000000 _SHDL C:\Dokumente und Einstellungen
2016-03-11 01:50 - 2016-03-19 15:20 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2016-03-11 01:50 - 2016-03-11 01:50 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____D C:\WINDOWS\system32\DAX2
2016-03-11 01:50 - 2016-03-11 01:50 - 00000000 ____D C:\Program Files\Realtek
2016-03-11 01:50 - 2016-03-10 17:01 - 00000000 ____D C:\Intel
2016-03-11 01:50 - 2016-03-04 23:48 - 00091128 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2016-03-11 01:49 - 2016-03-14 17:41 - 00000000 ____D C:\Program Files\Intel
2016-03-11 01:48 - 2016-03-11 01:48 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2016-03-11 01:46 - 2016-03-11 12:21 - 00194272 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-11 01:46 - 2016-03-11 01:46 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-03-10 20:01 - 2016-03-10 20:01 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Macromedia
2016-03-10 20:01 - 2016-03-10 20:01 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Macromedia
2016-03-10 19:56 - 2016-03-10 19:57 - 00000000 ____D C:\Users\Vanessa\Desktop\Sicherung aller Dateien
2016-03-10 19:51 - 2016-03-19 16:50 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-03-10 19:51 - 2016-03-10 19:52 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Adobe
2016-03-10 19:51 - 2016-03-10 19:51 - 00003860 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-03-10 18:22 - 2015-12-09 04:39 - 00301728 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-03-10 18:20 - 2016-03-10 18:21 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-10 18:20 - 2016-03-10 18:20 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-10 17:27 - 2016-03-19 11:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-10 17:27 - 2016-03-10 17:36 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Mozilla
2016-03-10 17:27 - 2016-03-10 17:27 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-03-10 17:27 - 2016-03-10 17:27 - 00001220 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-03-10 17:27 - 2016-03-10 17:27 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Mozilla
2016-03-10 17:25 - 2016-03-10 17:26 - 00242416 _____ C:\Users\Vanessa\Downloads\Firefox Setup Stub 45.0.exe
2016-03-10 17:25 - 2016-03-10 17:25 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2016-03-10 17:23 - 2016-03-10 17:23 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Comms
2016-03-10 17:13 - 2016-03-10 17:13 - 00000000 ____D C:\Users\Vanessa\Desktop\Zertifikate
2016-03-10 17:09 - 2016-03-10 17:09 - 03370713 _____ C:\Users\Vanessa\Desktop\WLan Hotzonne.pdf
2016-03-10 17:09 - 2016-03-10 17:09 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-03-10 17:07 - 2016-03-19 15:23 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-10 17:07 - 2016-03-11 17:08 - 00002393 _____ C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-03-10 17:07 - 2016-03-11 17:08 - 00000000 ___RD C:\Users\Vanessa\OneDrive
2016-03-10 17:07 - 2016-03-10 17:07 - 00000000 ____D C:\Users\Vanessa\AppData\Local\NetworkTiles
2016-03-10 17:07 - 2016-03-10 17:07 - 00000000 ____D C:\Users\Vanessa\AppData\Local\MicrosoftEdge
2016-03-10 17:06 - 2016-03-10 17:06 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-03-10 17:05 - 2016-03-10 17:05 - 00000000 ____D C:\Users\Vanessa\AppData\Local\ActiveSync
2016-03-10 17:04 - 2016-03-10 17:04 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Publishers
2016-03-10 17:03 - 2016-03-19 15:20 - 00000000 __SHD C:\Users\Vanessa\IntelGraphicsProfiles
2016-03-10 17:03 - 2016-03-14 17:42 - 00000000 ____D C:\Users\Vanessa
2016-03-10 17:03 - 2016-03-11 12:34 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-10 17:03 - 2016-03-10 17:26 - 00000000 ____D C:\Users\Vanessa\AppData\Local\Packages
2016-03-10 17:03 - 2016-03-10 17:03 - 00000020 ___SH C:\Users\Vanessa\ntuser.ini
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Vorlagen
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Startmenü
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Netzwerkumgebung
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Lokale Einstellungen
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Eigene Dateien
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Druckumgebung
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Documents\Eigene Videos
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Documents\Eigene Musik
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Documents\Eigene Bilder
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\AppData\Local\Verlauf
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\AppData\Local\Anwendungsdaten
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 _SHDL C:\Users\Vanessa\Anwendungsdaten
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 ____D C:\Users\Vanessa\AppData\Roaming\Adobe
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 ____D C:\Users\Vanessa\AppData\Local\VirtualStore
2016-03-10 17:03 - 2016-03-10 17:03 - 00000000 ____D C:\Users\Vanessa\AppData\Local\TileDataLayer
2016-03-10 16:57 - 2016-03-10 16:57 - 00000000 ____D C:\ProgramData\USOShared
2016-03-10 16:57 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-03-10 16:45 - 2016-03-10 16:45 - 00000000 _____ C:\Recovery.txt
2016-03-10 16:42 - 2016-03-10 16:58 - 00000000 ___DC C:\WINDOWS\Panther
2016-03-10 16:42 - 2016-03-10 16:42 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-03-10 16:42 - 2016-03-10 16:42 - 00000000 ____D C:\WINDOWS\InfusedApps
2016-03-10 16:41 - 2016-03-10 16:41 - 00000000 ____D C:\Program Files\Elantech
2016-03-10 16:40 - 2016-03-10 16:40 - 00000000 ____D C:\WINDOWS\Setup
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\OCR
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files\MSBuild
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-03-10 16:39 - 2016-03-10 16:39 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-03-10 16:38 - 2016-03-19 15:23 - 00776766 _____ C:\WINDOWS\system32\perfh007.dat
