Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Bestehen reste nach trojaner infektion?

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 15.01.2017, 16:46   #1
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

Bestehen reste nach trojaner infektion?



Ich hatte gestern als ich eine alte Festplatte von mir wiedergefunden habe, sie angeschlossen um zu sehen was darauf ist. Stellt sich also kurz darauf fest da waren Trojaner drauf ...

habe bereits mit MBAB sowie S-S&D und Avira die von meiner aktuellen Festplatte entfernen können (oder auch nicht ) zumindest sagen die es wäre weg ...

wurde aber nachdem Avira gesagt hat, das Host dateien blockiert wurden etwas stutzig und bin mir jetzt nicht mehr so sicher ... andere Quellen weisen bei Host blockierung auf Trojaner hin weswegen ich befürchte nicht alles erwischt zu haben ...

ansosnten habe ich bisher noch nichts unternommen außer Scannen beseitigen neustarten ...
die FRST und Addition sind zu groß und deswegen im Archiv...
Checks sind von S-S&D
Die anderen tragen den titel schon drinnen...
Das **** in den dateien ist die zensierung meines namens...

Vielen dank im Voraus
Glaringsoul

Alt 16.01.2017, 20:37   #2
burningice
/// Malwareteam
 
Bestehen reste nach trojaner infektion? - Standard

Bestehen reste nach trojaner infektion?




Mein Name ist Rafael und ich werde dir bei der Bereinigung helfen.

Damit ich dir optimal helfen kann, halte dich bitte an folgende Regeln:
  • Bitte lies meine Posts komplett durch bevor du sie abarbeitest
  • Wenn ein Problem auftauchen sollte oder dir etwas unklar ist, unterbreche deine Arbeit und beschreibe es so genau wie möglich.
  • Bitte kein Crossposting
  • Installiere oder Deinstalliere keine Software ohne Aufforderung
  • Bitte verwende nur die Tools, welche hier im Thread erwähnt werden und führe sie nur gemäß Anweisung aus
  • Bitte antworte innerhalb von 24h um eine sinnvolle Bereinigung zu ermöglichen
  • Poste die Logs immer in CODE-Tags (#-Button), zur Not die Logs einfach aufteilen
  • Wichtig: Nur weil dein Problem mit einem Schritt plötzlich behoben ist, bedeutet das nicht, dass dein PC auch sauber ist. Mache solange weiter, bis ich dir sage, dass dein PC "clean" ist
  • Wenn ich dir nicht binnen 36h antworte, sende mir bitte eine persönliche Nachricht!
Los geht's

Schritt 0
Bitte S&D vom PC schmeißen, das ist mittlerweile so gut wie wertlos.

Schritt:1
Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers


Schritt: 2
Bitte starte wieder FRST, setze den Haken bei Addition und drücke auf Untersuchen. Poste bitte wieder die beiden Textdateien, die so entstehen.


Bitte poste dein Ergebnis zwischen Code-Tags
Wenn ein Log zu lange ist, teile ihn bitte auf mehrere Antworten.

Code-Tags?

Drücke einfach die # in Antwortfenster und füge den Log dazwischen ein


__________________

__________________

Alt 17.01.2017, 00:59   #3
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

Files nach sytem check 1



Nun Mbab hat nix gefunden hab auch bochmal neu gestartet und alle schritte wiederholt nix :/
ist das jetzt ein gutes oder schlechtes zeichen ?

zudem hab ich dieses mal allein wegen der masse an einträgen da zensieren kapituliert

Hier der FRST file
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 15-01-2017
durchgeführt von Henselmann (Administrator) auf DESKTOP-BPA0M7P (17-01-2017 00:42:00)
Gestartet von C:\Users\Henselmann\Downloads
Geladene Profile: defaultuser0 & Henselmann &  (Verfügbare Profile: defaultuser0 & Henselmann)
Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ASLED.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ledcontrolservice.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Corporation) C:\Program Files\Zune\ZuneLauncher.exe
(Apple Inc.) D:\iTunes\iTunesHelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Akamai Technologies, Inc.) C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe
(Mega Limited) C:\Users\Henselmann\AppData\Local\MEGAsync\MEGAsync.exe
() C:\Program Files (x86)\Drakonia Configurator\hid.exe
() C:\Program Files (x86)\Drakonia Configurator\trayicon.exe
(SPEEDLINK) C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Monitor.EXE
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
() C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
(Razer, Inc.) C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe
(Razer, Inc.) C:\Users\Henselmann\AppData\Local\Razer\InGameEngine\cache\RzStats.Manager\rzcefrenderprocess.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft) C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11610.1001.23.0_x64__8wekyb3d8bbwe\WinStore.App.exe
() C:\Program Files\WindowsApps\Microsoft.3DBuilder_12.0.3131.0_x64__8wekyb3d8bbwe\Builder3D.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.5362\Agent.exe
(Blizzard Entertainment) C:\Program Files (x86)\Battle.net\Battle.net.8265\Battle.net.exe
() C:\Program Files (x86)\Battle.net\Battle.net.8265\Battle.net Helper.exe
() C:\Program Files (x86)\Battle.net\Battle.net.8265\Battle.net Helper.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Control Panel Client\nvcplui.exe
() C:\Program Files (x86)\GameforgeLive\gfl_client.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.350_none_43278ee965418581\TiWorker.exe
(Microsoft Corporation) C:\Windows\System32\SystemSettingsAdminFlows.exe
() C:\Program Files (x86)\Battle.net\Battle.net.8265\Battle.net Helper.exe
(Adobe Systems, Inc.) C:\Users\Henselmann\Downloads\flashplayer_24_sa.exe

==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8844032 2016-01-27] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [323056 2015-11-04] (Intel Corporation)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2776528 2016-12-14] (Malwarebytes)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-07] (Microsoft Corporation)
HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM\...\Run: [iTunesHelper] => D:\iTunes\iTunesHelper.exe [176440 2016-12-06] (Apple Inc.)
HKLM-x32\...\Run: [GamingMouse] => C:\Program Files (x86)\Drakonia Configurator\hid.exe [248832 2013-10-29] ()
HKLM-x32\...\Run: [ACCUSOR Advanced Gaming Keyboard Driver] => C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Monitor.exe [1972736 2016-10-10] (SPEEDLINK)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2016-11-04] (Razer Inc.)
HKLM-x32\...\Run: [Kraken0502Launcher] => C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe [1599808 2015-08-14] (Razer Inc)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60408 2016-12-16] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [917576 2016-12-06] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ledcontrolservice.exe [2111488 2016-06-06] (TODO: <Company name>)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547113\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ledcontrolservice.exe [2111488 2016-06-06] (TODO: <Company name>)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2876704 2016-12-20] (Valve Corporation)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Discord] => C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe [64290304 2017-01-04] (Hammer & Chisel, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Innkeeper] => C:\Users\Henselmann\AppData\Local\Innkeeper\Update.exe --processStart Innkeeper.exe --process-start-args="-startup"
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\MountPoints2: {9a23862d-c8f4-11e6-966e-806e6f6e6963} - "E:\UI.exe" 
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2876704 2016-12-20] (Valve Corporation)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Discord] => C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe [64290304 2017-01-04] (Hammer & Chisel, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Innkeeper] => C:\Users\Henselmann\AppData\Local\Innkeeper\Update.exe --processStart Innkeeper.exe --process-start-args="-startup"
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Akamai NetSession Interface] => C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {9a23862d-c8f4-11e6-966e-806e6f6e6963} - "E:\UI.exe" 
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2876704 2016-12-20] (Valve Corporation)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\Run: [Discord] => C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe [64290304 2017-01-04] (Hammer & Chisel, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\Run: [Innkeeper] => C:\Users\Henselmann\AppData\Local\Innkeeper\Update.exe --processStart Innkeeper.exe --process-start-args="-startup"
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\Run: [Akamai NetSession Interface] => C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\MountPoints2: {9a23862d-c8f4-11e6-966e-806e6f6e6963} - "E:\UI.exe" 
HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ledcontrolservice.exe [2111488 2016-06-06] (TODO: <Company name>)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
Startup: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2017-01-15]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Henselmann\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
BootExecute: autocheck autochk * sdnclean64.exe

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{98d075b7-ca2a-46d0-8d3d-d8c044d944b5}: [DhcpNameServer] 192.168.2.1

Internet Explorer:
==================
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://pesonal-spage.com/sall/
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://pesonal-spage.com/sall/
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://pesonal-spage.com/sall/
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 

FireFox:
========
FF DefaultProfile: wm3io0bs.default
FF ProfilePath: C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default [2017-01-17]
FF Homepage: Mozilla\Firefox\Profiles\wm3io0bs.default -> hxxp://www.google.de/
FF Extension: (Kein Name) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\abs@avira.com [2017-01-01]
FF Extension: (AdBlocker Ultimate) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\adblockultimate@adblockultimate.net.xpi [2017-01-15]
FF Extension: (anonymoX) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\client@anonymox.net.xpi [2016-12-31]
FF Extension: (Ghostery) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\firefox@ghostery.com.xpi [2016-12-31]
FF Extension: (MEGA) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\firefox@mega.co.nz.xpi [2017-01-15]
FF Extension: (uMatrix) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\uMatrix@raymondhill.net.xpi [2017-01-14]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-01-11] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-01-11] ()
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2017-01-02] (Nexon)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-11] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-11] (NVIDIA Corporation)