2016-03-10 16:38 - 2016-03-19 15:23 - 00155544 _____ C:\WINDOWS\system32\perfc007.dat
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\de
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\0409
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\winrm
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\WCN
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\de
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\0409
2016-03-10 16:38 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-03-10 16:38 - 2016-03-10 16:37 - 00305634 _____ C:\WINDOWS\system32\perfi007.dat
2016-03-10 16:38 - 2016-03-10 16:37 - 00040390 _____ C:\WINDOWS\system32\perfd007.dat
2016-03-10 16:34 - 2016-03-08 08:12 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-03-10 16:34 - 2016-03-08 08:12 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-10 16:32 - 2016-03-19 13:02 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-10 16:32 - 2016-03-19 11:22 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-10 16:32 - 2016-03-18 12:08 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-10 16:32 - 2016-03-15 08:41 - 00000000 ____D C:\WINDOWS\appcompat
2016-03-10 16:32 - 2016-03-14 00:25 - 00000000 ____D C:\WINDOWS\rescache
2016-03-10 16:32 - 2016-03-11 01:55 - 00000000 ____D C:\WINDOWS\CSC
2016-03-10 16:32 - 2016-03-11 01:55 - 00000000 ____D C:\Program Files\Windows NT
2016-03-10 16:32 - 2016-03-11 01:53 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-03-10 16:32 - 2016-03-11 01:27 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 __RSD C:\WINDOWS\Media
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\Provisioning
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-10 16:32 - 2016-03-11 01:26 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-10 16:32 - 2016-03-11 01:25 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-10 16:32 - 2016-03-11 01:25 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-10 16:32 - 2016-03-11 01:25 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-10 16:32 - 2016-03-10 17:21 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-03-10 16:32 - 2016-03-10 17:04 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-03-10 16:32 - 2016-03-10 17:04 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-03-10 16:32 - 2016-03-10 17:03 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-03-10 16:32 - 2016-03-10 16:57 - 00000000 ____D C:\WINDOWS\system32\spool
2016-03-10 16:32 - 2016-03-10 16:57 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-03-10 16:32 - 2016-03-10 16:57 - 00000000 ____D C:\ProgramData\USOPrivate
2016-03-10 16:32 - 2016-03-10 16:45 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-03-10 16:32 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-03-10 16:32 - 2016-03-10 16:39 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\setup
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\system32\Com
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\IME
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\Help
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Windows Defender
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Common Files\System
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-03-10 16:32 - 2016-03-10 16:38 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-03-10 16:32 - 2016-03-10 16:33 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 __RHD C:\Users\Public\Libraries
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\system32\Nui
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___RD C:\WINDOWS\DesktopTileResources
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Web
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Vss
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\tracing
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\TAPI
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\ras
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SystemResources
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SystemApps
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\winevt
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\ras
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\IME
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\icsxml
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\ias
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\downlevel
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\System
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SKB
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\ShellNew
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\security
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\schemas
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\SchCache
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Resources
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Registration
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\PLA
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Performance
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\ModemLogs
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\L2Schemas
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\InputMethod
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Globalization
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Cursors
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\Branding
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\addins
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\ProgramData\Comms
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\Program Files\Common Files\Services
2016-03-10 16:32 - 2016-03-10 16:32 - 00000000 ____D C:\Program Files (x86)\Windows NT
2016-03-10 16:32 - 2016-03-10 16:29 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2016-03-10 16:32 - 2016-03-10 16:29 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2016-03-10 16:32 - 2016-03-10 16:29 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2016-03-10 16:32 - 2016-03-10 16:29 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2016-03-10 16:32 - 2016-03-10 16:29 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2016-03-10 16:32 - 2016-03-10 16:29 - 00015462 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-03-10 16:32 - 2016-03-10 16:29 - 00008798 _____ C:\WINDOWS\SysWOW64\icrav03.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00008798 _____ C:\WINDOWS\system32\icrav03.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2016-03-10 16:32 - 2016-03-10 16:29 - 00001988 _____ C:\WINDOWS\SysWOW64\ticrf.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00001988 _____ C:\WINDOWS\system32\ticrf.rat
2016-03-10 16:32 - 2016-03-10 16:29 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2016-03-10 16:32 - 2016-03-10 16:29 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2016-03-10 16:32 - 2016-03-10 16:29 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2016-03-10 16:32 - 2016-03-10 16:29 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2016-03-10 16:32 - 2016-03-10 16:29 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2016-03-10 16:32 - 2016-03-10 16:29 - 00000389 _____ C:\WINDOWS\system32\AutoWorkplace.exe.config
2016-03-10 16:32 - 2016-03-10 16:29 - 00000219 _____ C:\WINDOWS\system.ini
2016-03-10 16:32 - 2016-03-10 16:29 - 00000092 _____ C:\WINDOWS\win.ini
2016-03-10 16:31 - 2016-03-19 15:23 - 00000000 ____D C:\WINDOWS\INF
2016-03-10 16:21 - 2016-03-17 16:56 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-10 16:17 - 2016-03-19 15:18 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-03-10 16:17 - 2016-03-10 16:57 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-10 16:17 - 2016-03-10 16:38 - 00000000 ____D C:\WINDOWS\servicing
2016-03-10 16:17 - 2016-03-10 16:32 - 00000000 ____D C:\WINDOWS\system32\SMI
2016-03-10 16:17 - 2015-10-30 07:33 - 00000164 _____ C:\WINDOWS\system32\config\FP
2016-03-10 16:08 - 2016-03-10 16:45 - 00000000 ___HD C:\$SysReset
2016-03-09 08:35 - 2016-03-01 06:31 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-09 08:35 - 2016-03-01 06:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-09 08:35 - 2016-02-24 10:52 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-03-09 08:35 - 2016-02-24 10:51 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 08:35 - 2016-02-24 10:48 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-09 08:35 - 2016-02-24 10:47 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-09 08:35 - 2016-02-24 10:40 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-09 08:35 - 2016-02-24 10:34 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-09 08:35 - 2016-02-24 10:28 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-03-09 08:35 - 2016-02-24 10:15 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-03-09 08:35 - 2016-02-24 09:58 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-09 08:35 - 2016-02-24 09:54 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-03-09 08:35 - 2016-02-24 09:51 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-09 08:35 - 2016-02-24 09:50 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-03-09 08:35 - 2016-02-24 09:46 - 06607080 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-09 08:35 - 2016-02-24 09:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 08:35 - 2016-02-24 09:39 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-03-09 08:35 - 2016-02-24 09:39 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-03-09 08:35 - 2016-02-24 09:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-03-09 08:35 - 2016-02-24 09:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 08:35 - 2016-02-24 09:11 - 01997152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-09 08:35 - 2016-02-24 09:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-03-09 08:35 - 2016-02-24 09:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-03-09 08:35 - 2016-02-24 09:11 - 00652392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-03-09 08:35 - 2016-02-24 09:11 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-09 08:35 - 2016-02-24 09:11 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-09 08:35 - 2016-02-24 09:10 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 08:35 - 2016-02-24 09:10 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-09 08:35 - 2016-02-24 09:09 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-09 08:35 - 2016-02-24 09:09 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-09 08:35 - 2016-02-24 09:06 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-03-09 08:35 - 2016-02-24 08:59 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-03-09 08:35 - 2016-02-24 08:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 08:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 08:35 - 2016-02-24 08:38 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-03-09 08:35 - 2016-02-24 08:38 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 08:35 - 2016-02-24 08:37 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 08:35 - 2016-02-24 08:36 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 08:35 - 2016-02-24 08:35 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-03-09 08:35 - 2016-02-24 08:35 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-03-09 08:35 - 2016-02-24 08:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-09 08:35 - 2016-02-24 08:35 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-03-09 08:35 - 2016-02-24 08:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-09 08:35 - 2016-02-24 08:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-09 08:35 - 2016-02-24 08:31 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-03-09 08:35 - 2016-02-24 08:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-03-09 08:35 - 2016-02-24 08:28 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 08:35 - 2016-02-24 