Chrome: 
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1089592 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [476736 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [476736 2016-12-06] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1490296 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.)
R2 ASLED; C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ASLED.exe [49664 2016-06-14] (TODO: <Company name>) [Datei ist nicht signiert]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [372272 2016-12-16] (Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1445384 2016-10-22] ()
S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2017-01-10] (BitRaider, LLC)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2016-12-09] (Hi-Rez Studios) [Datei ist nicht signiert]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [19440 2015-11-04] (Intel Corporation)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4317648 2016-12-14] (Malwarebytes)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [7847256 2016-10-18] (INCA Internet Co., Ltd.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [464440 2017-01-06] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [464440 2017-01-06] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [459832 2016-12-11] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [427064 2017-01-06] (NVIDIA Corporation)
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
S2 NVIDIA Wireless Controller Service; "C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe" [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [151352 2016-12-06] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [153904 2016-12-06] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [78208 2016-12-06] (Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\Windows\System32\Drivers\avusbflt.sys [28272 2016-12-06] (Avira Operations GmbH & Co. KG)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77416 2016-12-14] ()
S3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [102856 2017-01-14] (Malwarebytes)
S3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [43968 2017-01-14] (Malwarebytes)
S3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [91584 2017-01-14] (Malwarebytes)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3f929cc119e3b994\nvlddmkm.sys [14200880 2016-12-12] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [29240 2017-01-06] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47672 2017-01-06] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [59448 2017-01-06] (NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [935168 2015-10-10] (Realtek                                            )
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [137840 2016-09-07] (Razer, Inc.)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
S3 xhunter1; C:\Windows\xhunter1.sys [36808 2017-01-16] (Wellbia.com Co., Ltd.)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
S3 IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-01-17 00:25 - 2017-01-17 00:39 - 00000000 ____D C:\Users\Henselmann\Downloads\mbar
2017-01-17 00:24 - 2017-01-17 00:40 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2017-01-17 00:22 - 2017-01-17 00:22 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Henselmann\Downloads\mbar-1.09.3.1001.exe
2017-01-17 00:22 - 2017-01-17 00:22 - 00000000 ____D C:\Users\Henselmann\Desktop\mbar
2017-01-17 00:21 - 2017-01-17 00:21 - 00000085 _____ C:\Windows\wininit.ini
2017-01-15 16:41 - 2017-01-15 16:41 - 00054680 _____ C:\Users\Henselmann\Desktop\FRST&ADDITION.zip
2017-01-15 16:41 - 2017-01-15 16:41 - 00000000 ____D C:\ProgramData\Estsoft
2017-01-15 16:33 - 2017-01-15 16:33 - 00279194 _____ C:\Users\Henselmann\Desktop\FRST.txt
2017-01-15 16:33 - 2017-01-15 16:33 - 00111270 _____ C:\Users\Henselmann\Desktop\Addition.txt
2017-01-15 16:27 - 2017-01-15 16:32 - 00111267 _____ C:\Users\Henselmann\Downloads\Addition.txt
2017-01-15 16:26 - 2017-01-17 00:42 - 00022802 _____ C:\Users\Henselmann\Downloads\FRST.txt
2017-01-15 16:26 - 2017-01-17 00:42 - 00000000 ____D C:\FRST
2017-01-15 16:25 - 2017-01-15 16:25 - 02419200 _____ (Farbar) C:\Users\Henselmann\Downloads\FRST64.exe
2017-01-15 16:03 - 2017-01-15 16:23 - 00048615 _____ C:\Users\Henselmann\Desktop\Checks.170115-0351.txt
2017-01-15 16:03 - 2017-01-15 04:08 - 00014072 _____ C:\Users\Henselmann\Desktop\Checks.170115-0408.txt
2017-01-15 16:01 - 2017-01-15 16:04 - 00001185 _____ C:\Users\Henselmann\Desktop\ErgebnisseMBAM1.txt
2017-01-15 15:59 - 2017-01-15 16:21 - 00006524 _____ C:\Users\Henselmann\Desktop\EreignisseAvira.txt
2017-01-15 14:48 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-144851.backup
2017-01-15 14:34 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-143431.backup
2017-01-15 12:09 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-120900.backup
2017-01-15 04:13 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-041311.backup
2017-01-15 02:32 - 2017-01-15 02:32 - 00001144 _____ C:\Users\Henselmann\Desktop\MEGAsync.lnk
2017-01-15 02:32 - 2017-01-15 02:32 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2017-01-15 02:23 - 2017-01-15 02:23 - 00000000 ____D C:\Program Files\Common Files\AV
2017-01-15 02:23 - 2015-07-28 17:52 - 00821920 _____ (Safer-Networking Ltd. ) C:\Users\Public\Desktop\Post Win10 Spybot-install.exe
2017-01-15 02:18 - 2017-01-15 02:18 - 09204168 _____ (Piriform Ltd) C:\Users\Henselmann\Downloads\ccsetup_525.exe
2017-01-15 02:18 - 2017-01-15 02:18 - 00002880 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2017-01-15 02:18 - 2017-01-15 02:18 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2017-01-15 02:18 - 2017-01-15 02:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-01-15 02:18 - 2017-01-15 02:18 - 00000000 ____D C:\Program Files\CCleaner
2017-01-15 02:17 - 2017-01-17 00:21 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2017-01-15 02:17 - 2017-01-17 00:21 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2017-01-15 02:17 - 2017-01-15 02:17 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2017-01-15 02:16 - 2017-01-15 02:16 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Henselmann\Downloads\spybot-2.4.40.exe
2017-01-15 01:28 - 2017-01-15 01:28 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-01-15 01:28 - 2017-01-15 01:28 - 00001220 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-01-15 01:28 - 2017-01-15 01:28 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-01-15 01:28 - 2017-01-15 01:28 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-01-15 01:27 - 2017-01-15 01:27 - 00243720 _____ C:\Users\Henselmann\Downloads\Firefox Setup Stub 50.1.0.exe
2017-01-15 01:19 - 2017-01-15 01:19 - 00001500 _____ C:\Users\Henselmann\Desktop\Overwatch.lnk
2017-01-15 01:19 - 2017-01-15 01:19 - 00001455 _____ C:\Users\Henselmann\Desktop\Hearthstone.lnk
2017-01-15 01:19 - 2017-01-15 01:19 - 00001256 _____ C:\Users\Henselmann\Desktop\SWTOR.lnk
2017-01-15 01:18 - 2017-01-15 01:18 - 00001461 _____ C:\Users\Henselmann\Desktop\Battle.net.lnk
2017-01-15 01:17 - 2017-01-15 01:17 - 00000872 _____ C:\Users\Henselmann\Desktop\Vindictus.lnk
2017-01-15 01:16 - 2017-01-15 01:16 - 00001194 _____ C:\Users\Henselmann\Desktop\Black Desert Online.lnk
2017-01-15 00:54 - 2017-01-15 01:03 - 00000000 ____D C:\Program Files (x86)\AdBlocker
2017-01-15 00:54 - 2017-01-15 00:55 - 00000000 ____D C:\Windows\system32\SSL
2017-01-15 00:54 - 2017-01-15 00:54 - 00001410 ___RS C:\ProgramData\Microsoft\Windows\Start Menu\Вlaсk Dеsеrt Online.lnk
2017-01-15 00:54 - 2017-01-15 00:54 - 00001345 ___RS C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Мozilla Firеfoх.lnk
2017-01-15 00:54 - 2017-01-15 00:54 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\SPI
2017-01-15 00:54 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\vCore
2017-01-15 00:54 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoBox
2017-01-14 20:47 - 2017-01-14 20:47 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\JAM Software
2017-01-14 19:56 - 2017-01-14 19:57 - 00000000 ____D C:\Users\Henselmann\Desktop\musik i tunes packover
2017-01-14 19:45 - 2017-01-14 19:45 - 00000000 ____D C:\Users\Henselmann\Desktop\HeavyLoad
2017-01-14 19:41 - 2017-01-14 19:41 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2017-01-14 19:38 - 2017-01-14 19:38 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Temp
2017-01-14 19:21 - 2017-01-14 19:21 - 00000000 ___RD C:\Users\Henselmann\3D Objects
2017-01-14 19:20 - 2017-01-14 19:20 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Apps\2.0
2017-01-14 18:52 - 2017-01-14 19:42 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Apple Computer
2017-01-14 18:52 - 2017-01-14 18:52 - 00001477 _____ C:\Users\Public\Desktop\iTunes.lnk
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Apple Computer
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\ProgramData\Apple Computer
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\Program Files\iPod
2017-01-14 18:37 - 2017-01-14 18:52 - 00000000 ____D C:\Program Files\Common Files\Apple
2017-01-14 18:37 - 2017-01-14 18:37 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Windows\System32\Tasks\Apple
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Apple
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Program Files\Bonjour
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Program Files (x86)\Bonjour
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2017-01-14 18:36 - 2017-01-14 18:37 - 00000000 ____D C:\ProgramData\Apple
2017-01-14 14:40 - 2017-01-14 18:36 - 177044296 _____ (Apple Inc.) C:\Users\Henselmann\Downloads\iTunes6464Setup.exe
2017-01-14 14:39 - 2017-01-14 14:39 - 00000000 ____D C:\Users\Henselmann\Downloads\Gameforge Live
2017-01-13 20:34 - 2017-01-13 20:34 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SWTOR
2017-01-13 20:27 - 2017-01-13 20:27 - 00002642 _____ C:\Users\Public\Desktop\Skype.lnk
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ____D C:\Users\Henselmann\Tracing
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ____D C:\ProgramData\Skype
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-01-13 20:25 - 2017-01-13 20:26 - 01629664 _____ (Skype Technologies S.A.) C:\Users\Henselmann\Downloads\SkypeSetup.exe
2017-01-13 02:03 - 2017-01-13 02:03 - 00605564 _____ C:\Windows\Minidump\011317-5968-01.dmp
2017-01-13 00:02 - 2017-01-17 00:36 - 00000000 ____D C:\Users\Henselmann\Desktop\SDT
2017-01-13 00:01 - 2017-01-13 00:01 - 15032408 _____ (Adobe Systems, Inc.) C:\Users\Henselmann\Downloads\flashplayer_24_sa.exe
2017-01-11 17:36 - 2017-01-11 17:36 - 00000000 ____D C:\Windows\LastGood.Tmp
2017-01-11 17:36 - 2017-01-06 02:10 - 00158264 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2017-01-11 17:36 - 2017-01-06 02:10 - 00126008 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2017-01-11 17:36 - 2017-01-06 02:10 - 00059448 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2017-01-10 19:44 - 2017-01-10 19:44 - 00000000 ____D C:\Users\Public\Documents\BitRaider
2017-01-10 19:44 - 2017-01-10 19:44 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SWTORPerf
2017-01-10 19:44 - 2017-01-10 19:44 - 00000000 ____D C:\ProgramData\BitRaider
2017-01-10 19:41 - 2017-01-10 19:41 - 00000787 ____H C:\Users\Public\Desktop\Star Wars - The Old Republic.lnk
2017-01-10 19:40 - 2017-01-10 19:40 - 29719936 _____ C:\Users\Henselmann\Downloads\SWTOR_setup.exe
2017-01-10 19:18 - 2016-12-21 09:08 - 00245600 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2017-01-10 19:18 - 2016-12-21 09:08 - 00136032 _____ (Microsoft Corporation) C:\Windows\system32\ImplatSetup.dll
2017-01-10 19:18 - 2016-12-21 08:46 - 00624048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2017-01-10 19:18 - 2016-12-21 08:43 - 04130440 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2017-01-10 19:18 - 2016-12-21 08:43 - 01454504 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2017-01-10 19:18 - 2016-12-21 08:43 - 01071736 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 22224480 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 01988560 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 01702392 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 01300600 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2017-01-10 19:18 - 2016-12-21 08:41 - 01600632 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2017-01-10 19:18 - 2016-12-21 08:08 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2017-01-10 19:18 - 2016-12-21 08:06 - 06285312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2017-01-10 19:18 - 2016-12-21 07:59 - 00883712 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2017-01-10 19:18 - 2016-12-21 07:56 - 00936960 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2017-01-10 19:18 - 2016-12-21 07:53 - 04474368 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2017-01-10 19:18 - 2016-12-21 07:51 - 08075776 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2017-01-10 19:18 - 2016-12-21 07:51 - 05611008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2017-01-10 19:18 - 2016-12-21 07:50 - 01490432 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-01-10 19:18 - 2016-12-21 06:59 - 00218976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinesam.dll
2017-01-10 19:18 - 2016-12-21 06:09 - 00263472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2017-01-10 19:18 - 2016-12-21 06:01 - 20969928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-01-10 19:18 - 2016-12-21 05:43 - 00285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2017-01-10 19:18 - 2016-12-21 05:41 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BioFeedback.dll
2017-01-10 19:18 - 2016-12-21 05:40 - 00557568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2017-01-10 19:18 - 2016-12-21 05:40 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2017-01-10 19:18 - 2016-12-21 05:39 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgentUserBroker.exe
2017-01-10 19:18 - 2016-12-21 05:38 - 00866816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll
2017-01-10 19:18 - 2016-12-21 05:30 - 05398016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2017-01-10 19:18 - 2016-12-21 05:26 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVP9DEC.dll
2017-01-10 19:18 - 2016-12-21 05:22 - 01883648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2017-01-10 19:18 - 2016-12-14 06:41 - 01235296 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-01-10 19:18 - 2016-12-14 06:23 - 00404832 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-01-10 19:18 - 2016-12-14 06:21 - 02206496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2017-01-10 19:18 - 2016-12-14 05:48 - 01631232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2017-01-10 19:18 - 2016-12-14 05:38 - 17188864 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2017-01-10 19:18 - 2016-12-14 05:38 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.CredDialogController.dll
2017-01-10 19:18 - 2016-12-14 05:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2017-01-10 19:18 - 2016-12-14 05:35 - 00755712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-01-10 19:18 - 2016-12-14 05:26 - 00932864 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-01-10 19:18 - 2016-12-14 05:26 - 00869888 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-01-10 19:18 - 2016-12-14 05:24 - 01005568 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2017-01-10 19:18 - 2016-12-14 05:24 - 00673792 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2017-01-10 19:18 - 2016-12-14 05:23 - 03134976 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2017-01-10 19:18 - 2016-12-14 05:22 - 02317824 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-01-10 19:17 - 2016-12-21 09:04 - 07816032 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-01-10 19:17 - 2016-12-21 08:49 - 00328008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2017-01-10 19:17 - 2016-12-21 08:43 - 00092512 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2017-01-10 19:17 - 2016-12-21 08:42 - 00241504 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
2017-01-10 19:17 - 2016-12-21 08:37 - 00455520 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2017-01-10 19:17 - 2016-12-21 08:15 - 22563840 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2017-01-10 19:17 - 2016-12-21 08:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2017-01-10 19:17 - 2016-12-21 08:13 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2017-01-10 19:17 - 2016-12-21 08:12 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2017-01-10 19:17 - 2016-12-21 08:10 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2017-01-10 19:17 - 2016-12-21 08:09 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\OneBackupHandler.dll
2017-01-10 19:17 - 2016-12-21 08:09 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 01292288 _____ (Microsoft Corporation) C:\Windows\system32\MSVPXENC.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\DeveloperOptionsSettingsHandlers.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2017-01-10 19:17 - 2016-12-21 08:07 - 00748544 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2017-01-10 19:17 - 2016-12-21 08:06 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll
2017-01-10 19:17 - 2016-12-21 08:06 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe
2017-01-10 19:17 - 2016-12-21 08:06 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-01-10 19:17 - 2016-12-21 08:05 - 00425984 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
2017-01-10 19:17 - 2016-12-21 08:05 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\indexeddbserver.dll
2017-01-10 19:17 - 2016-12-21 08:05 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2017-01-10 19:17 - 2016-12-21 08:01 - 09131008 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2017-01-10 19:17 - 2016-12-21 08:00 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2017-01-10 19:17 - 2016-12-21 07:59 - 01908224 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2017-01-10 19:17 - 2016-12-21 07:58 - 23678464 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-01-10 19:17 - 2016-12-21 07:57 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\fhsettingsprovider.dll
2017-01-10 19:17 - 2016-12-21 07:56 - 00947712 _____ (Microsoft Corporation) C:\Windows\system32\MSVP9DEC.dll
2017-01-10 19:17 - 2016-12-21 07:55 - 08129536 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2017-01-10 19:17 - 2016-12-21 07:55 - 04749312 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2017-01-10 19:17 - 2016-12-21 07:54 - 05511680 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2017-01-10 19:17 - 2016-12-21 07:53 - 06664192 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2017-01-10 19:17 - 2016-12-21 07:53 - 01692672 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2017-01-10 19:17 - 2016-12-21 07:51 - 02275840 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2017-01-10 19:17 - 2016-12-21 07:49 - 04149248 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2017-01-10 19:17 - 2016-12-21 07:49 - 02691072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2017-01-10 19:17 - 2016-12-21 07:49 - 01062912 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2017-01-10 19:17 - 2016-12-21 07:47 - 01121280 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 03892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01852720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01360464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01277344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01201872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 00980832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2017-01-10 19:17 - 2016-12-21 05:46 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2017-01-10 19:17 - 2016-12-21 05:41 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-01-10 19:17 - 2016-12-21 05:40 - 00318976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2017-01-10 19:17 - 2016-12-21 05:40 - 00237056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncSettings.dll
2017-01-10 19:17 - 2016-12-21 05:39 - 01300480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll
2017-01-10 19:17 - 2016-12-21 05:35 - 04612608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2017-01-10 19:17 - 2016-12-21 05:35 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\indexeddbserver.dll
2017-01-10 19:17 - 2016-12-21 05:34 - 07626752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-01-10 19:17 - 2016-12-21 05:33 - 19413504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2017-01-10 19:17 - 2016-12-21 05:32 - 19417600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-01-10 19:17 - 2016-12-21 05:30 - 01255936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2017-01-10 19:17 - 2016-12-21 05:27 - 00640000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2017-01-10 19:17 - 2016-12-21 05:25 - 07469056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2017-01-10 19:17 - 2016-12-21 05:25 - 06474752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe
2017-01-10 19:17 - 2016-12-21 05:24 - 06044160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2017-01-10 19:17 - 2016-12-21 05:24 - 05061120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2017-01-10 19:17 - 2016-12-21 05:24 - 03733504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2017-01-10 19:17 - 2016-12-21 05:24 - 00886272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2017-01-10 19:17 - 2016-12-21 05:22 - 00860672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2017-01-10 19:17 - 2016-12-14 06:41 - 00590960 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2017-01-10 19:17 - 2016-12-14 06:34 - 02482280 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2017-01-10 19:17 - 2016-12-14 06:33 - 01356864 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2017-01-10 19:17 - 2016-12-14 06:19 - 00584544 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2017-01-10 19:17 - 2016-12-14 06:18 - 00715104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2017-01-10 19:17 - 2016-12-14 06:18 - 00335712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2017-01-10 19:17 - 2016-12-14 06:17 - 00319288 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2017-01-10 19:17 - 2016-12-14 06:14 - 01694712 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2017-01-10 19:17 - 2016-12-14 06:14 - 00418952 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2017-01-10 19:17 - 2016-12-14 06:14 - 00089416 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2017-01-10 19:17 - 2016-12-14 06:08 - 00341344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-01-10 19:17 - 2016-12-14 06:06 - 00509792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2017-01-10 19:17 - 2016-12-14 06:01 - 01557808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2017-01-10 19:17 - 2016-12-14 06:01 - 00382784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2017-01-10 19:17 - 2016-12-14 06:01 - 00076984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2017-01-10 19:17 - 2016-12-14 05:46 - 01631232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-01-10 19:17 - 2016-12-14 05:46 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-01-10 19:17 - 2016-12-14 05:45 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2017-01-10 19:17 - 2016-12-14 05:43 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2017-01-10 19:17 - 2016-12-14 05:41 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-01-10 19:17 - 2016-12-14 05:40 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudBackupSettings.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-10 19:17 - 2016-12-14 05:39 - 00837632 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2017-01-10 19:17 - 2016-12-14 05:39 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2017-01-10 19:17 - 2016-12-14 05:39 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.CredDialogController.dll
2017-01-10 19:17 - 2016-12-14 05:38 - 13869056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2017-01-10 19:17 - 2016-12-14 05:38 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\CloudBackupSettings.dll
2017-01-10 19:17 - 2016-12-14 05:36 - 01002496 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2017-01-10 19:17 - 2016-12-14 05:36 - 00539648 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2017-01-10 19:17 - 2016-12-14 05:36 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2017-01-10 19:17 - 2016-12-14 05:35 - 00712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-01-10 19:17 - 2016-12-14 05:35 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2017-01-10 19:17 - 2016-12-14 05:35 - 00553984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2017-01-10 19:17 - 2016-12-14 05:32 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3D12.dll
2017-01-10 19:17 - 2016-12-14 05:32 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2017-01-10 19:17 - 2016-12-14 05:25 - 02009600 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll
2017-01-10 19:17 - 2016-12-14 05:23 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2017-01-10 19:17 - 2016-12-14 05:22 - 02998272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2017-01-10 19:17 - 2016-12-14 05:22 - 02748416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2017-01-10 19:17 - 2016-12-14 05:22 - 01513472 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2017-01-10 19:17 - 2016-12-14 05:22 - 00707584 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2017-01-10 19:17 - 2016-12-14 05:22 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2017-01-10 19:17 - 2016-12-14 05:21 - 03616768 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2017-01-10 19:17 - 2016-11-02 13:01 - 00484584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2017-01-10 19:17 - 2016-11-02 12:00 - 00534096 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2017-01-10 19:17 - 2016-11-02 11:28 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2017-01-10 19:17 - 2016-11-02 11:22 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2017-01-10 19:17 - 2016-11-02 11:21 - 00942080 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2017-01-10 19:17 - 2016-08-02 05:30 - 00822784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2017-01-09 18:49 - 2017-01-09 18:49 - 00000718 _____ C:\Users\Henselmann\Desktop\S4 League.lnk
2017-01-09 18:35 - 2017-01-09 18:35 - 00578584 _____ (Aeria Games & Entertainment) C:\Users\Henselmann\Downloads\s4league_us_downloader.exe
2017-01-09 18:35 - 2017-01-09 18:35 - 00000000 ____D C:\AeriaGames
2017-01-08 04:12 - 2017-01-14 20:47 - 00007597 _____ C:\Users\Henselmann\AppData\Local\Resmon.ResmonCfg
2017-01-07 23:26 - 2017-01-07 23:26 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Carbon
2017-01-07 18:12 - 2017-01-15 20:16 - 00000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2017-01-07 18:12 - 2017-01-07 18:16 - 00000000 ____D C:\ProgramData\Hi-Rez Studios
2017-01-07 18:12 - 2017-01-07 18:12 - 00000000 ____D C:\Users\Henselmann\AppData\Local\HirezLauncherUI
2017-01-07 18:12 - 2017-01-07 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2017-01-07 17:50 - 2017-01-07 18:11 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Warframe
2017-01-07 15:27 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Podcasts
2017-01-07 15:00 - 2017-01-07 15:00 - 13049800 _____ (MEGA Limited) C:\Users\Henselmann\Downloads\MEGAsyncSetup.exe
2017-01-07 13:42 - 2017-01-07 21:04 - 00001036 _____ C:\Users\Henselmann\Desktop\osu!.lnk
2017-01-07 13:42 - 2017-01-07 13:42 - 00001028 _____ C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\osu!.lnk
2017-01-07 13:41 - 2017-01-07 21:10 - 00000000 ____D C:\Users\Henselmann\AppData\Local\osu!
2017-01-07 13:41 - 2017-01-07 13:41 - 04470976 _____ (ppy) C:\Users\Henselmann\Downloads\osu!install.exe
2017-01-07 12:35 - 2017-01-07 12:35 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Ndemic Creations
2017-01-06 13:27 - 2017-01-06 13:27 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Cygames
2017-01-06 01:29 - 2017-01-06 01:32 - 00000000 ____D C:\Users\Henselmann\Powersaves3DS
2017-01-06 01:29 - 2017-01-06 01:29 - 04599725 _____ C:\Users\Henselmann\Downloads\powersaves3ds-software-145.zip
2017-01-06 01:29 - 2017-01-06 01:29 - 00000000 ____D C:\Users\Henselmann\Desktop\powersaves3ds-software-145
2017-01-06 01:29 - 2017-01-06 01:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Action Replay PowerSaves 3DS
2017-01-06 01:29 - 2017-01-06 01:29 - 00000000 ____D C:\Program Files (x86)\Action Replay PowerSaves 3DS
2017-01-06 01:28 - 2017-01-06 01:28 - 00049498 _____ C:\Users\Henselmann\Downloads\myuninst.zip
2017-01-06 01:28 - 2017-01-06 01:28 - 00000000 ____D C:\Users\Henselmann\Desktop\myuninst
2017-01-06 01:22 - 2017-01-06 01:22 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Sony Online Entertainment
2017-01-06 00:39 - 2017-01-06 00:43 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Daybreak Game Company
2017-01-06 00:39 - 2017-01-06 00:39 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SCE
2017-01-06 00:39 - 2017-01-06 00:39 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Daybreak Game Company
2017-01-05 00:36 - 2017-01-07 15:26 - 00000000 ____D C:\Users\Henselmann\Documents\MEGAsync Downloads
2017-01-05 00:34 - 2017-01-05 00:34 - 00000000 ____D C:\Users\Henselmann\Documents\MEGAsync
2017-01-05 00:33 - 2017-01-15 02:32 - 00000000 ____D C:\Users\Henselmann\AppData\Local\MEGAsync
2017-01-05 00:33 - 2017-01-05 00:33 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Mega Limited
2017-01-05 00:29 - 2017-01-05 00:29 - 00250816 _____ (Malwarebytes) C:\Windows\system32\Drivers\3CC91E54.sys
2017-01-04 19:28 - 2017-01-16 18:22 - 00036808 _____ (Wellbia.com Co., Ltd.) C:\Windows\xhunter1.sys
2017-01-04 14:15 - 2017-01-04 14:15 - 00001068 _____ C:\Users\Public\Desktop\TERA.lnk
2017-01-04 14:15 - 2017-01-04 14:15 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\TERA
2017-01-04 14:15 - 2017-01-04 14:15 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Solid State Networks
2017-01-04 12:52 - 2017-01-04 12:52 - 00000000 ____D C:\Users\Henselmann\AppData\Local\BANDAI NAMCO GAMES
2017-01-04 03:59 - 2017-01-13 02:03 - 1407543786 _____ C:\Windows\MEMORY.DMP
2017-01-04 03:59 - 2017-01-13 02:03 - 00000000 ____D C:\Windows\Minidump
2017-01-04 03:59 - 2017-01-04 03:59 - 00611220 _____ C:\Windows\Minidump\010417-4578-01.dmp
2017-01-04 02:51 - 2017-01-04 02:51 - 00000000 ____D C:\Users\Henselmann\Desktop\saveedit_r256
2017-01-04 02:45 - 2017-01-04 02:51 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\ESTsoft
2017-01-04 02:45 - 2017-01-04 02:45 - 00001156 _____ C:\Users\Public\Desktop\ALZip.lnk
2017-01-04 02:45 - 2017-01-04 02:45 - 00000000 ____D C:\Users\Henselmann\AppData\Local\ECRSC
2017-01-04 02:45 - 2017-01-04 02:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESTsoft
2017-01-04 02:45 - 2017-01-04 02:45 - 00000000 ____D C:\Program Files (x86)\ESTsoft
2017-01-04 02:44 - 2017-01-04 02:44 - 00000000 ____D C:\Program Files\Common Files\INCA Shared
2017-01-04 02:44 - 2016-10-18 11:13 - 07847256 _____ (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\GameMon.des
2017-01-04 02:44 - 2004-12-30 13:43 - 00004682 _____ (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\npptNT2.sys
2017-01-04 02:44 - 2003-07-15 22:17 - 00005174 _____ C:\Windows\SysWOW64\nppt9x.vxd
2017-01-04 02:10 - 2017-01-16 20:26 - 00001062 _____ C:\Users\Public\Desktop\Elsword.lnk
2017-01-03 19:00 - 2017-01-03 19:01 - 00000000 ____D C:\Program Files\Zune
2017-01-03 19:00 - 2017-01-03 19:00 - 00000996 _____ C:\Users\Public\Desktop\Zune.lnk
2017-01-03 19:00 - 2017-01-03 19:00 - 00000000 ____D C:\Windows\PCHEALTH
2017-01-03 19:00 - 2017-01-03 19:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zune
2017-01-03 18:32 - 2017-01-03 18:39 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\MelodyEscape
2017-01-03 18:32 - 2017-01-03 18:32 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA
2017-01-03 17:54 - 2017-01-16 18:50 - 00000000 ____D C:\Users\Henselmann\Documents\Black Desert
2017-01-03 17:53 - 2017-01-16 17:56 - 00000000 ____D C:\Users\Henselmann\AppData\Local\BlackDesertOnline
2017-01-03 17:16 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Desert Online
2017-01-03 17:16 - 2017-01-03 17:16 - 00000717 ____H C:\Users\Public\Desktop\Black Desert Online.lnk
2017-01-03 17:16 - 2017-01-03 17:16 - 00000717 ____H C:\ProgramData\Microsoft\Windows\Start Menu\Black Desert Online.lnk
2017-01-02 20:10 - 2017-01-16 22:18 - 00004182 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{564F6E84-C00A-4C0A-BC99-D7AB81F118FD}
2017-01-02 18:25 - 2017-01-02 18:25 - 00000000 ____D C:\ProgramData\Nexon
2017-01-02 18:24 - 2017-01-02 18:45 - 00000000 ____D C:\Users\Henselmann\Documents\Vindictus EU
2017-01-02 18:24 - 2017-01-02 18:24 - 00000000 ____D C:\Users\Henselmann\AppData\Local\NXEPassportClient
2017-01-02 18:23 - 2017-01-02 18:23 - 00001824 ____H C:\Users\Public\Desktop\Vindictus EU.lnk
2017-01-02 18:23 - 2017-01-02 18:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon
2017-01-02 14:54 - 2017-01-02 14:54 - 00000000 ____D C:\Users\Henselmann\Documents\Skullgirls
2017-01-02 14:39 - 2017-01-02 14:48 - 00021019 _____ C:\Users\Henselmann\Desktop\eigenes lehmbruck.odt
2017-01-02 14:39 - 2017-01-02 14:39 - 00000000 ____D C:\Users\Henselmann\AppData\Local\HP
2017-01-02 14:26 - 2017-01-02 14:38 - 00019777 _____ C:\Users\Henselmann\Desktop\handout lehmbruck.odt
2017-01-02 13:37 - 2017-01-02 13:37 - 00002355 _____ C:\Users\Henselmann\Desktop\ACCUSOR Advanced Gaming Keyboard Driver.lnk
2017-01-02 13:12 - 2017-01-13 01:45 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2017-01-02 13:12 - 2017-01-11 19:30 - 00003870 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-01-02 13:12 - 2017-01-02 13:12 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Macromedia
2017-01-02 13:12 - 2017-01-02 13:12 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Adobe
2017-01-02 12:57 - 2017-01-02 12:57 - 00001204 _____ C:\Users\Henselmann\Desktop\OpenOffice 4.1.3.lnk
2017-01-02 12:57 - 2017-01-02 12:57 - 00000000 ___SD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3
2017-01-02 12:57 - 2017-01-02 12:57 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\OpenOffice
2017-01-02 12:57 - 2017-01-02 12:57 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2017-01-01 23:04 - 2017-01-02 18:21 - 00000000 ____D C:\Nexon
2017-01-01 19:07 - 2017-01-01 19:07 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Avira
2017-01-01 19:04 - 2017-01-01 19:14 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nexon
2017-01-01 18:07 - 2017-01-16 20:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live
2017-01-01 18:07 - 2017-01-01 18:07 - 00001140 _____ C:\Users\Public\Desktop\Gameforge Live.lnk
2017-01-01 18:07 - 2017-01-01 18:07 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Gameforge4d
2017-01-01 18:07 - 2017-01-01 18:07 - 00000000 ____D C:\Program Files (x86)\GameforgeLive
2017-01-01 17:51 - 2017-01-01 17:51 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Crashpad
2017-01-01 17:49 - 2017-01-10 19:40 - 00000000 _____ C:\end
2017-01-01 16:53 - 2017-01-02 18:26 - 00000000 ____D C:\ProgramData\NexonEU
2017-01-01 15:00 - 2017-01-01 15:01 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Akamai
2017-01-01 14:03 - 2017-01-01 14:03 - 00000016 _____ C:\ProgramData\mntemp
2017-01-01 14:02 - 2017-01-01 14:02 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Macromedia
2017-01-01 13:44 - 2017-01-01 13:44 - 00000992 _____ C:\Users\Public\Desktop\Heroes of the Storm.lnk
2017-01-01 13:44 - 2017-01-01 13:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm
2017-01-01 13:41 - 2017-01-07 18:11 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\NVIDIA
2017-01-01 13:33 - 2017-01-01 13:33 - 00000000 ____D C:\Users\Henselmann\Documents\League of Legends
2017-01-01 13:30 - 2017-01-14 13:32 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm
2017-01-01 13:30 - 2017-01-01 13:30 - 00000000 ____D C:\Users\Henselmann\Documents\Heroes of the Storm
2017-01-01 13:30 - 2017-01-01 13:30 - 00000000 ____D C:\Users\Henselmann\AppData\Local\AviraSpeedup
2017-01-01 13:25 - 2017-01-01 13:25 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf
2017-01-01 13:25 - 2016-12-06 16:01 - 00153904 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00151352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00078208 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00035488 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00028272 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avusbflt.sys
2017-01-01 13:23 - 2017-01-02 10:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-01-01 13:23 - 2017-01-02 10:05 - 00000000 ____D C:\ProgramData\Avira
2017-01-01 13:23 - 2017-01-02 10:05 - 00000000 ____D C:\Program Files (x86)\Avira
2017-01-01 13:23 - 2017-01-01 13:23 - 00001285 _____ C:\Users\Public\Desktop\Avira Connect.lnk
2017-01-01 13:23 - 2017-01-01 13:23 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Avira
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\.mono
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Blizzard Entertainment
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Blizzard
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\ProgramData\.mono
2017-01-01 03:33 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2017-01-01 03:33 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2017-01-01 03:33 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2017-01-01 03:33 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2017-01-01 03:32 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2017-01-01 03:32 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2017-01-01 03:32 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2017-01-01 03:32 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2017-01-01 03:32 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2017-01-01 03:32 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2017-01-01 03:32 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2017-01-01 03:32 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2017-01-01 03:32 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2017-01-01 03:32 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2017-01-01 03:32 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2017-01-01 03:32 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2017-01-01 03:32 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2017-01-01 03:32 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2017-01-01 03:32 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2017-01-01 03:32 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2017-01-01 03:32 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2017-01-01 03:32 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2017-01-01 03:32 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2017-01-01 03:32 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2017-01-01 03:32 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2017-01-01 03:32 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2017-01-01 03:32 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2017-01-01 03:32 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2017-01-01 03:32 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2017-01-01 03:32 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2017-01-01 03:32 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2017-01-01 03:32 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2017-01-01 03:32 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2017-01-01 03:32 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2017-01-01 03:32 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2017-01-01 03:32 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2017-01-01 03:32 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2017-01-01 03:32 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2017-01-01 03:32 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2017-01-01 03:32 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2017-01-01 03:32 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2017-01-01 03:32 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2017-01-01 03:32 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2017-01-01 03:32 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2017-01-01 03:32 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2017-01-01 03:32 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2017-01-01 03:32 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2017-01-01 03:32 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2017-01-01 03:32 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2017-01-01 03:32 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2017-01-01 03:32 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2017-01-01 03:32 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2017-01-01 03:32 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2017-01-01 03:32 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2017-01-01 03:32 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2017-01-01 03:32 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2017-01-01 03:32 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2017-01-01 03:32 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2017-01-01 03:32 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2017-01-01 03:32 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2017-01-01 03:32 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2017-01-01 03:32 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2017-01-01 03:32 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2017-01-01 03:32 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2017-01-01 03:32 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2017-01-01 03:32 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2017-01-01 03:32 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2017-01-01 03:32 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2017-01-01 03:32 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2017-01-01 03:32 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2017-01-01 03:32 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2017-01-01 03:32 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2017-01-01 03:32 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2017-01-01 03:32 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2017-01-01 03:32 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2017-01-01 03:32 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2017-01-01 03:32 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2017-01-01 03:32 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2017-01-01 03:32 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2017-01-01 03:32 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2017-01-01 03:32 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2017-01-01 03:32 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2017-01-01 03:32 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2017-01-01 02:15 - 2017-01-01 02:15 - 00000000 ____D C:\ProgramData\Riot Games
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files\Reference Assemblies
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files\MSBuild
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files (x86)\MSBuild
2017-01-01 02:13 - 2017-01-01 13:34 - 00001749 _____ C:\Users\Public\Desktop\League of Legends.lnk
2017-01-01 02:13 - 2017-01-01 02:13 - 00000000 ____D C:\Riot Games
2017-01-01 02:13 - 2016-05-25 14:31 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 14:31 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 14:31 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2017-01-01 02:13 - 2016-05-25 11:03 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 11:03 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 11:03 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2017-01-01 02:13 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2017-01-01 02:13 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2017-01-01 02:13 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2017-01-01 02:13 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2017-01-01 02:13 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2017-01-01 02:12 - 2017-01-01 02:14 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Riot Games
2016-12-31 22:06 - 2016-12-31 22:06 - 00000000 ____D C:\Users\Henselmann\Documents\MGR
2016-12-31 18:20 - 2017-01-14 19:02 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\InnkeeperUI
2016-12-31 18:20 - 2017-01-01 13:06 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Innkeeper
2016-12-31 18:20 - 2016-12-31 18:20 - 00002290 _____ C:\Users\Henselmann\Desktop\Innkeeper.lnk
2016-12-31 18:20 - 2016-12-31 18:20 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Innkeeper
2016-12-31 18:14 - 2017-01-11 17:36 - 00007609 _____ C:\ProgramData\NvTelemetryContainer.log
2016-12-31 18:14 - 2017-01-11 17:36 - 00004308 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-31 18:14 - 2017-01-11 17:36 - 00001489 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2016-12-31 18:14 - 2017-01-10 19:32 - 00010108 _____ C:\ProgramData\NvTelemetryContainer.log_backup1
2016-12-31 18:14 - 2017-01-06 01:09 - 00001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2016-12-31 17:46 - 2017-01-15 20:16 - 00087349 ____H C:\Users\Henselmann\AppData\Local\IconCache.db
2016-12-31 17:35 - 2016-12-31 17:35 - 00000938 _____ C:\Users\Public\Desktop\AURA(GRAPHICS CARD).lnk
2016-12-31 17:35 - 2016-12-31 17:35 - 00000000 ____D C:\Program Files (x86)\ASUS
2016-12-31 17:29 - 2017-01-07 18:15 - 00000000 ____D C:\Users\Henselmann\Documents\My games
2016-12-31 16:04 - 2016-12-31 16:04 - 00000000 ____D C:\Users\Henselmann\Documents\Overwatch
2016-12-31 16:00 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch
2016-12-31 16:00 - 2016-12-31 16:00 - 00000898 ____H C:\Users\Public\Desktop\Overwatch.lnk
2016-12-31 15:58 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2016-12-31 15:58 - 2016-12-31 15:58 - 00000952 ____H C:\Users\Public\Desktop\Hearthstone.lnk
2016-12-31 15:50 - 2016-12-31 15:51 - 04121824 _____ (Husdawg, LLC) C:\Users\Henselmann\Downloads\Detection.exe
2016-12-31 15:49 - 2016-12-31 15:49 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Diagnostics
2016-12-31 15:47 - 2016-12-31 15:47 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-12-31 15:47 - 2016-12-11 19:23 - 00134712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2016-12-31 15:47 - 2016-09-09 19:25 - 00269600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2016-12-31 15:47 - 2016-09-09 19:25 - 00261920 _____ C:\Windows\system32\vulkan-1.dll
2016-12-31 15:47 - 2016-09-09 19:25 - 00110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2016-12-31 15:47 - 2016-09-09 19:24 - 00125216 _____ C:\Windows\system32\vulkaninfo.exe
2016-12-31 15:45 - 2016-12-12 04:03 - 40125496 _____ C:\Windows\system32\nvcompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 35222976 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 34710584 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 28201408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 10912744 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 10803880 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 10353960 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 09158616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 08913328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 08761560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 02950200 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 02587704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 01953336 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437633.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437633.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 01038392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00974784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00942528 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00894400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00802768 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00801560 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFThevc.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00683640 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00643928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00642392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFThevc.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00617696 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00572888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00438208 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00394888 _____ (NVIDIA Corporation)
         