08:23 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-03-09 08:35 - 2016-02-24 08:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-09 08:35 - 2016-02-24 08:23 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 08:22 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 08:35 - 2016-02-24 08:20 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-03-09 08:35 - 2016-02-24 08:20 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-03-09 08:35 - 2016-02-24 08:20 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 08:35 - 2016-02-24 08:19 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-03-09 08:35 - 2016-02-24 08:19 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-09 08:35 - 2016-02-24 08:15 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-03-09 08:35 - 2016-02-24 08:14 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-03-09 08:35 - 2016-02-24 08:13 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 08:35 - 2016-02-24 08:12 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-03-09 08:35 - 2016-02-24 08:12 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 08:35 - 2016-02-24 08:10 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-03-09 08:35 - 2016-02-24 08:09 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 08:35 - 2016-02-24 08:09 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-03-09 08:35 - 2016-02-24 08:07 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 08:35 - 2016-02-24 08:05 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-03-09 08:35 - 2016-02-24 08:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-03-09 08:35 - 2016-02-24 08:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 08:35 - 2016-02-24 08:01 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-03-09 08:35 - 2016-02-24 08:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 08:35 - 2016-02-24 08:01 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-03-09 08:35 - 2016-02-24 08:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 08:35 - 2016-02-24 07:59 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 08:35 - 2016-02-24 07:59 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 08:35 - 2016-02-24 07:59 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-03-09 08:35 - 2016-02-24 07:58 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-09 08:35 - 2016-02-24 07:55 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-03-09 08:35 - 2016-02-24 07:55 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 08:35 - 2016-02-24 07:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-03-09 08:35 - 2016-02-24 07:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 08:35 - 2016-02-24 07:54 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-09 08:35 - 2016-02-24 07:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 08:35 - 2016-02-24 07:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 07:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-03-09 08:35 - 2016-02-24 07:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-03-09 08:35 - 2016-02-24 07:52 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-09 08:35 - 2016-02-24 07:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-03-09 08:35 - 2016-02-24 07:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-03-09 08:35 - 2016-02-24 07:49 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-03-09 08:35 - 2016-02-24 07:47 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-03-09 08:35 - 2016-02-24 07:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 08:35 - 2016-02-24 07:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-03-09 08:35 - 2016-02-24 07:43 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-03-09 08:35 - 2016-02-24 07:43 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 08:35 - 2016-02-24 07:42 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-03-09 08:35 - 2016-02-24 07:42 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-03-09 08:35 - 2016-02-24 07:41 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 08:35 - 2016-02-24 07:41 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 08:35 - 2016-02-24 07:40 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-09 08:35 - 2016-02-24 07:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-03-09 08:35 - 2016-02-24 07:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-03-09 08:35 - 2016-02-24 07:39 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-09 08:35 - 2016-02-24 07:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2016-03-09 08:35 - 2016-02-24 07:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-03-09 08:35 - 2016-02-24 07:36 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 08:35 - 2016-02-24 07:34 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-03-09 08:35 - 2016-02-24 07:34 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-03-09 08:35 - 2016-02-24 07:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-03-09 08:35 - 2016-02-24 07:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-03-09 08:35 - 2016-02-24 07:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