__________________

Alt 17.01.2017, 01:01   #4
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

files 2



Code:
ATTFilter
\system32\nvEncodeAPI64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00388544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00386104 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00347072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00327408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2016-12-31 15:12 - 2017-01-15 01:19 - 00000000 ____D C:\Program Files (x86)\Overwatch
2016-12-31 15:12 - 2017-01-15 01:19 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2016-12-31 15:11 - 2016-12-31 15:11 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Blizzard Entertainment
2016-12-31 15:10 - 2017-01-17 00:41 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Battle.net
2016-12-31 15:10 - 2017-01-16 00:42 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-12-31 15:10 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2016-12-31 15:10 - 2016-12-31 15:10 - 00000914 ____H C:\Users\Public\Desktop\Battle.net.lnk
2016-12-31 15:10 - 2016-12-31 15:10 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2016-12-31 15:09 - 2016-12-31 15:11 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Battle.net
2016-12-31 15:09 - 2016-12-31 15:09 - 00000000 ____D C:\ProgramData\Battle.net
2016-12-31 14:57 - 2016-12-31 14:57 - 00000000 ____D C:\Users\Henselmann\AppData\Local\RzStats
2016-12-31 14:51 - 2016-09-17 02:12 - 00044144 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpmgrk.sys
2016-12-31 14:51 - 2016-09-07 22:27 - 00137840 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpnk.sys
2016-12-31 14:50 - 2017-01-01 13:21 - 00000000 ____D C:\Program Files (x86)\Razer
2016-12-31 14:50 - 2016-12-31 14:52 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Razer
2016-12-31 14:50 - 2016-12-31 14:51 - 00000000 ____D C:\ProgramData\Razer
2016-12-31 14:50 - 2016-12-31 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2016-12-31 14:47 - 2017-01-11 23:48 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\TS3Client
2016-12-31 14:44 - 2016-12-31 14:44 - 00001299 _____ C:\Users\Henselmann\Desktop\TeamSpeak 3 Client.lnk
2016-12-31 14:44 - 2016-12-31 14:44 - 00001257 _____ C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2016-12-31 14:44 - 2016-12-31 14:44 - 00000000 ____D C:\Users\Henselmann\AppData\Local\TeamSpeak 3 Client
2016-12-31 14:43 - 2017-01-13 15:27 - 00002262 _____ C:\Users\Henselmann\Desktop\Discord.lnk
2016-12-31 14:43 - 2017-01-13 15:27 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2016-12-31 14:43 - 2017-01-13 15:27 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\discord
2016-12-31 14:43 - 2017-01-13 15:27 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Discord
2016-12-31 14:43 - 2016-12-31 18:20 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SquirrelTemp
2016-12-31 14:30 - 2017-01-06 00:45 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Steam
2016-12-31 14:30 - 2016-12-31 14:30 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Chromium
2016-12-31 14:28 - 2017-01-17 00:33 - 00000000 ____D C:\Program Files (x86)\Steam
2016-12-31 14:28 - 2016-12-31 14:28 - 00001036 _____ C:\Users\Public\Desktop\Steam.lnk
2016-12-31 14:28 - 2016-12-31 14:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-12-31 14:26 - 2017-01-17 00:31 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-12-31 14:26 - 2017-01-17 00:30 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-12-31 14:26 - 2017-01-17 00:25 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2016-12-31 14:26 - 2017-01-14 18:33 - 00091584 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2016-12-31 14:26 - 2017-01-14 13:56 - 00102856 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2016-12-31 14:26 - 2017-01-14 13:56 - 00043968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-12-31 14:26 - 2016-12-31 14:26 - 00001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2016-12-31 14:26 - 2016-12-31 14:26 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\SPEEDLINK
2016-12-31 14:26 - 2016-12-31 14:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2016-12-31 14:26 - 2016-12-31 14:26 - 00000000 ____D C:\Program Files\Malwarebytes
2016-12-31 14:26 - 2016-12-14 12:55 - 00077416 _____ C:\Windows\system32\Drivers\mbae64.sys
2016-12-31 14:25 - 2016-12-31 14:25 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Programs
2016-12-31 14:24 - 2016-12-31 14:24 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\InstallShield
2016-12-31 14:24 - 2016-12-31 14:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPEEDLINK
2016-12-31 14:24 - 2016-12-31 14:24 - 00000000 ____D C:\Program Files (x86)\SPEEDLINK
2016-12-31 14:23 - 2016-12-31 14:23 - 00018130 _____ C:\Windows\unins000.dat
2016-12-31 14:23 - 2016-12-31 14:23 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\MingGuan
2016-12-31 14:23 - 2016-12-31 14:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHARKOON Drakonia
2016-12-31 14:23 - 2016-12-31 14:23 - 00000000 ____D C:\Program Files (x86)\Drakonia Configurator
2016-12-31 14:23 - 2016-12-31 14:22 - 01192533 _____ C:\Windows\unins000.exe
2016-12-31 14:21 - 2017-01-16 01:26 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Mozilla
2016-12-31 14:21 - 2016-12-31 14:27 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Mozilla
2016-12-31 14:21 - 2016-12-31 14:21 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Mozilla
2016-12-31 14:20 - 2017-01-16 22:36 - 00000000 ____D C:\Users\Henselmann\AppData\Local\CrashDumps
2016-12-31 14:20 - 2016-12-31 14:20 - 00000000 ____D C:\Users\Henselmann\AppData\Local\MicrosoftEdge
2016-12-31 14:09 - 2017-01-10 19:22 - 00000000 ____D C:\Windows\system32\MRT
2016-12-31 14:09 - 2017-01-10 19:21 - 135657872 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-12-31 14:09 - 2016-12-09 11:42 - 01637728 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-12-31 14:09 - 2016-12-09 11:42 - 00137568 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-12-31 14:09 - 2016-12-09 11:34 - 01051112 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-12-31 14:09 - 2016-12-09 11:34 - 00894096 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-12-31 14:09 - 2016-12-09 11:33 - 01354320 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-12-31 14:09 - 2016-12-09 11:33 - 01173496 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-12-31 14:09 - 2016-12-09 11:30 - 00377184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2016-12-31 14:09 - 2016-12-09 11:29 - 02681200 _____ C:\Windows\system32\CoreUIComponents.dll
2016-12-31 14:09 - 2016-12-09 11:28 - 00764392 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2016-12-31 14:09 - 2016-12-09 11:19 - 01293152 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2016-12-31 14:09 - 2016-12-09 11:19 - 00168424 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2016-12-31 14:09 - 2016-12-09 11:18 - 02913144 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2016-12-31 14:09 - 2016-12-09 11:18 - 01100128 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2016-12-31 14:09 - 2016-12-09 11:18 - 00989024 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2016-12-31 14:09 - 2016-12-09 11:18 - 00947552 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.efi
2016-12-31 14:09 - 2016-12-09 11:18 - 00811872 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.exe
2016-12-31 14:09 - 2016-12-09 11:15 - 08168000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-12-31 14:09 - 2016-12-09 11:14 - 01274712 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-12-31 14:09 - 2016-12-09 11:10 - 01572768 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2016-12-31 14:09 - 2016-12-09 11:10 - 01461200 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-12-31 14:09 - 2016-12-09 11:01 - 02323728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-12-31 14:09 - 2016-12-09 11:01 - 01503544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-12-31 14:09 - 2016-12-09 11:01 - 00861024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2016-12-31 14:09 - 2016-12-09 11:00 - 00106896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2016-12-31 14:09 - 2016-12-09 10:59 - 02166752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2016-12-31 14:09 - 2016-12-09 10:59 - 00846560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2016-12-31 14:09 - 2016-12-09 10:57 - 06668040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-31 14:09 - 2016-12-09 10:52 - 01435896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2016-12-31 14:09 - 2016-12-09 10:52 - 01415752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2016-12-31 14:09 - 2016-12-09 10:51 - 00117240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-12-31 14:09 - 2016-12-09 10:45 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2016-12-31 14:09 - 2016-12-09 10:41 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WordBreakers.dll
2016-12-31 14:09 - 2016-12-09 10:37 - 00411136 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2016-12-31 14:09 - 2016-12-09 10:36 - 03059200 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-12-31 14:09 - 2016-12-09 10:36 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2016-12-31 14:09 - 2016-12-09 10:33 - 03777536 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2016-12-31 14:09 - 2016-12-09 10:33 - 01589760 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2016-12-31 14:09 - 2016-12-09 10:31 - 03689984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-12-31 14:09 - 2016-12-09 10:31 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2016-12-31 14:09 - 2016-12-09 10:28 - 03306496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2016-12-31 14:09 - 2016-12-09 10:28 - 01004544 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2016-12-31 14:09 - 2016-12-09 10:27 - 13084160 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-12-31 14:09 - 2016-12-09 10:27 - 05114368 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2016-12-31 14:09 - 2016-12-09 10:27 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-31 14:09 - 2016-12-09 10:23 - 12177920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-12-31 14:09 - 2016-12-09 10:22 - 02820096 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2016-12-31 14:09 - 2016-12-09 10:21 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
2016-12-31 14:09 - 2016-12-09 10:20 - 03198464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2016-12-31 14:09 - 2016-12-09 10:20 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2016-12-31 14:09 - 2016-12-09 10:19 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2016-12-31 14:09 - 2016-12-09 10:19 - 00261120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2016-12-31 14:09 - 2016-12-09 10:19 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2016-12-31 14:09 - 2016-12-09 10:19 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2016-12-31 14:09 - 2016-12-09 10:18 - 02138112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2016-12-31 14:09 - 2016-12-09 10:17 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2016-12-31 14:09 - 2016-12-09 10:16 - 00353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2016-12-31 14:09 - 2016-12-09 10:15 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2016-12-31 14:09 - 2016-12-09 10:15 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputLocaleManager.dll
2016-12-31 14:09 - 2016-12-09 10:15 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditBufferTestHook.dll
2016-12-31 14:09 - 2016-12-09 09:54 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2016-12-31 14:09 - 2016-11-11 11:15 - 00101216 _____ (Microsoft Corporation) C:\Windows\system32\DeviceReactivation.dll
2016-12-31 14:09 - 2016-11-11 11:14 - 02186896 _____ (Microsoft Corporation) C:\Windows\system32\hevcdecoder.dll
2016-12-31 14:09 - 2016-11-11 11:14 - 00603488 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2016-12-31 14:09 - 2016-11-11 11:13 - 02213760 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-12-31 14:09 - 2016-11-11 11:13 - 01886344 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-12-31 14:09 - 2016-11-11 11:13 - 00352096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2016-12-31 14:09 - 2016-11-11 11:12 - 00128352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-12-31 14:09 - 2016-11-11 11:03 - 01069720 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2016-12-31 14:09 - 2016-11-11 11:02 - 00360040 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2016-12-31 14:09 - 2016-11-11 11:01 - 01859264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-12-31 14:09 - 2016-11-11 11:00 - 00223584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-12-31 14:09 - 2016-11-11 11:00 - 00219488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2016-12-31 14:09 - 2016-11-11 10:59 - 00433504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2016-12-31 14:09 - 2016-11-11 10:57 - 01473048 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2016-12-31 14:09 - 2016-11-11 10:56 - 04673304 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-12-31 14:09 - 2016-11-11 10:56 - 01062480 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2016-12-31 14:09 - 2016-11-11 10:56 - 00424616 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2016-12-31 14:09 - 2016-11-11 10:56 - 00187520 _____ (Microsoft Corporation) C:\Windows\system32\CloudStorageWizard.exe
2016-12-31 14:09 - 2016-11-11 10:56 - 00126568 _____ (Microsoft Corporation) C:\Windows\system32\mfaudiocnv.dll
2016-12-31 14:09 - 2016-11-11 10:55 - 00882680 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2016-12-31 14:09 - 2016-11-11 10:55 - 00743224 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-12-31 14:09 - 2016-11-11 10:54 - 01418312 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2016-12-31 14:09 - 2016-11-11 10:51 - 00454592 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2016-12-31 14:09 - 2016-11-11 10:31 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2016-12-31 14:09 - 2016-11-11 10:28 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\CbtBackgroundManagerPolicy.dll
2016-12-31 14:09 - 2016-11-11 10:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2016-12-31 14:09 - 2016-11-11 10:26 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys
2016-12-31 14:09 - 2016-11-11 10:25 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\BcastDVRHelper.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\HttpsDataSource.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\VEStoreEventHandlers.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2016-12-31 14:09 - 2016-11-11 10:23 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2016-12-31 14:09 - 2016-11-11 10:23 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnr.dll
2016-12-31 14:09 - 2016-11-11 10:23 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2016-12-31 14:09 - 2016-11-11 10:22 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2016-12-31 14:09 - 2016-11-11 10:21 - 00313856 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\cdpusersvc.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00620544 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2016-12-31 14:09 - 2016-11-11 10:19 - 00495104 _____ (Microsoft Corporation) C:\Windows\system32\DataSenseHandlers.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\cdpsvc.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00388096 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-31 14:09 - 2016-11-11 10:17 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 01477632 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 00560128 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeHelper.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\RjvMDMConfig.dll
2016-12-31 14:09 - 2016-11-11 10:14 - 07654400 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2016-12-31 14:09 - 2016-11-11 10:14 - 02104320 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2016-12-31 14:09 - 2016-11-11 10:14 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-12-31 14:09 - 2016-11-11 10:13 - 07812096 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2016-12-31 14:09 - 2016-11-11 10:13 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2016-12-31 14:09 - 2016-11-11 10:12 - 00870912 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll
2016-12-31 14:09 - 2016-11-11 10:11 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2016-12-31 14:09 - 2016-11-11 10:09 - 01366016 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2016-12-31 14:09 - 2016-11-11 10:09 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\dialserver.dll
2016-12-31 14:09 - 2016-11-11 10:08 - 00539136 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 03441152 _____ (Microsoft Corporation) C:\Windows\system32\MapRouter.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 02953216 _____ (Microsoft Corporation) C:\Windows\system32\MapGeocoder.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 01060864 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 00347648 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2016-12-31 14:09 - 2016-11-11 10:06 - 03400192 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2016-12-31 14:09 - 2016-11-11 10:06 - 00960000 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2016-12-31 14:09 - 2016-11-11 10:06 - 00650752 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2016-12-31 14:09 - 2016-11-11 10:05 - 04136448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll
2016-12-31 14:09 - 2016-11-11 10:05 - 02852864 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-31 14:09 - 2016-11-11 10:05 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2016-12-31 14:09 - 2016-11-11 10:04 - 02611200 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2016-12-31 14:09 - 2016-11-11 10:04 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2016-12-31 14:09 - 2016-11-11 10:04 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2016-12-31 14:09 - 2016-11-11 10:03 - 02287616 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2016-12-31 14:09 - 2016-11-11 10:03 - 00905216 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2016-12-31 14:09 - 2016-11-11 10:03 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2016-12-31 14:09 - 2016-11-11 10:02 - 03542016 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2016-12-31 14:09 - 2016-11-11 10:02 - 01726976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2016-12-31 14:09 - 2016-11-11 10:02 - 00936448 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll
2016-12-31 14:09 - 2016-11-11 09:01 - 01969912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hevcdecoder.dll
2016-12-31 14:09 - 2016-11-11 09:01 - 00167848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2016-12-31 14:09 - 2016-11-11 09:00 - 01706488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-12-31 14:09 - 2016-11-11 08:59 - 01572768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-12-31 14:09 - 2016-11-11 08:54 - 00122208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\migisol.dll
2016-12-31 14:09 - 2016-11-11 08:49 - 00869848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2016-12-31 14:09 - 2016-11-11 08:48 - 02277248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2016-12-31 14:09 - 2016-11-11 08:47 - 05722832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2016-12-31 14:09 - 2016-11-11 08:47 - 01430720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2016-12-31 14:09 - 2016-11-11 08:47 - 00527880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-12-31 14:09 - 2016-11-11 08:42 - 01123912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2016-12-31 14:09 - 2016-11-11 08:42 - 00952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2016-12-31 14:09 - 2016-11-11 08:42 - 00091936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfaudiocnv.dll
2016-12-31 14:09 - 2016-11-11 08:41 - 04311736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-12-31 14:09 - 2016-11-11 08:41 - 00157536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudStorageWizard.exe
2016-12-31 14:09 - 2016-11-11 08:38 - 01263856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2016-12-31 14:09 - 2016-11-11 08:25 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapsBtSvc.dll
2016-12-31 14:09 - 2016-11-11 08:25 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosStorage.dll
2016-12-31 14:09 - 2016-11-11 08:24 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BcastDVRHelper.dll
2016-12-31 14:09 - 2016-11-11 08:24 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2016-12-31 14:09 - 2016-11-11 08:24 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-31 14:09 - 2016-11-11 08:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppCapture.dll
2016-12-31 14:09 - 2016-11-11 08:23 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll
2016-12-31 14:09 - 2016-11-11 08:22 - 00505856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2016-12-31 14:09 - 2016-11-11 08:22 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll
2016-12-31 14:09 - 2016-11-11 08:21 - 00332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2016-12-31 14:09 - 2016-11-11 08:19 - 01755136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceFlows.DataModel.dll
2016-12-31 14:09 - 2016-11-11 08:19 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2016-12-31 14:09 - 2016-11-11 08:19 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
2016-12-31 14:09 - 2016-11-11 08:18 - 02333184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2016-12-31 14:09 - 2016-11-11 08:18 - 01336320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2016-12-31 14:09 - 2016-11-11 08:18 - 01196544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2016-12-31 14:09 - 2016-11-11 08:18 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2016-12-31 14:09 - 2016-11-11 08:18 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscinterop.dll
2016-12-31 14:09 - 2016-11-11 08:17 - 00333312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2016-12-31 14:09 - 2016-11-11 08:17 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2016-12-31 14:09 - 2016-11-11 08:15 - 01357824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2016-12-31 14:09 - 2016-11-11 08:15 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
2016-12-31 14:09 - 2016-11-11 08:15 - 00348672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2016-12-31 14:09 - 2016-11-11 08:12 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcuiu.dll
2016-12-31 14:09 - 2016-11-11 08:10 - 06109184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2016-12-31 14:09 - 2016-11-11 08:10 - 00746496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcprx.dll
2016-12-31 14:09 - 2016-11-11 08:09 - 05380608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2016-12-31 14:09 - 2016-11-11 08:09 - 00545280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2016-12-31 14:09 - 2016-11-11 08:08 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xolehlp.dll
2016-12-31 14:09 - 2016-11-11 08:06 - 02362880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapRouter.dll
2016-12-31 14:09 - 2016-11-11 08:06 - 02109952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapGeocoder.dll
2016-12-31 14:09 - 2016-11-11 08:06 - 00359936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll
2016-12-31 14:09 - 2016-11-11 08:05 - 04423680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-12-31 14:09 - 2016-11-11 08:05 - 03370496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 02682880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 01992704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 00912896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 00715264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlCore.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 02484736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 01576448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 01556480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 00760832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NMAA.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 00565248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2016-12-31 14:09 - 2016-11-11 08:02 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2016-12-31 14:09 - 2016-11-02 13:01 - 00315744 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-12-31 14:09 - 2016-11-02 12:22 - 00601712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-12-31 14:09 - 2016-11-02 12:20 - 00378720 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-12-31 14:09 - 2016-11-02 12:13 - 00773720 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-12-31 14:09 - 2016-11-02 12:12 - 02255712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-12-31 14:09 - 2016-11-02 12:09 - 02257104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-12-31 14:09 - 2016-11-02 12:08 - 00602464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2016-12-31 14:09 - 2016-11-02 12:01 - 01425000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2016-12-31 14:09 - 2016-11-02 12:01 - 00545936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2016-12-31 14:09 - 2016-11-02 11:56 - 01609920 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2016-12-31 14:09 - 2016-11-02 11:56 - 00628552 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2016-12-31 14:09 - 2016-11-02 11:56 - 00322912 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2016-12-31 14:09 - 2016-11-02 11:55 - 00048992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\iorate.sys
2016-12-31 14:09 - 2016-11-02 11:49 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-12-31 14:09 - 2016-11-02 11:45 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsensorgroup.dll
2016-12-31 14:09 - 2016-11-02 11:44 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthExt.dll
2016-12-31 14:09 - 2016-11-02 11:43 - 00731136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8.dll
2016-12-31 14:09 - 2016-11-02 11:43 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FSClient.dll
2016-12-31 14:09 - 2016-11-02 11:42 - 00632832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2016-12-31 14:09 - 2016-11-02 11:42 - 00549376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll
2016-12-31 14:09 - 2016-11-02 11:42 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-12-31 14:09 - 2016-11-02 11:40 - 00896512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2016-12-31 14:09 - 2016-11-02 11:40 - 00548352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddraw.dll
2016-12-31 14:09 - 2016-11-02 11:39 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll
2016-12-31 14:09 - 2016-11-02 11:39 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2016-12-31 14:09 - 2016-11-02 11:38 - 00760832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2016-12-31 14:09 - 2016-11-02 11:34 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2016-12-31 14:09 - 2016-11-02 11:33 - 12349952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-12-31 14:09 - 2016-11-02 11:32 - 00045056 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-12-31 14:09 - 2016-11-02 11:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\efsext.dll
2016-12-31 14:09 - 2016-11-02 11:31 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2016-12-31 14:09 - 2016-11-02 11:31 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-12-31 14:09 - 2016-11-02 11:30 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 01247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 00336896 _____ (Microsoft Corporation) C:\Windows\system32\NetworkBindingEngineMigPlugin.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\FSClient.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\mfsensorgroup.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00807424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00411136 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\NetworkUXBroker.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\NetworkDesktopSettings.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chartv.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 02458112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 01388544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2016-12-31 14:09 - 2016-11-02 11:27 - 00422400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2016-12-31 14:09 - 2016-11-02 11:26 - 00579072 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll
2016-12-31 14:09 - 2016-11-02 11:26 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2016-12-31 14:09 - 2016-11-02 11:25 - 00956416 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2016-12-31 14:09 - 2016-11-02 11:25 - 00655872 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2016-12-31 14:09 - 2016-11-02 11:25 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.UserAccountsHandlers.dll
2016-12-31 14:09 - 2016-11-02 11:24 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2016-12-31 14:09 - 2016-11-02 11:23 - 03106304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2016-12-31 14:09 - 2016-11-02 11:23 - 02356736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2016-12-31 14:09 - 2016-11-02 11:23 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2016-12-31 14:09 - 2016-11-02 11:23 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetailsUpdate.dll
2016-12-31 14:09 - 2016-11-02 11:22 - 13441024 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-12-31 14:09 - 2016-11-02 11:22 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2016-12-31 14:09 - 2016-11-02 11:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetails.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 01586176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\NPSM.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-12-31 14:09 - 2016-11-02 11:18 - 00836608 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2016-12-31 14:09 - 2016-11-02 11:17 - 01282048 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2016-12-31 14:09 - 2016-11-02 11:17 - 00982528 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-12-31 14:09 - 2016-11-02 11:17 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2016-12-31 14:09 - 2016-11-02 11:16 - 02512384 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00881664 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00770560 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00629248 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00579072 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2016-12-31 14:09 - 2016-11-02 11:15 - 01348608 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2016-12-31 14:09 - 2016-11-02 11:15 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2016-12-31 14:09 - 2016-11-02 11:13 - 03496960 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2016-12-31 14:09 - 2016-11-02 11:13 - 03299840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-12-31 14:09 - 2016-11-02 11:13 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2016-12-31 14:09 - 2016-11-02 10:11 - 00788624 _____ C:\Windows\SysWOW64\locale.nls
2016-12-31 14:09 - 2016-11-02 10:11 - 00788624 _____ C:\Windows\system32\locale.nls
2016-12-31 14:09 - 2016-11-02 09:20 - 00446896 _____ C:\Windows\system32\ApnDatabase.xml
2016-12-31 14:09 - 2016-10-15 05:51 - 00595296 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00584032 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00322912 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00283488 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2016-12-31 14:09 - 2016-10-15 05:51 - 00232800 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00078688 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-12-31 14:09 - 2016-10-15 05:48 - 00498952 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2016-12-31 14:09 - 2016-10-15 05:41 - 05622088 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-12-31 14:09 - 2016-10-15 05:38 - 00409952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-12-31 14:09 - 2016-10-15 05:37 - 00063328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2016-12-31 14:09 - 2016-10-15 05:33 - 00455040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2016-12-31 14:09 - 2016-10-15 05:30 - 01851696 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-12-31 14:09 - 2016-10-15 05:26 - 00811416 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2016-12-31 14:09 - 2016-10-15 05:26 - 00691080 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2016-12-31 14:09 - 2016-10-15 05:26 - 00160096 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostBroker.dll
2016-12-31 14:09 - 2016-10-15 05:21 - 02537824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-12-31 14:09 - 2016-10-15 05:21 - 01100128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-12-31 14:09 - 2016-10-15 05:21 - 00292872 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2016-12-31 14:09 - 2016-10-15 05:19 - 00272720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-12-31 14:09 - 2016-10-15 05:18 - 01556712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-12-31 14:09 - 2016-10-15 05:15 - 00687936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2016-12-31 14:09 - 2016-10-15 05:10 - 00254656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll
2016-12-31 14:09 - 2016-10-15 05:06 - 05685760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2016-12-31 14:09 - 2016-10-15 05:05 - 07216640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2016-12-31 14:09 - 2016-10-15 05:00 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2016-12-31 14:09 - 2016-10-15 05:00 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stdole2.tlb
2016-12-31 14:09 - 2016-10-15 04:59 - 00272384 _____ (Microsoft Corporation) C:\Windows\system32\mfksproxy.dll
2016-12-31 14:09 - 2016-10-15 04:59 - 00187904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfksproxy.dll
2016-12-31 14:09 - 2016-10-15 04:59 - 00130560 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2016-12-31 14:09 - 2016-10-15 04:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\stdole2.tlb
2016-12-31 14:09 - 2016-10-15 04:57 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2016-12-31 14:09 - 2016-10-15 04:57 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2016-12-31 14:09 - 2016-10-15 04:57 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll
2016-12-31 14:09 - 2016-10-15 04:57 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2016-12-31 14:09 - 2016-10-15 04:56 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00306688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentutl.exe
2016-12-31 14:09 - 2016-10-15 04:56 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\AudioSrvPolicyManager.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFi.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00329216 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Flights.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2016-12-31 14:09 - 2016-10-15 04:55 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFi.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00410112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00102912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll
2016-12-31 14:09 - 2016-10-15 04:52 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2016-12-31 14:09 - 2016-10-15 04:52 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2016-12-31 14:09 - 2016-10-15 04:52 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2016-12-31 14:09 - 2016-10-15 04:51 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2016-12-31 14:09 - 2016-10-15 04:51 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2016-12-31 14:09 - 2016-10-15 04:50 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Bluetooth.dll
2016-12-31 14:09 - 2016-10-15 04:50 - 00438784 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2016-12-31 14:09 - 2016-10-15 04:49 - 01913344 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2016-12-31 14:09 - 2016-10-15 04:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2016-12-31 14:09 - 2016-10-15 04:48 - 01554944 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2016-12-31 14:09 - 2016-10-15 04:48 - 01323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2016-12-31 14:09 - 2016-10-15 04:47 - 01113600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2016-12-31 14:09 - 2016-10-15 04:47 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-12-31 14:09 - 2016-10-15 04:46 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:46 - 00471552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2016-12-31 14:09 - 2016-10-15 04:45 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.MediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00747008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoteNaturalLanguage.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00636928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00470016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.exe
2016-12-31 14:09 - 2016-10-15 04:43 - 02748928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2016-12-31 14:09 - 2016-10-15 04:43 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\energy.dll
2016-12-31 14:09 - 2016-10-15 04:42 - 00459776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:41 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsiwmi.dll
2016-12-31 14:09 - 2016-10-15 04:39 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-12-31 14:09 - 2016-10-15 04:39 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2016-12-31 14:09 - 2016-10-15 04:37 - 01980416 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2016-12-31 14:09 - 2016-10-15 04:37 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 00983040 _____ (Microsoft Corporation) C:\Windows\system32\RemoteNaturalLanguage.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 00792064 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2016-12-31 14:09 - 2016-10-15 04:36 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll
2016-12-31 14:09 - 2016-10-15 04:35 - 02708992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2016-12-31 14:09 - 2016-10-15 04:35 - 02005504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2016-12-31 14:09 - 2016-10-15 04:32 - 00886784 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-12-31 14:09 - 2016-10-15 04:31 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2016-12-31 14:09 - 2016-10-05 11:35 - 00279904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2016-12-31 14:09 - 2016-10-05 11:33 - 00128864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys
2016-12-31 14:09 - 2016-10-05 11:16 - 00187232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2016-12-31 14:09 - 2016-10-05 11:13 - 00146784 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2016-12-31 14:09 - 2016-10-05 11:12 - 01112928 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2016-12-31 14:09 - 2016-10-05 11:09 - 00064352 _____ (Avago Technologies) C:\Windows\system32\Drivers\MegaSas2i.sys
2016-12-31 14:09 - 2016-10-05 10:50 - 00116576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2016-12-31 14:09 - 2016-10-05 10:49 - 01980768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2016-12-31 14:09 - 2016-10-05 10:48 - 01022304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2016-12-31 14:09 - 2016-10-05 10:36 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-31 14:09 - 2016-10-05 10:35 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.dll
2016-12-31 14:09 - 2016-10-05 10:35 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.Ngc.dll
2016-12-31 14:09 - 2016-10-05 10:34 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2016-12-31 14:09 - 2016-10-05 10:33 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.AllJoyn.dll
2016-12-31 14:09 - 2016-10-05 10:33 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\credprovs.dll
2016-12-31 14:09 - 2016-10-05 10:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2016-12-31 14:09 - 2016-10-05 10:31 - 00480768 _____ (Microsoft Corporation) C:\Windows\system32\dsreg.dll
2016-12-31 14:09 - 2016-10-05 10:31 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll
2016-12-31 14:09 - 2016-10-05 10:29 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\EmailApis.dll
2016-12-31 14:09 - 2016-10-05 10:28 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2016-12-31 14:09 - 2016-10-05 10:28 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.dll
2016-12-31 14:09 - 2016-10-05 10:27 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
2016-12-31 14:09 - 2016-10-05 10:27 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-31 14:09 - 2016-10-05 10:26 - 00184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2016-12-31 14:09 - 2016-10-05 10:26 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovs.dll
2016-12-31 14:09 - 2016-10-05 10:26 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.Ngc.dll
2016-12-31 14:09 - 2016-10-05 10:25 - 00404992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsreg.dll
2016-12-31 14:09 - 2016-10-05 10:25 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccountApis.dll
2016-12-31 14:09 - 2016-10-05 10:25 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2016-12-31 14:09 - 2016-10-05 10:24 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.AllJoyn.dll
2016-12-31 14:09 - 2016-10-05 10:24 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
2016-12-31 14:09 - 2016-10-05 10:23 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-12-31 14:09 - 2016-10-05 10:23 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\dialclient.dll
2016-12-31 14:09 - 2016-10-05 10:21 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ChatApis.dll
2016-12-31 14:09 - 2016-10-05 10:20 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2016-12-31 14:09 - 2016-10-05 10:19 - 02390016 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
2016-12-31 14:09 - 2016-10-05 10:18 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2016-12-31 14:09 - 2016-10-05 10:18 - 00983040 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2016-12-31 14:09 - 2016-10-05 10:18 - 00858112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EmailApis.dll
2016-12-31 14:09 - 2016-10-05 10:18 - 00759296 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-12-31 14:09 - 2016-10-05 10:16 - 00771072 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentApis.dll
2016-12-31 14:09 - 2016-10-05 10:16 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2016-12-31 14:09 - 2016-10-05 10:16 - 00508416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-12-31 14:09 - 2016-10-05 10:15 - 00833024 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-12-31 14:09 - 2016-10-05 10:14 - 01456640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2016-12-31 14:09 - 2016-10-05 10:14 - 01013760 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll
2016-12-31 14:09 - 2016-10-05 10:12 - 00998912 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2016-12-31 14:09 - 2016-10-05 10:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentApis.dll
2016-12-31 14:09 - 2016-10-05 10:09 - 00691712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-12-31 14:09 - 2016-10-05 10:07 - 02646016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2016-12-31 14:09 - 2016-10-05 10:06 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll
2016-12-31 14:09 - 2016-09-15 18:40 - 00965472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2016-12-31 14:09 - 2016-09-15 18:37 - 00496872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2016-12-31 14:09 - 2016-09-15 18:37 - 00402352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-12-31 14:09 - 2016-09-15 18:33 - 00083120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 01117024 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 00512416 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 00218008 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2016-12-31 14:09 - 2016-09-15 18:29 - 00169056 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 00081760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2016-12-31 14:09 - 2016-09-15 18:29 - 00023392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cmimcext.sys
2016-12-31 14:09 - 2016-09-15 18:27 - 00434528 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2016-12-31 14:09 - 2016-09-15 18:26 - 00090400 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2016-12-31 14:09 - 2016-09-15 18:23 - 00170960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-12-31 14:09 - 2016-09-15 18:22 - 00975744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2016-12-31 14:09 - 2016-09-15 18:22 - 00433832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2016-12-31 14:09 - 2016-09-15 18:20 - 00634944 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2016-12-31 14:09 - 2016-09-15 18:18 - 00856872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2016-12-31 14:09 - 2016-09-15 18:16 - 00527808 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2016-12-31 14:09 - 2016-09-15 18:15 - 00130912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2016-12-31 14:09 - 2016-09-15 18:14 - 00119648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2016-12-31 14:09 - 2016-09-15 18:13 - 00113504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2016-12-31 14:09 - 2016-09-15 18:11 - 00862064 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2016-12-31 14:09 - 2016-09-15 18:11 - 00725664 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2016-12-31 14:09 - 2016-09-15 18:07 - 00128864 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2016-12-31 14:09 - 2016-09-15 18:06 - 00387872 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2016-12-31 14:09 - 2016-09-15 18:06 - 00372440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2016-12-31 14:09 - 2016-09-15 18:03 - 00094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
2016-12-31 14:09 - 2016-09-15 18:03 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TempSignedLicenseExchangeTask.dll
2016-12-31 14:09 - 2016-09-15 18:01 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2016-12-31 14:09 - 2016-09-15 18:00 - 00554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2016-12-31 14:09 - 2016-09-15 17:59 - 00255488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2016-12-31 14:09 - 2016-09-15 17:59 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinRtTracing.dll
2016-12-31 14:09 - 2016-09-15 17:58 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-12-31 14:09 - 2016-09-15 17:58 - 00129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SerialCommunication.dll
2016-12-31 14:09 - 2016-09-15 17:58 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.UserDeviceAssociation.dll
2016-12-31 14:09 - 2016-09-15 17:57 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll
2016-12-31 14:09 - 2016-09-15 17:57 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2016-12-31 14:09 - 2016-09-15 17:57 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ClipboardServer.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00265728 _____ C:\Windows\SysWOW64\Windows.Perception.Stub.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00257536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DataExchange.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Core.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManagerApi.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 01243136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.FaceAnalysis.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetworkCollectionAgent.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00386048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00218624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\biwinrt.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00431104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00819200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00445952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2016-12-31 14:09 - 2016-09-15 17:52 - 00238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
2016-12-31 14:09 - 2016-09-15 17:51 - 00762368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2016-12-31 14:09 - 2016-09-15 17:51 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll
2016-12-31 14:09 - 2016-09-15 17:49 - 00901120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:49 - 00653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
2016-12-31 14:09 - 2016-09-15 17:49 - 00468992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.InkControls.dll
2016-12-31 14:09 - 2016-09-15 17:47 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2016-12-31 14:09 - 2016-09-15 17:47 - 00355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTMediaFrame.dll
2016-12-31 14:09 - 2016-09-15 17:47 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Energy.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00713216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00558080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\ffbroker.dll
2016-12-31 14:09 - 2016-09-15 17:45 - 02642944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2016-12-31 14:09 - 2016-09-15 17:44 - 02153984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2016-12-31 14:09 - 2016-09-15 17:44 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL
2016-12-31 14:09 - 2016-09-15 17:43 - 03520512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
2016-12-31 14:09 - 2016-09-15 17:43 - 00433664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
2016-12-31 14:09 - 2016-09-15 17:43 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2016-12-31 14:09 - 2016-09-15 17:43 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2016-12-31 14:09 - 2016-09-15 17:42 - 01220608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2016-12-31 14:09 - 2016-09-15 17:42 - 00719872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_sr.dll
2016-12-31 14:09 - 2016-09-15 17:42 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2016-12-31 14:09 - 2016-09-15 17:41 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\Family.SyncEngine.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\Family.Client.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\Family.Authentication.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Printers.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\NfcRadioMedia.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 02026496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-12-31 14:09 - 2016-09-15 17:40 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 01656320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Perception.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.XboxLive.Storage.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.UserDeviceAssociation.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 02740224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 01232384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 01004544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Input.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00418304 _____ C:\Windows\system32\Windows.Perception.Stub.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Radios.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00773120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2016-12-31 14:09 - 2016-09-15 17:38 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00691200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00671232 _____ (Microsoft Corporation) C:\Windows\system32\NetworkCollectionAgent.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00620544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\vmrdvcore.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\credprovhost.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2016-12-31 14:09 - 2016-09-15 17:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SerialCommunication.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\PrintWSDAHost.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 01507840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.FaceAnalysis.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00568320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.LowLevel.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\wlancfg.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\biwinrt.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00852480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00719360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2016-12-31 14:09 - 2016-09-15 17:36 - 00686592 _____ (Microsoft Corporation) C:\Windows\system32\dsregcmd.exe
2016-12-31 14:09 - 2016-09-15 17:36 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00358912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2016-12-31 14:09 - 2016-09-15 17:36 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\credprovslegacy.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 01060352 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 01013248 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00949248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00472064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00431616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Picker.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\icsvc.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\DataExchange.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00671744 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.InkControls.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00560640 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\AccountsRt.dll
2016-12-31 14:09 - 2016-09-15 17:33 - 03753984 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll
2016-12-31 14:09 - 2016-09-15 17:33 - 00966144 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2016-12-31 14:09 - 2016-09-15 17:33 - 00896512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll
2016-12-31 14:09 - 2016-09-15 17:32 - 01037312 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2016-12-31 14:09 - 2016-09-15 17:32 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 01639424 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 01403392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\RTMediaFrame.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Energy.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\CastLaunch.dll
2016-12-31 14:09 - 2016-09-15 17:29 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:29 - 00715264 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2016-12-31 14:09 - 2016-09-15 17:29 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2016-12-31 14:09 - 2016-09-15 17:28 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2016-12-31 14:09 - 2016-09-15 17:28 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 01078784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2016-12-31 14:09 - 2016-09-15 17:27 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2016-12-31 14:09 - 2016-09-15 17:27 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\fvenotify.exe
2016-12-31 14:09 - 2016-09-15 17:27 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\Sens.dll
2016-12-31 14:09 - 2016-09-15 17:26 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\PlayToReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:26 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerDeviceEncryption.exe
2016-12-31 14:09 - 2016-09-15 17:26 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\bdeui.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 00947200 _____ (Microsoft Corporation) C:\Windows\system32\wsp_sr.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\SpaceAgent.exe
2016-12-31 14:09 - 2016-09-15 17:25 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundMediaPolicy.dll
2016-12-31 14:09 - 2016-09-15 17:24 - 04596224 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2016-12-31 14:09 - 2016-09-15 17:24 - 01080320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Ocr.dll
2016-12-31 14:09 - 2016-09-15 17:24 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2016-12-31 14:09 - 2016-09-15 17:23 - 03405824 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2016-12-31 14:09 - 2016-09-15 17:23 - 01361408 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2016-12-31 14:09 - 2016-09-15 17:23 - 01040896 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2016-12-31 14:09 - 2016-09-15 17:22 - 00857600 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 02538496 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 02208768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.3D.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 02424320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Perception.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 02095616 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-12-31 14:09 - 2016-09-15 17:20 - 01535488 _____ (Microsoft Corporation) C:\Windows\system32\SpeechPal.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 01275392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 01266176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 00875520 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 00845824 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2016-12-31 14:09 - 2016-09-15 17:19 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Maps.dll
2016-12-31 14:09 - 2016-09-15 17:19 - 01130496 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-12-31 14:09 - 2016-09-15 17:19 - 00903680 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2016-12-31 14:09 - 2016-09-15 17:18 - 01369088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Phone.dll
2016-12-31 14:09 - 2016-09-15 17:16 - 00387072 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2016-12-31 14:09 - 2016-09-10 14:21 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\capimg.sys
2016-12-31 14:09 - 2016-09-07 06:48 - 00379744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2016-12-31 14:09 - 2016-09-07 06:34 - 00178528 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostUser.dll
2016-12-31 14:09 - 2016-09-07 06:33 - 00450392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-12-31 14:09 - 2016-09-07 06:29 - 00755656 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-12-31 14:09 - 2016-09-07 06:29 - 00523712 _____ (Microsoft Corporation) C:\Windows\system32\DMRServer.dll
2016-12-31 14:09 - 2016-09-07 06:29 - 00382272 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2016-12-31 14:09 - 2016-09-07 06:29 - 00118112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\EhStorTcgDrv.sys
2016-12-31 14:09 - 2016-09-07 06:17 - 00782176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2016-12-31 14:09 - 2016-09-07 06:12 - 00321792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2016-12-31 14:09 - 2016-09-07 06:04 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosHost.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\MosResource.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MapControls.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\MapsCSP.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosTrace.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\nativemap.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvcProxy.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\MapControlStringsRes.dll
2016-12-31 14:09 - 2016-09-07 06:00 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\mapstoasttask.dll
2016-12-31 14:09 - 2016-09-07 06:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-12-31 14:09 - 2016-09-07 06:00 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosHost.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00409088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosResource.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00110080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MapControls.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\mapsupdatetask.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExtrasXmlParser.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlStringsRes.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\POSyncServices.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AddressParser.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTypeHelperUtil.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataLanguageUtil.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccessRes.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhoneutilRes.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2016-12-31 14:09 - 2016-09-07 05:57 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExSMime.dll
2016-12-31 14:09 - 2016-09-07 05:56 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\XamlTileRender.dll
2016-12-31 14:09 - 2016-09-07 05:56 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactActivation.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 00820736 _____ (Microsoft Corporation) C:\Windows\system32\BingOnlineServices.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 00781824 _____ (Microsoft Corporation) C:\Windows\system32\PhoneService.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VCardParser.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00678912 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\NmaDirect.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataPlatformHelperUtil.dll
2016-12-31 14:09 - 2016-09-07 05:53 - 00526848 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2016-12-31 14:09 - 2016-09-07 05:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentActivation.dll
2016-12-31 14:09 - 2016-09-07 05:53 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2016-12-31 14:09 - 2016-09-07 05:52 - 00536576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingOnlineServices.dll
2016-12-31 14:09 - 2016-09-07 05:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NmaDirect.dll
2016-12-31 14:09 - 2016-09-07 05:52 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2016-12-31 14:09 - 2016-09-07 05:50 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2016-12-31 14:09 - 2016-09-07 05:50 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2016-12-31 14:09 - 2016-09-07 05:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Phoneutil.dll
2016-12-31 14:09 - 2016-09-07 05:47 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2016-12-31 14:09 - 2016-09-07 05:46 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2016-12-31 14:09 - 2016-09-07 05:45 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-12-31 14:09 - 2016-09-07 05:43 - 00484352 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2016-12-31 14:09 - 2016-09-07 05:39 - 03116544 _____ (Microsoft Corporation) C:\Windows\system32\MSAJApi.dll
2016-12-31 14:09 - 2016-09-07 05:39 - 00895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2016-12-31 14:09 - 2016-09-07 05:37 - 02370048 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2016-12-31 14:09 - 2016-09-07 05:37 - 00540160 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2016-12-31 14:09 - 2016-09-07 05:36 - 02423296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAJApi.dll
2016-12-31 14:09 - 2016-09-07 05:34 - 04557824 _____ (Microsoft) C:\Windows\SysWOW64\dbgeng.dll
2016-12-31 14:09 - 2016-09-07 05:34 - 00444416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2016-12-31 14:09 - 2016-09-07 05:33 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-12-31 14:09 - 2016-09-07 05:31 - 00461312 _____ (Microsoft) C:\Windows\SysWOW64\DbgModel.dll
2016-12-31 14:09 - 2016-08-27 06:12 - 00244816 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-12-31 14:09 - 2016-08-27 05:58 - 00121368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2016-12-31 14:09 - 2016-08-27 05:44 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\encapi.dll
2016-12-31 14:09 - 2016-08-27 05:43 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\encapi.dll
2016-12-31 14:09 - 2016-08-20 06:34 - 00136032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostUser.dll
2016-12-31 14:09 - 2016-08-20 06:20 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2016-12-31 14:09 - 2016-08-20 06:17 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManagerSvc.dll
2016-12-31 14:09 - 2016-08-20 06:12 - 00476672 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-12-31 14:09 - 2016-08-20 06:07 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2016-12-31 14:09 - 2016-08-20 06:04 - 00592384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2016-12-31 14:09 - 2016-08-20 05:58 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi_passthru.dll
2016-12-31 14:09 - 2016-08-20 05:56 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\delegatorprovider.dll
2016-12-31 14:09 - 2016-08-06 05:17 - 00790760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-12-31 14:09 - 2016-08-06 05:16 - 00073568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2016-12-31 14:09 - 2016-08-06 05:16 - 00020320 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2016-12-31 14:09 - 2016-08-06 05:13 - 01847048 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2016-12-31 14:09 - 2016-08-06 05:03 - 01343928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2016-12-31 14:09 - 2016-08-06 04:48 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-12-31 14:09 - 2016-08-06 04:48 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-12-31 14:09 - 2016-08-06 04:48 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-12-31 14:09 - 2016-08-06 04:48 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2016-12-31 14:09 - 2016-08-06 04:47 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2016-12-31 14:09 - 2016-08-06 04:47 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-12-31 14:09 - 2016-08-06 04:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-12-31 14:09 - 2016-08-06 04:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-12-31 14:09 - 2016-08-06 04:46 - 09260032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-12-31 14:09 - 2016-08-06 04:46 - 09260032 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-12-31 14:09 - 2016-08-06 04:46 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\dasHost.exe
2016-12-31 14:09 - 2016-08-06 04:46 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2016-12-31 14:09 - 2016-08-06 04:45 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-12-31 14:09 - 2016-08-06 04:45 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\StorageUsage.dll
2016-12-31 14:09 - 2016-08-06 04:45 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-12-31 14:09 - 2016-08-06 04:44 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-12-31 14:09 - 2016-08-06 04:44 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll
2016-12-31 14:09 - 2016-08-06 04:43 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_WorkAccess.dll
2016-12-31 14:09 - 2016-08-06 04:43 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\ClipboardServer.dll
2016-12-31 14:09 - 2016-08-06 04:41 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncPolicy.dll
2016-12-31 14:09 - 2016-08-06 04:40 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\dafpos.dll
2016-12-31 14:09 - 2016-08-06 04:40 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncPolicy.dll
2016-12-31 14:09 - 2016-08-06 04:36 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\das.dll
2016-12-31 14:09 - 2016-08-06 04:35 - 00471552 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2016-12-31 14:09 - 2016-08-06 04:33 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smphost.dll
2016-12-31 14:09 - 2016-08-06 04:31 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\wpninprc.dll
2016-12-31 14:09 - 2016-08-05 10:14 - 01066328 _____ (Microsoft Corporation) C:\Windows\system32\pidgenx.dll
2016-12-31 14:09 - 2016-08-05 10:10 - 00939872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pidgenx.dll
2016-12-31 14:09 - 2016-08-05 10:05 - 00665768 _____ (Microsoft Corporation) C:\Windows\system32\GenValObj.exe
2016-12-31 14:09 - 2016-08-05 09:28 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
2016-12-31 14:09 - 2016-08-05 09:23 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2016-12-31 14:09 - 2016-08-05 09:22 - 00138240 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2016-12-31 14:09 - 2016-08-05 09:18 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2016-12-31 14:09 - 2016-08-05 09:08 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2016-12-31 14:09 - 2016-08-02 09:44 - 00114192 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2016-12-31 14:09 - 2016-08-02 09:15 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2016-12-31 14:09 - 2016-08-02 05:47 - 00079536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2016-12-31 14:09 - 2016-07-22 02:18 - 00297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtapi.dll
2016-12-31 14:08 - 2016-12-09 11:27 - 00172528 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-12-31 14:08 - 2016-12-09 11:20 - 02677544 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-12-31 14:08 - 2016-12-09 11:20 - 02189664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-12-31 14:08 - 2016-12-09 11:20 - 01738560 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-12-31 14:08 - 2016-12-09 11:20 - 00658784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2016-12-31 14:08 - 2016-12-09 11:20 - 00402272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-12-31 14:08 - 2016-12-09 11:18 - 01267512 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2016-12-31 14:08 - 2016-12-09 11:11 - 02048496 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2016-12-31 14:08 - 2016-12-09 10:56 - 00959112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-12-31 14:08 - 2016-12-09 10:42 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-12-31 14:08 - 2016-12-09 10:41 - 00380928 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2016-12-31 14:08 - 2016-12-09 10:34 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2016-12-31 14:08 - 2016-12-09 10:32 - 00635904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-12-31 14:08 - 2016-12-09 10:25 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll
2016-12-31 14:08 - 2016-12-09 10:21 - 04746752 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-12-31 14:08 - 2016-12-09 10:20 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2016-12-31 14:08 - 2016-12-09 10:20 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2016-12-31 14:08 - 2016-12-09 10:18 - 03666432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-12-31 14:08 - 2016-12-09 10:18 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2016-12-31 14:08 - 2016-11-11 11:15 - 00198856 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2016-12-31 14:08 - 2016-11-11 11:08 - 00142176 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll
2016-12-31 14:08 - 2016-11-11 11:03 - 00266544 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2016-12-31 14:08 - 2016-11-11 11:02 - 02828376 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-12-31 14:08 - 2016-11-11 11:01 - 07219672 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2016-12-31 14:08 - 2016-11-11 11:01 - 00637400 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-12-31 14:08 - 2016-11-11 10:56 - 00163752 _____ (Microsoft Corporation) C:\Windows\system32\RTWorkQ.dll
2016-12-31 14:08 - 2016-11-11 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\NetCfgNotifyObjectHost.exe
2016-12-31 14:08 - 2016-11-11 10:26 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xboxgip.sys
2016-12-31 14:08 - 2016-11-11 10:26 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-31 14:08 - 2016-11-11 10:26 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\ReportingCSP.dll
2016-12-31 14:08 - 2016-11-11 10:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2016-12-31 14:08 - 2016-11-11 10:25 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe
2016-12-31 14:08 - 2016-11-11 10:24 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-31 14:08 - 2016-11-11 10:23 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\EAMProgressHandler.dll
2016-12-31 14:08 - 2016-11-11 10:22 - 00489472 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll
2016-12-31 14:08 - 2016-11-11 10:22 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\EDPCleanup.exe
2016-12-31 14:08 - 2016-11-11 10:21 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2016-12-31 14:08 - 2016-11-11 10:21 - 00587776 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2016-12-31 14:08 - 2016-11-11 10:21 - 00379392 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00574464 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2016-12-31 14:08 - 2016-11-11 10:19 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2016-12-31 14:08 - 2016-11-11 10:19 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAppMgmtSvc.dll
2016-12-31 14:08 - 2016-11-11 10:19 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2016-12-31 14:08 - 2016-11-11 10:18 - 02084352 _____ (Microsoft Corporation) C:\Windows\system32\DeviceFlows.DataModel.dll
2016-12-31 14:08 - 2016-11-11 10:18 - 00278016 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2016-12-31 14:08 - 2016-11-11 10:17 - 01220096 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2016-12-31 14:08 - 2016-11-11 10:16 - 02716672 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-12-31 14:08 - 2016-11-11 10:16 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2016-12-31 14:08 - 2016-11-11 10:15 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-12-31 14:08 - 2016-11-11 10:15 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll
2016-12-31 14:08 - 2016-11-11 10:15 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2016-12-31 14:08 - 2016-11-11 10:14 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2016-12-31 14:08 - 2016-11-11 10:14 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2016-12-31 14:08 - 2016-11-11 10:13 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll
2016-12-31 14:08 - 2016-11-11 10:11 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\umpoext.dll
2016-12-31 14:08 - 2016-11-11 10:07 - 02510848 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2016-12-31 14:08 - 2016-11-11 10:07 - 01691136 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2016-12-31 14:08 - 2016-11-11 10:05 - 01779712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 02800128 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 01709056 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 00691712 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 04708864 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 02669056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 00632320 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2016-12-31 14:08 - 2016-11-11 08:49 - 00248480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2016-12-31 14:08 - 2016-11-11 08:42 - 00374448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2016-12-31 14:08 - 2016-11-11 08:42 - 00152416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTWorkQ.dll
2016-12-31 14:08 - 2016-11-11 08:27 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetCfgNotifyObjectHost.exe
2016-12-31 14:08 - 2016-11-11 08:26 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe
2016-12-31 14:08 - 2016-11-11 08:24 - 00519168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ngccredprov.dll
2016-12-31 14:08 - 2016-11-11 08:21 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-31 14:08 - 2016-11-11 08:20 - 00306176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupShim.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00298496 _____ (Microsoft Corporation)
         

Alt 17.01.2017, 01:02   #5
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

teil 3



Code:
ATTFilter
C:\Windows\SysWOW64\Windows.Internal.Management.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2016-12-31 14:08 - 2016-11-11 08:18 - 00431616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2016-12-31 14:08 - 2016-11-11 08:16 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-31 14:08 - 2016-11-11 08:15 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2016-12-31 14:08 - 2016-11-11 08:14 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2016-12-31 14:08 - 2016-11-11 08:06 - 01228288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2016-12-31 14:08 - 2016-11-11 08:06 - 00400384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2016-12-31 14:08 - 2016-11-11 08:04 - 01595392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-12-31 14:08 - 2016-11-11 08:03 - 02256384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-12-31 14:08 - 2016-11-11 08:03 - 00772608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2016-12-31 14:08 - 2016-11-02 12:13 - 00423776 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2016-12-31 14:08 - 2016-11-02 12:08 - 00576408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2016-12-31 14:08 - 2016-11-02 12:08 - 00186424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2016-12-31 14:08 - 2016-11-02 12:08 - 00111968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2016-12-31 14:08 - 2016-11-02 12:04 - 00596832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2016-12-31 14:08 - 2016-11-02 12:03 - 02750936 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00848736 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00682816 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00238056 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00148832 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2016-12-31 14:08 - 2016-11-02 12:01 - 00276832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2016-12-31 14:08 - 2016-11-02 11:48 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-12-31 14:08 - 2016-11-02 11:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-12-31 14:08 - 2016-11-02 11:48 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsext.dll
2016-12-31 14:08 - 2016-11-02 11:46 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininetlui.dll
2016-12-31 14:08 - 2016-11-02 11:43 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-12-31 14:08 - 2016-11-02 11:43 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-12-31 14:08 - 2016-11-02 11:36 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetailsUpdate.dll
2016-12-31 14:08 - 2016-11-02 11:35 - 00336896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2016-12-31 14:08 - 2016-11-02 11:31 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-12-31 14:08 - 2016-11-02 11:31 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\wininetlui.dll
2016-12-31 14:08 - 2016-11-02 11:30 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2016-12-31 14:08 - 2016-11-02 11:30 - 00134144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetails.dll
2016-12-31 14:08 - 2016-11-02 11:30 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00884224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00122368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSM.dll
2016-12-31 14:08 - 2016-11-02 11:28 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-12-31 14:08 - 2016-11-02 11:28 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2016-12-31 14:08 - 2016-11-02 11:28 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-12-31 14:08 - 2016-11-02 11:26 - 01509376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-12-31 14:08 - 2016-11-02 11:26 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-12-31 14:08 - 2016-11-02 11:25 - 00541696 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2016-12-31 14:08 - 2016-11-02 11:23 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2016-12-31 14:08 - 2016-11-02 11:19 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\chartv.dll
2016-12-31 14:08 - 2016-11-02 11:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2016-12-31 14:08 - 2016-11-02 11:16 - 01637888 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-12-31 14:08 - 2016-11-02 11:16 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2016-12-31 14:08 - 2016-11-02 11:16 - 00265728 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2016-12-31 14:08 - 2016-10-15 05:38 - 00500064 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2016-12-31 14:08 - 2016-10-15 05:30 - 00557408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2016-12-31 14:08 - 2016-10-15 05:30 - 00509280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2016-12-31 14:08 - 2016-10-15 05:30 - 00341936 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-12-31 14:08 - 2016-10-15 05:29 - 00908640 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2016-12-31 14:08 - 2016-10-15 05:29 - 00079200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2016-12-31 14:08 - 2016-10-15 05:21 - 00584032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-12-31 14:08 - 2016-10-15 05:18 - 00749920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll
2016-12-31 14:08 - 2016-10-15 05:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-12-31 14:08 - 2016-10-15 04:56 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe
2016-12-31 14:08 - 2016-10-15 04:56 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2016-12-31 14:08 - 2016-10-15 04:56 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\OnDemandConnRouteHelper.dll
2016-12-31 14:08 - 2016-10-15 04:55 - 00265728 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2016-12-31 14:08 - 2016-10-15 04:54 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2016-12-31 14:08 - 2016-10-15 04:48 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2016-12-31 14:08 - 2016-10-15 04:46 - 03287552 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2016-12-31 14:08 - 2016-10-15 04:45 - 01790464 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2016-12-31 14:08 - 2016-10-15 04:43 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmi.dll
2016-12-31 14:08 - 2016-10-15 04:42 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Geolocation.dll
2016-12-31 14:08 - 2016-10-15 04:42 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.exe
2016-12-31 14:08 - 2016-10-15 04:41 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2016-12-31 14:08 - 2016-10-15 04:39 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Geolocation.dll
2016-12-31 14:08 - 2016-10-15 04:38 - 00913920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2016-12-31 14:08 - 2016-10-15 04:38 - 00675840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2016-12-31 14:08 - 2016-10-15 04:37 - 01643008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2016-12-31 14:08 - 2016-10-15 04:37 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\cmifw.dll
2016-12-31 14:08 - 2016-10-15 04:36 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2016-12-31 14:08 - 2016-10-15 04:36 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmifw.dll
2016-12-31 14:08 - 2016-10-15 04:35 - 03054080 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2016-12-31 14:08 - 2016-10-15 04:35 - 00701952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2016-12-31 14:08 - 2016-10-15 04:34 - 02476544 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-12-31 14:08 - 2016-10-15 04:34 - 01840640 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-12-31 14:08 - 2016-10-05 11:22 - 01181536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-12-31 14:08 - 2016-10-05 11:17 - 01322848 _____ (Microsoft Corporation) C:\Windows\system32\wpx.dll
2016-12-31 14:08 - 2016-10-05 11:12 - 02446696 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2016-12-31 14:08 - 2016-10-05 10:38 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-12-31 14:08 - 2016-10-05 10:38 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Diagnostics.dll
2016-12-31 14:08 - 2016-10-05 10:33 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2016-12-31 14:08 - 2016-10-05 10:32 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.HostName.dll
2016-12-31 14:08 - 2016-10-05 10:31 - 00748544 _____ (Microsoft Corporation) C:\Windows\system32\ChatApis.dll
2016-12-31 14:08 - 2016-10-05 10:31 - 00561664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Wallet.dll
2016-12-31 14:08 - 2016-10-05 10:31 - 00425472 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2016-12-31 14:08 - 2016-10-05 10:30 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2016-12-31 14:08 - 2016-10-05 10:29 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2016-12-31 14:08 - 2016-10-05 10:28 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2016-12-31 14:08 - 2016-10-05 10:28 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.HostName.dll
2016-12-31 14:08 - 2016-10-05 10:26 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-12-31 14:08 - 2016-10-05 10:22 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2016-12-31 14:08 - 2016-10-05 10:20 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2016-12-31 14:08 - 2016-10-05 10:17 - 02914304 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-12-31 14:08 - 2016-10-05 10:17 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll
2016-12-31 14:08 - 2016-10-05 10:15 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
2016-12-31 14:08 - 2016-10-05 10:15 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dialclient.dll
2016-12-31 14:08 - 2016-10-05 10:13 - 01328128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2016-12-31 14:08 - 2016-10-05 10:13 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2016-12-31 14:08 - 2016-10-05 10:12 - 00924672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2016-12-31 14:08 - 2016-10-05 10:08 - 00598528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2016-12-31 14:08 - 2016-10-05 10:07 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2016-12-31 14:08 - 2016-10-05 10:06 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2016-12-31 14:08 - 2016-10-05 10:05 - 00751104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-12-31 14:08 - 2016-09-15 18:30 - 00646136 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-12-31 14:08 - 2016-09-15 18:30 - 00354264 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2016-12-31 14:08 - 2016-09-15 18:29 - 00424640 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-12-31 14:08 - 2016-09-15 18:29 - 00074080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys
2016-12-31 14:08 - 2016-09-15 18:25 - 00280472 _____ (Microsoft Corporation) C:\Windows\system32\bdeunlock.exe
2016-12-31 14:08 - 2016-09-15 18:21 - 01000288 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2016-12-31 14:08 - 2016-09-15 18:19 - 00361104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2016-12-31 14:08 - 2016-09-15 18:16 - 01157000 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2016-12-31 14:08 - 2016-09-15 18:16 - 00206096 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-12-31 14:08 - 2016-09-15 18:15 - 00649568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-12-31 14:08 - 2016-09-15 18:03 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2016-12-31 14:08 - 2016-09-15 18:01 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Radios.dll
2016-12-31 14:08 - 2016-09-15 17:59 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovslegacy.dll
2016-12-31 14:08 - 2016-09-15 17:58 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlancfg.dll
2016-12-31 14:08 - 2016-09-15 17:58 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovhost.dll
2016-12-31 14:08 - 2016-09-15 17:58 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-12-31 14:08 - 2016-09-15 17:57 - 00392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Input.dll
2016-12-31 14:08 - 2016-09-15 17:56 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll
2016-12-31 14:08 - 2016-09-15 17:55 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2016-12-31 14:08 - 2016-09-15 17:54 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Ocr.dll
2016-12-31 14:08 - 2016-09-15 17:54 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2016-12-31 14:08 - 2016-09-15 17:53 - 00466432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
2016-12-31 14:08 - 2016-09-15 17:52 - 00816640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2016-12-31 14:08 - 2016-09-15 17:50 - 01534464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.3D.dll
2016-12-31 14:08 - 2016-09-15 17:50 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pwrshplugin.dll
2016-12-31 14:08 - 2016-09-15 17:48 - 01320448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2016-12-31 14:08 - 2016-09-15 17:46 - 00343040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2016-12-31 14:08 - 2016-09-15 17:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dlnashext.dll
2016-12-31 14:08 - 2016-09-15 17:44 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTimeUtil.dll
2016-12-31 14:08 - 2016-09-15 17:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2016-12-31 14:08 - 2016-09-15 17:42 - 00545792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2016-12-31 14:08 - 2016-09-15 17:42 - 00492544 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2016-12-31 14:08 - 2016-09-15 17:42 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys
2016-12-31 14:08 - 2016-09-15 17:42 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BackgroundMediaPolicy.dll
2016-12-31 14:08 - 2016-09-15 17:40 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll
2016-12-31 14:08 - 2016-09-15 17:40 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00573952 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrGidsHandler.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\icsvcext.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.Phone.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\PimIndexMaintenance.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2016-12-31 14:08 - 2016-09-15 17:36 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2016-12-31 14:08 - 2016-09-15 17:36 - 00448512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2016-12-31 14:08 - 2016-09-15 17:36 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2016-12-31 14:08 - 2016-09-15 17:36 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2016-12-31 14:08 - 2016-09-15 17:35 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2016-12-31 14:08 - 2016-09-15 17:35 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2016-12-31 14:08 - 2016-09-15 17:35 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\rshx32.dll
2016-12-31 14:08 - 2016-09-15 17:34 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
2016-12-31 14:08 - 2016-09-15 17:34 - 00284160 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll
2016-12-31 14:08 - 2016-09-15 17:33 - 00963584 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
2016-12-31 14:08 - 2016-09-15 17:33 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2016-12-31 14:08 - 2016-09-15 17:32 - 00634368 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-12-31 14:08 - 2016-09-15 17:31 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\pwrshplugin.dll
2016-12-31 14:08 - 2016-09-15 17:29 - 01082368 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2016-12-31 14:08 - 2016-09-15 17:29 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2016-12-31 14:08 - 2016-09-15 17:27 - 02860032 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2016-12-31 14:08 - 2016-09-15 17:27 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2016-12-31 14:08 - 2016-09-15 17:27 - 00582656 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2016-12-31 14:08 - 2016-09-15 17:26 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2016-12-31 14:08 - 2016-09-15 17:26 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2016-12-31 14:08 - 2016-09-15 17:25 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2016-12-31 14:08 - 2016-09-15 17:24 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll
2016-12-31 14:08 - 2016-09-15 17:23 - 01020928 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
2016-12-31 14:08 - 2016-09-15 17:23 - 00611328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2016-12-31 14:08 - 2016-09-15 17:23 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Midi.dll
2016-12-31 14:08 - 2016-09-15 17:22 - 01709056 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2016-12-31 14:08 - 2016-09-15 17:19 - 03202048 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2016-12-31 14:08 - 2016-09-15 17:17 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\FontProvider.dll
2016-12-31 14:08 - 2016-09-15 17:16 - 01817088 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2016-12-31 14:08 - 2016-09-15 17:16 - 00531456 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2016-12-31 14:08 - 2016-09-15 17:16 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\spaceman.exe
2016-12-31 14:08 - 2016-09-07 06:54 - 00133472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-12-31 14:08 - 2016-09-07 06:44 - 02049480 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-12-31 14:08 - 2016-09-07 06:34 - 00857440 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2016-12-31 14:08 - 2016-09-07 06:33 - 00681304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ClipSp.sys
2016-12-31 14:08 - 2016-09-07 06:29 - 00595488 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2016-12-31 14:08 - 2016-09-07 06:27 - 01362504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2016-12-31 14:08 - 2016-09-07 06:24 - 00057400 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-12-31 14:08 - 2016-09-07 06:13 - 00640976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2016-12-31 14:08 - 2016-09-07 06:13 - 00529928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2016-12-31 14:08 - 2016-09-07 06:03 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\UserDataAccessRes.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTypeHelperUtil.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\UserDataLanguageUtil.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\ExtrasXmlParser.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\PhoneutilRes.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\PhoneServiceRes.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2016-12-31 14:08 - 2016-09-07 06:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wificonnapi.dll
2016-12-31 14:08 - 2016-09-07 06:01 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\AddressParser.dll
2016-12-31 14:08 - 2016-09-07 06:01 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\POSyncServices.dll
2016-12-31 14:08 - 2016-09-07 06:00 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-12-31 14:08 - 2016-09-07 05:59 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\ExSMime.dll
2016-12-31 14:08 - 2016-09-07 05:59 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2016-12-31 14:08 - 2016-09-07 05:59 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\UserDataPlatformHelperUtil.dll
2016-12-31 14:08 - 2016-09-07 05:59 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\ContactActivation.dll
2016-12-31 14:08 - 2016-09-07 05:58 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\VCardParser.dll
2016-12-31 14:08 - 2016-09-07 05:58 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-12-31 14:08 - 2016-09-07 05:57 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-12-31 14:08 - 2016-09-07 05:57 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2016-12-31 14:08 - 2016-09-07 05:56 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2016-12-31 14:08 - 2016-09-07 05:56 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentActivation.dll
2016-12-31 14:08 - 2016-09-07 05:56 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2016-12-31 14:08 - 2016-09-07 05:55 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2016-12-31 14:08 - 2016-09-07 05:54 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-12-31 14:08 - 2016-09-07 05:54 - 00315904 _____ (Microsoft Corporation) C:\Windows\system32\Phoneutil.dll
2016-12-31 14:08 - 2016-09-07 05:53 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2016-12-31 14:08 - 2016-09-07 05:49 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-12-31 14:08 - 2016-09-07 05:46 - 00846336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2016-12-31 14:08 - 2016-09-07 05:46 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dlnashext.dll
2016-12-31 14:08 - 2016-09-07 05:41 - 01891328 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2016-12-31 14:08 - 2016-09-07 05:40 - 01312768 _____ (Microsoft Corporation) C:\Windows\system32\SensorDataService.exe
2016-12-31 14:08 - 2016-09-07 05:39 - 05384192 _____ (Microsoft) C:\Windows\system32\dbgeng.dll
2016-12-31 14:08 - 2016-09-07 05:38 - 01555456 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe
2016-12-31 14:08 - 2016-09-07 05:35 - 00650240 _____ (Microsoft) C:\Windows\system32\DbgModel.dll
2016-12-31 14:08 - 2016-09-07 05:31 - 01293312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2016-12-31 14:08 - 2016-08-20 07:06 - 00108384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2016-12-31 14:08 - 2016-08-20 06:22 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-12-31 14:08 - 2016-08-20 06:21 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\C_G18030.DLL
2016-12-31 14:08 - 2016-08-20 06:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2016-12-31 14:08 - 2016-08-20 06:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\c_GSM7.DLL
2016-12-31 14:08 - 2016-08-20 06:20 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2016-12-31 14:08 - 2016-08-20 06:20 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xinputhid.sys
2016-12-31 14:08 - 2016-08-20 06:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\C_IS2022.DLL
2016-12-31 14:08 - 2016-08-20 06:19 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2016-12-31 14:08 - 2016-08-20 06:18 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2016-12-31 14:08 - 2016-08-20 06:18 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2016-12-31 14:08 - 2016-08-20 06:15 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2016-12-31 14:08 - 2016-08-20 06:14 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_G18030.DLL
2016-12-31 14:08 - 2016-08-20 06:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2016-12-31 14:08 - 2016-08-20 06:14 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_IS2022.DLL
2016-12-31 14:08 - 2016-08-20 06:14 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\c_GSM7.DLL
2016-12-31 14:08 - 2016-08-20 06:08 - 00204288 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\DscCoreConfProv.dll
2016-12-31 14:08 - 2016-08-20 06:06 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-12-31 14:08 - 2016-08-20 06:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi_passthru.dll
2016-12-31 14:08 - 2016-08-20 06:04 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\delegatorprovider.dll
2016-12-31 14:08 - 2016-08-20 06:00 - 00141824 _____ (Windows (R) Win 7 DDK provider) C:\Windows\SysWOW64\DscCoreConfProv.dll
2016-12-31 14:08 - 2016-08-19 02:33 - 00162850 _____ C:\Windows\system32\C_932.NLS
2016-12-31 14:08 - 2016-08-06 05:31 - 00041824 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2016-12-31 14:08 - 2016-08-06 05:29 - 00199008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2016-12-31 14:08 - 2016-08-06 05:26 - 01176664 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-12-31 14:08 - 2016-08-06 05:23 - 00168800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-12-31 14:08 - 2016-08-06 05:18 - 00396168 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2016-12-31 14:08 - 2016-08-06 05:16 - 00026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-12-31 14:08 - 2016-08-06 05:15 - 00408600 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2016-12-31 14:08 - 2016-08-06 05:13 - 00044472 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2016-12-31 14:08 - 2016-08-06 05:08 - 00313560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2016-12-31 14:08 - 2016-08-06 05:03 - 00036168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2016-12-31 14:08 - 2016-08-06 04:50 - 02755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-12-31 14:08 - 2016-08-06 04:48 - 02755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-12-31 14:08 - 2016-08-06 04:48 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-12-31 14:08 - 2016-08-06 04:48 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2016-12-31 14:08 - 2016-08-06 04:48 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2016-12-31 14:08 - 2016-08-06 04:48 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2016-12-31 14:08 - 2016-08-06 04:47 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WiFiConfigSP.dll