2016-03-09 08:35 - 2016-02-24 07:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2016-03-09 08:35 - 2016-02-24 07:28 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 08:35 - 2016-02-24 07:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-03-09 08:35 - 2016-02-24 07:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2016-03-09 08:35 - 2016-02-24 07:25 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 08:35 - 2016-02-24 07:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2016-03-09 08:35 - 2016-02-24 07:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2016-03-09 08:35 - 2016-02-24 07:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-03-09 08:35 - 2016-02-24 07:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-03-09 08:35 - 2016-02-24 07:18 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-09 08:35 - 2016-02-24 07:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-03-09 08:35 - 2016-02-24 07:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2016-03-09 08:35 - 2016-02-24 07:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-03-09 08:35 - 2016-02-24 07:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-09 08:35 - 2016-02-24 07:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-03-09 08:35 - 2016-02-24 07:11 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-09 08:35 - 2016-02-24 07:09 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-03-09 08:35 - 2016-02-24 07:09 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-03-09 08:35 - 2016-02-24 07:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-03-09 08:35 - 2016-02-24 07:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-09 08:35 - 2016-02-24 07:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-09 08:35 - 2016-02-24 07:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-03-09 08:35 - 2016-02-24 07:07 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-03-09 08:35 - 2016-02-24 07:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-09 08:35 - 2016-02-24 07:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-03-09 08:35 - 2016-02-24 07:01 - 01831936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 08:35 - 2016-02-24 07:00 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-09 08:35 - 2016-02-24 07:00 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-03-09 08:35 - 2016-02-24 06:57 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 08:35 - 2016-02-24 06:55 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 08:35 - 2016-02-24 06:43 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-03-09 08:35 - 2016-02-24 06:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-09 08:35 - 2016-02-24 06:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2016-03-09 08:35 - 2016-02-24 06:20 - 22376960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-09 08:35 - 2016-02-24 06:18 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-09 08:35 - 2016-02-24 06:12 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-09 08:35 - 2016-02-24 06:12 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-03-09 08:35 - 2016-02-24 06:10 - 24600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-09 08:35 - 2016-02-24 06:09 - 06972416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 08:35 - 2016-02-24 06:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-09 08:35 - 2016-02-24 06:03 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-09 08:35 - 2016-02-24 05:59 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-03-09 08:35 - 2016-02-24 05:55 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-03-06 18:20 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-03-06 18:20 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-06 18:20 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-03-06 18:20 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-06 18:20 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-06 18:20 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-05 13:35 - 2016-02-23 12:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-05 13:35 - 2016-02-23 11:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-05 13:35 - 2016-02-23 11:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-05 13:35 - 2016-02-23 11:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-05 13:35 - 2016-02-23 11:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-05 13:35 - 2016-02-23 11:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-05 13:35 - 2016-02-23 10:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-05 13:35 - 2016-02-23 10:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-05 13:35 - 2016-02-23 10:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-03-05 13:35 - 2016-02-23 10:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-03-05 13:35 - 2016-02-23 10:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-05 13:35 - 2016-02-23 08:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-05 13:35 - 2016-02-23 08:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-05 13:35 - 2016-02-23 07:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-05 13:35 - 2016-02-23 07:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-03-05 13:35 - 2016-02-23 07:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-05 13:35 - 2016-02-23 07:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-03-05 13:35 - 2016-02-23 07:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-05 13:35 - 2016-02-23 07:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-05 13:35 - 2016-02-23 07:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-05 13:35 - 2016-02-09 04:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-03-05 13:35 - 2016-02-09 04:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-05 13:35 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-03-05 13:35 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-03-05 13:35 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-03-05 13:35 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-03-05 13:35 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-03-05 13:35 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-03-05 13:35 - 2016-01-16 07:21 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-03-05 13:35 - 2016-01-16 06:45 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-03-05 13:35 - 2016-01-16 06:38 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-03-05 13:35 - 2016-01-16 06:35 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-03-05 13:35 - 2016-01-16 06:31 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-03-05 13:35 - 2016-01-16 06:29 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-03-05 13:35 - 2016-01-16 06:24 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-03-05 13:35 - 2016-01-16 06:21 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-03-05 