2016-12-31 14:08 - 2016-08-06 04:46 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModelOOBE.exe
2016-12-31 14:08 - 2016-08-06 04:46 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2016-12-31 14:08 - 2016-08-06 04:45 - 00327680 _____ (Microsoft Corporation) C:\Windows\system32\container.dll
2016-12-31 14:08 - 2016-08-06 04:45 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\container.dll
2016-12-31 14:08 - 2016-08-06 04:45 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2016-12-31 14:08 - 2016-08-06 04:45 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2016-12-31 14:08 - 2016-08-06 04:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe
2016-12-31 14:08 - 2016-08-06 04:44 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceassociation.dll
2016-12-31 14:08 - 2016-08-06 04:43 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2016-12-31 14:08 - 2016-08-06 04:41 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2016-12-31 14:08 - 2016-08-06 04:41 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2016-12-31 14:08 - 2016-08-06 04:41 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll
2016-12-31 14:08 - 2016-08-06 04:40 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2016-12-31 14:08 - 2016-08-06 04:39 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\wifiprofilessettinghandler.dll
2016-12-31 14:08 - 2016-08-06 04:39 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll
2016-12-31 14:08 - 2016-08-06 04:34 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\smphost.dll
2016-12-31 14:08 - 2016-08-06 04:29 - 00298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2016-12-31 14:08 - 2016-08-06 04:29 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2016-12-31 14:08 - 2016-08-06 04:28 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2016-12-31 14:08 - 2016-08-06 04:23 - 00520192 _____ (Microsoft Corporation) C:\Windows\system32\w32time.dll
2016-12-31 14:08 - 2016-08-06 04:21 - 00102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinelsa.dll
2016-12-31 14:08 - 2016-08-06 04:19 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
2016-12-31 14:08 - 2016-08-05 09:29 - 00568832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.UXRes.dll
2016-12-31 14:08 - 2016-08-05 09:29 - 00568832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.UXRes.dll
2016-12-31 14:08 - 2016-08-05 09:29 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll
2016-12-31 14:08 - 2016-08-02 09:21 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2016-12-31 14:08 - 2016-08-02 09:13 - 01081856 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2016-12-31 14:08 - 2016-08-02 05:37 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2016-12-31 14:08 - 2016-07-22 02:25 - 00389000 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll
2016-12-29 14:11 - 2016-12-29 14:10 - 00485032 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-12-29 14:00 - 2017-01-14 18:41 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Skype
2016-12-29 14:00 - 2016-12-29 14:00 - 00003300 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task v2
2016-12-29 13:59 - 2017-01-02 20:10 - 00000000 ___SD C:\Users\Henselmann\AppData\LocalLow\Microsoft
2016-12-23 11:04 - 2017-01-11 17:36 - 00003884 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:04 - 2017-01-06 02:10 - 01855544 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 01756728 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 01454136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 01318968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 00121912 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2016-12-23 11:04 - 2016-12-31 18:14 - 00000000 ____D C:\Users\Henselmann\AppData\Local\NVIDIA Corporation
2016-12-23 11:04 - 2016-12-31 15:26 - 00000000 ____D C:\Users\Henselmann\AppData\Local\NVIDIA
2016-12-23 11:04 - 2016-12-23 11:04 - 00000000 ____D C:\Users\Henselmann\AppData\Local\CEF
2016-12-23 11:04 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2016-12-23 11:04 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2016-12-23 11:04 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2016-12-23 11:04 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2016-12-23 11:04 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2016-12-23 11:04 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2016-12-23 11:03 - 2017-01-16 16:03 - 00000000 ____D C:\ProgramData\NVIDIA
2016-12-23 11:03 - 2017-01-11 17:36 - 00003894 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:03 - 2017-01-11 17:36 - 00003866 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:03 - 2017-01-11 17:36 - 00003858 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:03 - 2017-01-11 17:36 - 00003696 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:03 - 2017-01-11 17:36 - 00003654 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:03 - 2017-01-11 17:36 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-12-23 11:03 - 2017-01-11 17:36 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-12-23 11:03 - 2017-01-06 00:42 - 00001951 _____ C:\Windows\NvContainerRecovery.bat
2016-12-23 11:03 - 2016-12-31 15:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-12-23 11:03 - 2016-12-11 19:47 - 06384576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 02475968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 00548408 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 00071224 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-12-23 11:03 - 2016-12-09 09:52 - 07639617 _____ C:\Windows\system32\nvcoproc.bin
2016-12-23 11:03 - 2016-12-01 21:02 - 00215608 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2016-12-23 11:03 - 2016-12-01 21:02 - 00203320 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2016-12-23 11:02 - 2017-01-06 02:10 - 00047672 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2016-12-23 11:02 - 2016-12-12 04:03 - 03934504 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-12-23 11:02 - 2016-12-12 04:03 - 03474392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2016-12-23 11:02 - 2016-12-12 04:03 - 00042286 _____ C:\Windows\system32\nvinfo.pb
2016-12-23 11:02 - 2016-12-02 21:41 - 01595456 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2016-12-23 11:02 - 2016-12-02 21:41 - 00212936 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2016-12-23 11:02 - 2016-12-02 21:41 - 00046024 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2016-12-23 11:02 - 2016-12-01 21:02 - 01951680 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437619.dll
2016-12-23 11:02 - 2016-12-01 21:02 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437619.dll
2016-12-23 11:02 - 2016-12-01 21:02 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2016-12-23 11:02 - 2016-12-01 21:02 - 00000669 _____ C:\Windows\system32\nv-vk64.json
2016-12-23 11:00 - 2017-01-11 17:36 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-12-23 11:00 - 2016-12-23 11:00 - 00000000 ____D C:\NVIDIA
2016-12-23 10:59 - 2016-12-23 10:59 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-12-23 10:55 - 2016-12-23 10:55 - 01351936 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2016-12-23 10:55 - 2016-12-23 10:55 - 00030766 _____ C:\csb.log
2016-12-23 10:55 - 2016-12-23 10:55 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-12-23 10:55 - 2016-12-23 10:55 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Intel Corporation
2016-12-23 10:55 - 2016-12-23 10:55 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Comms
2016-12-23 10:55 - 2016-12-23 10:55 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3
2016-12-23 10:54 - 2016-12-23 10:55 - 00000189 _____ C:\Install.log
2016-12-23 10:54 - 2016-12-23 10:54 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2016-12-23 10:54 - 2015-10-10 00:27 - 00935168 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys
2016-12-23 10:54 - 2015-10-10 00:27 - 00082544 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2016-12-23 10:53 - 2016-12-23 10:53 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-12-23 10:53 - 2016-12-23 10:53 - 00000000 ____D C:\Program Files\Realtek
2016-12-23 10:53 - 2016-01-27 03:04 - 03195648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-12-23 10:53 - 2016-01-27 03:04 - 02894976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-12-23 10:53 - 2016-01-27 03:03 - 72203792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-12-23 10:53 - 2016-01-27 03:03 - 07172920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 04779776 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-12-23 10:53 - 2016-01-27 03:03 - 03769493 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-12-23 10:53 - 2016-01-27 03:03 - 03283248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 03080784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 02036992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 01356504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00447728 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00192992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00151792 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00134208 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00105312 _____ C:\Windows\system32\audioLibVc.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00084616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-12-23 10:52 - 2017-01-15 20:22 - 02055386 _____ C:\Windows\system32\PerfStringBackup.INI
2016-12-23 10:52 - 2016-01-27 03:03 - 07096192 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 01965816 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00727440 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00445408 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00327464 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00272720 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00253872 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00252880 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2016-12-23 10:51 - 2017-01-07 18:12 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-12-23 10:51 - 2017-01-04 12:52 - 00000000 ____D C:\ProgramData\Package Cache
2016-12-23 10:51 - 2016-12-23 10:55 - 00000000 ____D C:\Program Files\Intel
2016-12-23 10:51 - 2016-12-23 10:54 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-12-23 10:51 - 2016-12-23 10:54 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-12-23 10:51 - 2016-12-23 10:51 - 00000000 ____D C:\Users\Henselmann\Intel
2016-12-23 10:51 - 2016-12-23 10:51 - 00000000 ____D C:\ProgramData\Intel
2016-12-23 10:51 - 2016-12-23 10:51 - 00000000 ____D C:\Program Files (x86)\Intel
2016-12-23 10:51 - 2016-01-27 03:03 - 00118600 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2016-12-23 10:51 - 2016-01-06 09:23 - 02826832 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2016-12-23 10:50 - 2016-12-23 10:54 - 00026192 ____N (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys
2016-12-23 10:50 - 2016-12-23 10:54 - 00000010 _____ C:\Windows\GSetup.ini
2016-12-23 10:50 - 2009-08-27 08:04 - 00207400 ____R () C:\Windows\GSetup.exe
2016-12-23 10:49 - 2016-12-29 14:00 - 00002402 _____ C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-12-23 10:49 - 2016-12-29 14:00 - 00000000 ___RD C:\Users\Henselmann\OneDrive
2016-12-23 10:49 - 2016-12-23 10:49 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-12-23 10:49 - 2016-07-16 12:41 - 02716672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2016-12-23 10:48 - 2017-01-17 00:42 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Temp
2016-12-23 10:48 - 2017-01-17 00:25 - 00000000 ___RD C:\Users\Henselmann\Downloads
2016-12-23 10:48 - 2017-01-17 00:22 - 00000000 ___RD C:\Users\Henselmann\Desktop
2016-12-23 10:48 - 2017-01-16 22:36 - 00000000 ___RD C:\Users\Henselmann\Videos
2016-12-23 10:48 - 2017-01-16 01:32 - 00000000 ___RD C:\Users\Henselmann\Pictures
2016-12-23 10:48 - 2017-01-15 22:37 - 00000000 ____D C:\Users\Henselmann
2016-12-23 10:48 - 2017-01-15 20:51 - 00000000 ___RD C:\Users\Henselmann\Music
2016-12-23 10:48 - 2017-01-15 20:16 - 06553600 ____H C:\Users\Henselmann\NTUSER.DAT
2016-12-23 10:48 - 2017-01-15 03:32 - 00000000 ____D C:\Users\Henselmann\AppData\Local
2016-12-23 10:48 - 2017-01-15 02:33 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2016-12-23 10:48 - 2017-01-15 02:32 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
2016-12-23 10:48 - 2017-01-15 02:13 - 00000000 ___RD C:\Users\Henselmann\Documents
2016-12-23 10:48 - 2017-01-15 01:03 - 00524288 ___SH C:\Users\Henselmann\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:48 - 2017-01-15 01:03 - 00065536 ___SH C:\Users\Henselmann\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TM.blf
2016-12-23 10:48 - 2017-01-15 01:02 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming
2016-12-23 10:48 - 2017-01-15 00:54 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2016-12-23 10:48 - 2017-01-15 00:54 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Microsoft
2016-12-23 10:48 - 2017-01-14 19:38 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow
2016-12-23 10:48 - 2017-01-14 18:56 - 00000000 ___SD C:\Users\Henselmann\AppData\Roaming\Microsoft
2016-12-23 10:48 - 2017-01-10 19:33 - 00000402 ___SH C:\Users\Henselmann\Documents\desktop.ini
2016-12-23 10:48 - 2017-01-10 19:33 - 00000282 ___SH C:\Users\Henselmann\Downloads\desktop.ini
2016-12-23 10:48 - 2017-01-10 19:33 - 00000282 ___SH C:\Users\Henselmann\Desktop\desktop.ini
2016-12-23 10:48 - 2017-01-10 19:33 - 00000174 ___SH C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\desktop.ini
2016-12-23 10:48 - 2017-01-10 19:33 - 00000174 ___SH C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Searches
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Saved Games
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Links
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Favorites
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Contacts
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2016-12-23 10:48 - 2017-01-08 00:51 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Packages
2016-12-23 10:48 - 2017-01-07 23:52 - 00524288 ___SH C:\Users\Henselmann\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:48 - 2016-12-23 10:54 - 00000000 ____D C:\Users\Henselmann\AppData\Local\ConnectedDevicesPlatform
2016-12-23 10:48 - 2016-12-23 10:48 - 01720320 ___SH C:\Users\Henselmann\ntuser.dat.LOG2
2016-12-23 10:48 - 2016-12-23 10:48 - 01683456 ___SH C:\Users\Henselmann\ntuser.dat.LOG1
2016-12-23 10:48 - 2016-12-23 10:48 - 00003340 ____H C:\Users\defaultuser0\AppData\Local\IconCache.db
2016-12-23 10:48 - 2016-12-23 10:48 - 00000020 ___SH C:\Users\Henselmann\ntuser.ini
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Vorlagen
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Startmenü
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\SendTo
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Recent
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Netzwerkumgebung
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Lokale Einstellungen
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Eigene Dateien
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Druckumgebung
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Documents\Eigene Videos
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Documents\Eigene Musik
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Documents\Eigene Bilder
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Cookies
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\AppData\Local\Verlauf
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\AppData\Local\Temporary Internet Files
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\AppData\Local\Anwendungsdaten
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Anwendungsdaten
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ___HD C:\Users\Henselmann\AppData
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Adobe
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ____D C:\Users\Henselmann\AppData\Local\VirtualStore
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ____D C:\Users\Henselmann\AppData\Local\TileDataLayer
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Publishers
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ____D C:\ProgramData\USOShared
2016-12-23 10:48 - 2016-07-16 12:48 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2016-12-23 10:48 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2016-12-23 10:48 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2016-12-23 10:48 - 2016-07-16 12:47 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2016-12-23 10:47 - 2017-01-17 00:04 - 00000275 _____ C:\Windows\WindowsUpdate.log
2016-12-23 10:47 - 2017-01-15 20:16 - 05242880 ____H C:\Users\defaultuser0\NTUSER.DAT
2016-12-23 10:47 - 2017-01-14 18:58 - 00000000 ____D C:\Users\defaultuser0
2016-12-23 10:47 - 2016-12-29 14:08 - 00000000 ____D C:\Windows\SoftwareDistribution
2016-12-23 10:47 - 2016-12-23 10:48 - 00000000 ____D C:\Users\defaultuser0\AppData\Local
2016-12-23 10:47 - 2016-12-23 10:47 - 00524288 ___SH C:\Users\defaultuser0\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:47 - 2016-12-23 10:47 - 00524288 ___SH C:\Users\defaultuser0\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:47 - 2016-12-23 10:47 - 00119808 ___SH C:\Users\defaultuser0\ntuser.dat.LOG1
2016-12-23 10:47 - 2016-12-23 10:47 - 00065536 ___SH C:\Users\defaultuser0\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TM.blf
2016-12-23 10:47 - 2016-12-23 10:47 - 00024576 ___SH C:\Users\defaultuser0\ntuser.dat.LOG2
2016-12-23 10:47 - 2016-12-23 10:47 - 00000020 ___SH C:\Users\defaultuser0\ntuser.ini
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Vorlagen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Startmenü
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\SendTo
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Recent
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Netzwerkumgebung
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Lokale Einstellungen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Eigene Dateien
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Druckumgebung
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Videos
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Musik
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Bilder
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Cookies
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Verlauf
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Temporary Internet Files
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\SendTo
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Recent
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Cookies
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\AppData\Local\Temporary Internet Files
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Temporary Internet Files
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Programme
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Vorlagen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Startmenü
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Dokumente
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Desktop
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Dokumente und Einstellungen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 __SHD C:\Recovery
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ___SD C:\Users\defaultuser0\AppData\Roaming\Microsoft
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ___RD C:\Users\defaultuser0\Documents
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ___HD C:\Users\defaultuser0\AppData
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\LocalLow
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\VirtualStore
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\TileDataLayer
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Temp
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Packages
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Microsoft
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\ConnectedDevicesPlatform
2016-12-23 10:47 - 2016-07-16 12:48 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Videos
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Pictures
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Music
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Links
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Favorites
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Downloads
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Desktop
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\defaultuser0\Saved Games
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Roaming
2016-12-23 10:46 - 2017-01-17 00:25 - 00000000 ____D C:\Windows\Prefetch
2016-12-23 10:46 - 2017-01-17 00:20 - 3892314112 ___SH C:\pagefile.sys
2016-12-23 10:46 - 2017-01-16 22:29 - 00000000 ____D C:\Windows\system32\SleepStudy
2016-12-23 10:46 - 2017-01-16 17:50 - 3416023040 ___SH C:\hiberfil.sys
2016-12-23 10:46 - 2017-01-16 17:50 - 00067584 ____S C:\Windows\bootstat.dat
2016-12-23 10:46 - 2017-01-15 20:16 - 16777216 ___SH C:\swapfile.sys
2016-12-23 10:46 - 2017-01-15 20:16 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-12-23 10:46 - 2017-01-15 02:58 - 00524288 ___SH C:\Windows\system32\config\COMPONENTS{f8d8b5e2-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:46 - 2017-01-15 02:58 - 00065536 ___SH C:\Windows\system32\config\COMPONENTS{f8d8b5e2-4ba6-11e6-80cd-0026b955b121}.TM.blf
2016-12-23 10:46 - 2017-01-14 19:41 - 00006756 _____ C:\Windows\setupact.log
2016-12-23 10:46 - 2017-01-11 17:00 - 00524288 ___SH C:\Windows\system32\config\COMPONENTS{f8d8b5e2-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:46 - 2017-01-10 19:32 - 00226680 _____ C:\Windows\system32\FNTCACHE.DAT
2016-12-23 10:46 - 2016-12-23 10:46 - 00524288 ___SH C:\Windows\system32\config\ELAM{1cc41df8-4b1b-11e6-80cc-e41d2d1026d0}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:46 - 2016-12-23 10:46 - 00524288 ___SH C:\Windows\system32\config\ELAM{1cc41df8-4b1b-11e6-80cc-e41d2d1026d0}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:46 - 2016-12-23 10:46 - 00524288 ___SH C:\Users\Default\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:46 - 2016-12-23 10:46 - 00524288 ___SH C:\Users\Default\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:46 - 2016-12-23 10:46 - 00065536 ___SH C:\Windows\system32\config\ELAM{1cc41df8-4b1b-11e6-80cc-e41d2d1026d0}.TM.blf
2016-12-23 10:46 - 2016-12-23 10:46 - 00065536 ___SH C:\Users\Default\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TM.blf
2016-12-23 10:46 - 2016-12-23 10:46 - 00047425 _____ C:\Windows\SysWOW64\license.rtf
2016-12-23 10:46 - 2016-12-23 10:46 - 00047425 _____ C:\Windows\system32\license.rtf
2016-12-23 10:46 - 2016-12-23 10:46 - 00001344 _____ C:\Windows\lsasetup.log
2016-12-23 10:46 - 2016-12-23 10:46 - 00000000 ___SD C:\Windows\system32\Microsoft
2016-12-23 10:46 - 2016-12-23 10:46 - 00000000 ___HD C:\Program Files\Uninstall Information
2016-12-23 10:46 - 2016-12-23 10:46 - 00000000 ____D C:\Windows\ServiceProfiles
2016-12-23 10:46 - 2016-12-23 10:46 - 00000000 _____ C:\Windows\setuperr.log
2016-12-23 10:45 - 2017-01-16 01:58 - 00000000 __SHD C:\System Volume Information
2016-12-23 10:45 - 2017-01-10 19:32 - 00524288 ___SH C:\Windows\system32\config\DRIVERS{f8d8b5e8-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:45 - 2017-01-10 19:32 - 00065536 ___SH C:\Windows\system32\config\DRIVERS{f8d8b5e8-4ba6-11e6-80cd-0026b955b121}.TM.blf
2016-12-23 10:45 - 2016-12-23 10:46 - 00524288 ___SH C:\Windows\system32\config\DRIVERS{f8d8b5e8-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:45 - 2016-12-23 10:46 - 00000000 ____D C:\Windows\Panther
2016-12-20 11:24 - 2016-12-20 11:24 - 00035784 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\tap0901.sys