13:35 - 2016-01-16 06:20 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-03-05 13:35 - 2016-01-16 06:20 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-03-05 13:35 - 2016-01-16 06:18 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-03-05 13:35 - 2016-01-16 06:17 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-03-05 13:35 - 2016-01-16 06:16 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-03-05 13:35 - 2016-01-16 06:15 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-03-05 13:35 - 2016-01-05 03:45 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-03-05 13:35 - 2016-01-05 03:42 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-03-05 13:35 - 2016-01-05 03:37 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-03-05 13:35 - 2016-01-05 03:33 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-03-05 13:35 - 2016-01-05 02:43 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-03-05 13:35 - 2015-12-07 05:57 - 00973664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-03-05 13:35 - 2015-12-07 05:55 - 01281376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-03-05 13:35 - 2015-12-07 05:10 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-03-05 13:35 - 2015-11-24 09:49 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-03-05 13:35 - 2015-11-24 08:57 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-03-05 13:35 - 2015-11-24 08:29 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-03-05 13:35 - 2015-11-22 10:54 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2016-03-05 13:35 - 2015-11-22 10:42 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2016-03-05 13:35 - 2015-11-22 10:34 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-03-05 13:35 - 2015-11-22 10:27 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-03-05 13:35 - 2015-11-22 10:26 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-03-05 13:35 - 2015-11-22 10:20 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-03-05 13:35 - 2015-11-22 10:17 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-03-05 13:35 - 2015-11-13 07:43 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-03-05 13:35 - 2015-11-13 06:39 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-03-05 13:35 - 2015-11-13 06:19 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-03-05 13:34 - 2016-02-23 12:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-05 13:34 - 2016-02-23 12:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-05 13:34 - 2016-02-23 12:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-05 13:34 - 2016-02-23 12:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-05 13:34 - 2016-02-23 12:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-05 13:34 - 2016-02-23 12:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-05 13:34 - 2016-02-23 12:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-05 13:34 - 2016-02-23 12:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-05 13:34 - 2016-02-23 12:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-05 13:34 - 2016-02-23 11:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-03-05 13:34 - 2016-02-23 11:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-03-05 13:34 - 2016-02-23 11:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-05 13:34 - 2016-02-23 11:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-05 13:34 - 2016-02-23 11:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-05 13:34 - 2016-02-23 11:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-05 13:34 - 2016-02-23 11:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-05 13:34 - 2016-02-23 11:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 11:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-05 13:34 - 2016-02-23 11:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-05 13:34 - 2016-02-23 11:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-05 13:34 - 2016-02-23 11:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-05 13:34 - 2016-02-23 11:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-03-05 13:34 - 2016-02-23 11:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-05 13:34 - 2016-02-23 10:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-05 13:34 - 2016-02-23 10:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-03-05 13:34 - 2016-02-23 10:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-03-05 13:34 - 2016-02-23 10:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-03-05 13:34 - 2016-02-23 10:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-05 13:34 - 2016-02-23 10:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-05 13:34 - 2016-02-23 10:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-05 13:34 - 2016-02-23 10:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-05 13:34 - 2016-02-23 10:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-05 13:34 - 2016-02-23 10:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-05 13:34 - 2016-02-23 10:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-05 13:34 - 2016-02-23 10:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-05 13:34 - 2016-02-23 10:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-05 13:34 - 2016-02-23 10:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-05 13:34 - 2016-02-23 10:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-05 13:34 - 2016-02-23 10:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-05 13:34 - 2016-02-23 10:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-05 13:34 - 2016-02-23 09:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-05 13:34 - 2016-02-23 09:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-03-05 13:34 - 2016-02-23 09:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-05 13:34 - 2016-02-23 09:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-05 13:34 - 2016-02-23 09:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-05 13:34 - 2016-02-23 09:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2016-03-05 13:34 - 2016-02-23 09:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-05 13:34 - 2016-02-23 09:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-05 13:34 - 2016-02-23 09:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-05 13:34 - 2016-02-23 09:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-05 13:34 - 2016-02-23 09:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-03-05 13:34 - 2016-02-23 09:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-05 13:34 - 2016-02-23 09:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-05 13:34 - 2016-02-23 09:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-05 13:34 - 2016-02-23 09:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-05 13:34 - 2016-02-23 09:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-05 13:34 - 2016-02-23 09:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-05 13:34 - 2016-02-23 09:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-05 13:34 - 2016-02-23 09:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-05 13:34 - 2016-02-23 09:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-05 13:34 - 2016-02-23 09:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-05 13:34 - 2016-02-23 09:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-05 13:34 - 2016-02-23 09:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-05 13:34 - 2016-02-23 09:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-05 13:34 - 2016-02-23 09:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-05 13:34 - 2016-02-23 09:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-05 13:34 - 2016-02-23 09:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-05 13:34 - 2016-02-23 09:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-05 13:34 - 2016-02-23 09:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-05 13:34 - 2016-02-23 09:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-05 13:34 - 2016-02-23 09:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-05 13:34 - 2016-02-23 09:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-05 13:34 - 2016-02-23 09:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-05 13:34 - 2016-02-23 09:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-05 13:34 - 2016-02-23 09:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-05 13:34 - 2016-02-23 09:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-05 13:34 - 2016-02-23 09:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-05 13:34 - 2016-02-23 09:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-05 13:34 - 2016-02-23 09:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-03-05 13:34 - 2016-02-23 09:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-05 13:34 - 2016-02-23 09:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-05 13:34 - 2016-02-23 09:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-05 13:34 - 2016-02-23 09:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-05 13:34 - 2016-02-23 09:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-05 13:34 - 2016-02-23 09:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-05 13:34 - 2016-02-23 09:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
         

Antwort

Themen zu System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen
brauch, datei, error, erschein, erscheint, erstelle, erstellen, ertönt, fehlermeldung, fehlermeldungen, funktionier, funktioniert, keine verbindung, kurzzeitig, msinfo32, neues, notebook, poste, runtime, system, task-manager, thema, verbindung, w-lan, win



Ähnliche Themen: System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen


  1. System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen
    Alles rund um Windows - 13.04.2016 (37)
  2. Fehlermeldung beim Versuch FRST auszuführen
    Log-Analyse und Auswertung - 09.09.2015 (14)
  3. WLAN Verbindung zum Router
    Alles rund um Windows - 08.04.2015 (2)
  4. nur lokale WLan -Verbindung
    Netzwerk und Hardware - 06.07.2014 (8)
  5. WLAN-Verbindung plötzlich unverschlüsselt - Zugriff auf eine Default-Verbindung
    Netzwerk und Hardware - 15.12.2013 (1)
  6. Win7: System startet langsam, dauert bis es WLAN-Verbindung findet, Antivir hat mehrere Quarantäneeinträge
    Log-Analyse und Auswertung - 04.10.2013 (19)
  7. Keine Verbindung Zum WLAN-Router obwohl verbindung lt Meldung hergestellt
    Plagegeister aller Art und deren Bekämpfung - 31.12.2012 (0)
  8. Fehlermeldung beim Starten: "Bitte warten Sie während die Verbindung hergestellt wird".
    Log-Analyse und Auswertung - 28.04.2012 (28)
  9. jeder Doppelklick auf irgend eine exe versucht eine Verbindung zu Akamai aufzubauen
    Plagegeister aller Art und deren Bekämpfung - 18.11.2011 (1)
  10. Tan Phishing Versuch beim Onlinebanking
    Plagegeister aller Art und deren Bekämpfung - 08.09.2010 (12)
  11. wlan verbindung
    Netzwerk und Hardware - 27.09.2008 (17)
  12. Keine Wlan -Verbindung
    Netzwerk und Hardware - 13.02.2008 (10)
  13. Problem beim Versuch LAN-Verbindung herzustellen
    Netzwerk und Hardware - 30.10.2007 (5)
  14. Virusmeldung beim Versuch, Software zu deinstallieren
    Plagegeister aller Art und deren Bekämpfung - 05.06.2007 (6)
  15. Keine Wlan Verbindung!
    Netzwerk und Hardware - 09.11.2006 (4)
  16. Wlan unterbricht Verbindung
    Netzwerk und Hardware - 22.10.2006 (8)
  17. Keine DFÜ Verbindung bei Arcor DSL WLAN
    Plagegeister aller Art und deren Bekämpfung - 16.09.2005 (3)

Zum Thema System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen - Hallo, mir wurde geraten erst in der Malwarefraktion ein Thema zu erstellen, daher poste ich das Thema nun hier. Ich habe ein neues Notebook mit einer Win10 64er-Installation. Die CD - System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen...
Archiv
Du betrachtest: System Settings Broker: Fehlermeldung beim Versuch WLan-Verbindung aufzubauen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.