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-01-15 20:22 - 2016-07-16 23:51 - 00811282 _____ C:\Windows\system32\perfh007.dat
2017-01-15 20:22 - 2016-07-16 23:51 - 00179342 _____ C:\Windows\system32\perfc007.dat
2017-01-15 20:16 - 2016-07-16 07:04 - 00262144 _____ C:\Windows\system32\config\BBI
2017-01-15 12:09 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\AppReadiness
2017-01-15 02:55 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\rescache
2017-01-14 19:41 - 2016-07-16 12:45 - 00000000 ____D C:\Windows\INF
2017-01-14 11:24 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-01-13 01:06 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\NDF
2017-01-11 19:30 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-01-11 19:30 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\Macromed
2017-01-10 19:32 - 2016-07-16 12:47 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2017-01-10 19:32 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2017-01-10 19:32 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\oobe
2017-01-10 19:32 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\ShellExperiences
2017-01-10 19:32 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\Provisioning
2017-01-10 19:21 - 2016-07-16 12:36 - 00000000 ____D C:\Windows\CbsTemp
2017-01-09 18:26 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\LiveKernelReports
2017-01-04 02:45 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\Resources
2017-01-03 19:00 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2017-01-01 19:08 - 2016-07-16 07:04 - 00032768 _____ C:\Windows\system32\config\ELAM
2017-01-01 02:14 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\MUI
2017-01-01 02:14 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\MUI
2016-12-31 14:16 - 2016-07-16 23:50 - 00000000 ____D C:\Windows\system32\Drivers\de-DE
2016-12-31 14:16 - 2016-07-16 12:47 - 00015425 _____ C:\Windows\system32\OEMDefaultAssociations.xml
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___SD C:\Windows\SysWOW64\F12
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___SD C:\Windows\system32\F12
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___SD C:\Windows\system32\dsc
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___SD C:\Windows\system32\DiagSvcs
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___RD C:\Program Files\Windows Defender
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\wbem
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\sr-Latn-CS
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\setup
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\oobe
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\migration
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\en-US
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\zh-TW
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\zh-HK
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\zh-CN
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\uk-UA
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\tr-TR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\th-TH
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\sv-SE
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\sr-Latn-CS
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\sl-SI
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\sk-SK
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\setup
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\ru-RU
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\ro-RO
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\pt-PT
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\pt-BR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\pl-PL
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\nl-NL
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\nb-NO
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\migwiz
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\migration
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\lv-LV
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\lt-LT
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\ko-KR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\ja-jp
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\it-IT
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\hu-HU
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\hr-HR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\he-IL
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\fr-FR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\fr-CA
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\fi-FI
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\et-EE
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\es-MX
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\es-ES
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\en-US
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\en-GB
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\el-GR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\da-DK
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\cs-CZ
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\config\TxR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\Boot
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\bg-BG
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\ar-SA
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\appraiser
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\bcastdvr
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\AppPatch
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows Media Player
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows Mail
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Media Player
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Mail
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-12-31 14:16 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\SysWOW64\Dism
2016-12-31 14:16 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\system32\Sysprep
2016-12-31 14:16 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\system32\Dism
2016-12-31 14:16 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\servicing
2016-12-31 14:02 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\WinBioDatabase
2016-12-31 14:02 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\appcompat
2016-12-29 14:07 - 2016-07-16 12:47 - 00000000 __SHD C:\$Recycle.Bin
2016-12-29 14:07 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\CodeIntegrity
2016-12-23 11:03 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\Public\Pictures
2016-12-23 11:03 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\Help
2016-12-23 10:51 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\drivers
2016-12-23 10:51 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\restore
2016-12-23 10:49 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\spool
2016-12-23 10:49 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\FxsTmp
2016-12-23 10:48 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\USOPrivate
2016-12-23 10:48 - 2016-07-16 07:04 - 00000000 ___RD C:\Users
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\Default\Documents
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\debug
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\Default\AppData\Local
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\Default User\AppData\Local
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows NT
2016-12-23 10:47 - 2016-07-16 07:04 - 00000000 __RHD C:\Users\Default
2016-12-23 10:46 - 2016-07-16 12:49 - 00001947 _____ C:\Windows\DtcInstall.log
2016-12-23 10:46 - 2016-07-16 12:47 - 00000000 ___RD C:\Windows\PrintDialog
2016-12-23 10:46 - 2016-07-16 12:47 - 00000000 ___RD C:\Windows\MiracastView
2016-12-23 10:46 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\System32\Tasks\Microsoft
2016-12-23 10:46 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\Recovery
2016-12-23 10:45 - 2016-07-16 12:47 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2016-12-23 00:13 - 2016-07-16 12:49 - 00835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-12-23 00:13 - 2016-07-16 12:49 - 00177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2017-01-08 04:12 - 2017-01-14 20:47 - 0007597 _____ () C:\Users\Henselmann\AppData\Local\Resmon.ResmonCfg
2016-12-23 10:54 - 2016-12-23 10:54 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2017-01-01 14:03 - 2017-01-01 14:03 - 0000016 _____ () C:\ProgramData\mntemp
2016-12-31 18:14 - 2017-01-11 17:36 - 0007609 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-31 18:14 - 2017-01-10 19:32 - 0010108 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1

Einige Dateien in TEMP:
====================
C:\Users\Henselmann\AppData\Local\Temp\0Kraken0502DevProps.dll
C:\Users\Henselmann\AppData\Local\Temp\6699d3ee8dd9cf775caae782c8f44f03.dll
C:\Users\Henselmann\AppData\Local\Temp\e3a0f8dd4837fff176547bdbd39cbe30.dll


==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert

LastRegBack: 2017-01-15 01:52

==================== Ende von FRST.txt ============================
         
und hier die addition
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 15-01-2017
durchgeführt von Henselmann (17-01-2017 00:42:23)
Gestartet von C:\Users\Henselmann\Downloads
Windows 10 Home Version 1607 (X64) (2016-12-23 09:47:40)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-2565043127-2691430490-4239563169-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2565043127-2691430490-4239563169-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-2565043127-2691430490-4239563169-1000 - Limited - Disabled) => C:\Users\defaultuser0
Gast (S-1-5-21-2565043127-2691430490-4239563169-501 - Limited - Disabled)
Henselmann (S-1-5-21-2565043127-2691430490-4239563169-1001 - Administrator - Enabled) => C:\Users\Henselmann

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Disabled - Up to date) {A16C3F68-9280-E053-1818-342707FECF4D}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

ACCUSOR Advanced Gaming Keyboard Driver (HKLM-x32\...\{93078AA8-F6A1-4C16-B527-64F08801EAAD}) (Version: 1.0 - SPEEDLINK)
Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
AirMech (HKLM\...\Steam App 206500) (Version:  - Carbon Games)
Akamai NetSession Interface (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Akamai) (Version:  - Akamai Technologies, Inc)
Akamai NetSession Interface (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Akamai) (Version:  - Akamai Technologies, Inc)
Akamai NetSession Interface (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\Akamai) (Version:  - Akamai Technologies, Inc)
Ansel (Version: 376.33 - NVIDIA Corporation) Hidden
Apple Application Support (32-Bit) (HKLM-x32\...\{D079CAAD-0C31-47A2-9AF5-A82F9CD9B221}) (Version: 5.2 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{64E6007B-1DA9-42CD-BBE4-D5FA67A7C71D}) (Version: 5.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Archeblade (HKLM\...\Steam App 207230) (Version:  - CodeBrush Games)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.26.1 - Asmedia Technology)
AURA(GRAPHICS CARD) (HKLM-x32\...\{8318B34B-E1F1-47CD-88C7-718F16C3C782}) (Version: 0.0.2.1 - )
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.24.146 - Avira Operations GmbH & Co. KG)
Avira Connect (HKLM-x32\...\{e4e126a8-f29e-4b56-947d-fe8bbdce8b1b}) (Version: 1.2.77.32054 - Avira Operations GmbH & Co. KG)
Avira Connect (x32 Version: 1.2.77.32054 - Avira Operations GmbH & Co. KG) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC)
Black Desert Online (HKLM-x32\...\{C1F96C92-7B8C-485F-A9CD-37A0708A2A60}) (Version: 1.0.0.5 - Daum Games EU)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Borderlands 2 (HKLM\...\Steam App 49520) (Version:  - Gearbox Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.25 - Piriform)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version:  - Valve)
Discord (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
Discord (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
Discord (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
Elsword 1.0 (HKLM-x32\...\Elsword_de_is1) (Version: 1.0 - Gameforge4d)
Evolve Stage 2 (HKLM\...\Steam App 273350) (Version:  - Turtle Rock Studios)
Ghost in the Shell: Stand Alone Complex - First Assault Online (HKLM\...\Steam App 369200) (Version:  - Neople)
GOD EATER 2 Rage Burst (HKLM\...\Steam App 438490) (Version:  - BANDAI NAMCO Studio)
GOD EATER RESURRECTION (HKLM\...\Steam App 460870) (Version:  - )
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Innkeeper (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Innkeeper) (Version: 0.3.4 - Curse Inc.)
Innkeeper (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Innkeeper) (Version: 0.3.4 - Curse Inc.)
Innkeeper (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\Innkeeper) (Version: 0.3.4 - Curse Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1162 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.0.1042 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.9 - Intel(R) Corporation) Hidden
iTunes (HKLM\...\{81C96689-EA5B-4B7D-A04F-16326EC51BC2}) (Version: 12.5.4.42 - Apple Inc.)
League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games)
League of Legends (x32 Version: 4.2.1 - Riot Games) Hidden
MEGAsync (HKLM-x32\...\MEGAsync) (Version:  - Mega Limited)
Melody's Escape (HKLM\...\Steam App 270210) (Version:  - Icetesy SPRL)
METAL GEAR RISING: REVENGEANCE (HKLM\...\Steam App 235460) (Version:  - PlatinumGames)
METAL GEAR SOLID V: GROUND ZEROES (HKLM\...\Steam App 311340) (Version:  - Kojima Productions)
METAL GEAR SOLID V: THE PHANTOM PAIN (HKLM\...\Steam App 287700) (Version:  - Konami Digital Entertainment)
Microsoft OneDrive (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\OneDriveSetup.exe) (Version: 17.3.6720.1207 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\OneDriveSetup.exe) (Version: 17.3.6720.1207 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\OneDriveSetup.exe) (Version: 17.3.6720.1207 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mozilla Firefox 50.1.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 50.1.0 (x86 de)) (Version: 50.1.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.1.0 - Mozilla)
NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 376.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 376.33 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.2.2.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.2.2.49 - NVIDIA Corporation)
NVIDIA Grafiktreiber 376.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.33 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.34.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.17 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NvNodejs (Version: 3.2.2.49 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 2.0.2.1 - NVIDIA Corporation) Hidden
NvvHci (Version: 2.02.0.2 - NVIDIA Corporation) Hidden
OpenOffice 4.1.3 (HKLM-x32\...\{EEA30AEB-8BA7-465B-85D4-098BB99733E7}) (Version: 4.13.9783 - Apache Software Foundation)
osu! (HKLM-x32\...\{6b2acd56-1df1-4565-ac4c-1d74d735e6a8}) (Version: latest - ppy Pty Ltd)
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
Path of Exile (HKLM\...\Steam App 238960) (Version:  - Grinding Gear Games)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.15.1104 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.6.1001.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7727 - Realtek Semiconductor Corp.)
S4 League (HKLM-x32\...\S4 League) (Version:  - )
Shadowverse (HKLM\...\Steam App 453480) (Version:  - Cygames, Inc.)
SHIELD Streaming (Version: 7.1.0351 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.2.2.49 - NVIDIA Corporation) Hidden
Skullgirls (HKLM\...\Steam App 245170) (Version:  - Lab Zero Games)
Skype™ 7.31 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.31.104 - Skype Technologies S.A.)
SMITE (HKLM\...\Steam App 386360) (Version:  - Hi-Rez Studios)
Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 12.0.0.5 - Bioware/EA)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Storm of Spears (HKLM\...\Steam App 463350) (Version:  - Warfare Studios)
TeamSpeak 3 Client (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TeamSpeak 3 Client (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TeamSpeak 3 Client (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
Vindictus EU (HKLM-x32\...\Vindictus EU) (Version:  - )
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Warframe (HKLM\...\Steam App 230410) (Version:  - Digital Extremes)
Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {2946EB12-204C-42F9-8F9A-99B1F8A9DB0E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {29601261-DDE2-4B85-81C9-D405474A2C15} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-01-11] (Adobe Systems Incorporated)
Task: {774574DD-EC3D-4EFF-9BE5-CC666E9FEC29} - System32\Tasks\Microsoft\Windows\Media Center\VCore => C:\ProgramData\vCore\VCore.exe [2017-01-06] () <==== ACHTUNG
Task: {8006BE86-544F-43F0-890E-E9C74B492B0D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {89B62C76-1148-46B0-A84F-47DEAA00A5C4} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-06] (NVIDIA Corporation)
Task: {91AB939C-3E9E-4EAE-AD33-B1AB91FF8848} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-15] (Piriform Ltd)
Task: {9C7363DA-99D7-4CF8-A7CF-4135E166AF37} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {9F685957-B1A6-411E-A735-01AC01F2A609} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-01-06] (NVIDIA Corporation)
Task: {A948B7A3-B7E3-44CE-B3D7-4534F5797BA2} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-06] (NVIDIA Corporation)
Task: {B1FF650B-6F75-428B-ABF5-F3D9CF8D2486} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-01-06] (NVIDIA Corporation)
Task: {B4F5F7DF-D5D0-4373-BA7C-B0EACEE6ECEB} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-01-06] (NVIDIA Corporation)
Task: {CC904F93-8C84-47FD-8FE6-CAF54D46B2F3} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-06] (NVIDIA Corporation)
Task: {DE862DFF-97EF-4942-A44E-555C04C39D5A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {E711467A-D558-4EC7-B69B-6B542CBCF40D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {FD6CD81C-3205-43D7-A31D-D2A12406D28E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-06] (NVIDIA Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe
         


Alt 17.01.2017, 01:04   #6
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

letzter teil (4)



Code:
ATTFilter
==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnet Eхplоrer.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.erolpxei.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzilla Firеfox.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzilla Firеfоx.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Мozilla Firеfoх.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\Windows\SYSTEM32\ism32k.dll
2016-12-31 14:09 - 2016-12-09 11:29 - 02681200 _____ () C:\Windows\system32\CoreUIComponents.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 04490808 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-11-17 01:28 - 2016-11-17 01:28 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-11-17 01:28 - 2016-11-17 01:28 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-09-25 00:20 - 2016-09-25 00:21 - 00189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2016-12-23 11:03 - 2016-12-11 19:47 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-12-31 14:09 - 2016-12-09 11:29 - 02681200 _____ () C:\Windows\SYSTEM32\CoreUIComponents.dll
2016-10-31 20:45 - 2016-10-31 20:45 - 00592384 _____ () C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll
2016-12-29 14:00 - 2016-12-29 14:00 - 01678560 _____ () C:\Users\Henselmann\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\amd64\ClientTelemetry.dll
2016-12-31 14:08 - 2016-09-07 05:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-01-10 19:17 - 2016-12-21 08:09 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-01-10 19:17 - 2016-12-21 07:54 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-01-10 19:17 - 2016-12-21 07:48 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-01-10 19:17 - 2016-12-21 07:48 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-01-10 19:17 - 2016-12-21 07:48 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2017-01-10 19:17 - 2016-12-21 07:48 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-01-10 19:17 - 2016-12-21 07:53 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-12-31 14:39 - 2016-12-31 14:40 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-12-31 14:39 - 2016-12-31 14:40 - 00179712 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-12-31 14:39 - 2016-12-31 14:40 - 42130432 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2016-12-31 14:39 - 2016-12-31 14:40 - 02216448 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\roottools.dll
2016-12-31 14:39 - 2016-12-31 14:40 - 00123904 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.Proxies.dll
2016-12-31 14:23 - 2013-10-29 13:43 - 00248832 _____ () C:\Program Files (x86)\Drakonia Configurator\hid.exe
2016-12-31 14:23 - 2012-12-11 11:14 - 00240640 _____ () C:\Program Files (x86)\Drakonia Configurator\trayicon.exe
2016-08-19 09:12 - 2016-08-19 09:12 - 00298448 _____ () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
2016-12-31 14:44 - 2016-12-31 14:44 - 00019456 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2016-12-31 14:44 - 2016-12-31 14:44 - 20433408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2016-12-31 14:44 - 2016-12-31 14:44 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll
2016-12-31 14:44 - 2016-12-31 14:44 - 01046528 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Microsoft.Sharing.dll
2016-12-31 14:44 - 2016-12-31 14:44 - 00353792 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.1118.10000.0_x64__8wekyb3d8bbwe\Photos.Inking.dll
2016-12-31 14:39 - 2016-12-31 14:40 - 00181248 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\Microsoft.Skype.ImageTool.dll
2016-12-31 14:39 - 2016-12-31 14:40 - 00040960 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\TraceProvider.dll
2016-12-31 14:39 - 2016-12-31 14:40 - 00796672 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\VideoN.dll
2016-12-31 14:43 - 2016-12-31 14:43 - 14267904 _____ () C:\Program Files\WindowsApps\Microsoft.3DBuilder_12.0.3131.0_x64__8wekyb3d8bbwe\Builder3D.exe
2016-12-31 14:43 - 2016-12-31 14:43 - 00204800 _____ () C:\Program Files\WindowsApps\Microsoft.3DBuilder_12.0.3131.0_x64__8wekyb3d8bbwe\Lib3mfUAP.dll
2017-01-11 23:12 - 2017-01-11 23:12 - 01448936 _____ () C:\Program Files (x86)\Battle.net\Battle.net.8265\Battle.net Helper.exe
2017-01-01 18:07 - 2016-06-24 11:22 - 03070624 _____ () C:\Program Files (x86)\GameforgeLive\gfl_client.exe
2016-12-23 11:04 - 2017-01-06 02:10 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 00901688 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 03776056 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll
2017-01-15 20:17 - 2017-01-15 20:17 - 00619840 _____ () C:\Users\Henselmann\AppData\Local\Temp\0Kraken0502DevProps.dll
2016-12-31 17:35 - 2016-05-20 17:04 - 00065536 _____ () C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\Exeio.dll
2016-12-31 17:35 - 2016-06-03 10:53 - 01744896 _____ () C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\Vender.dll
2016-12-29 14:00 - 2016-12-29 14:00 - 01244376 _____ () C:\Users\Henselmann\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\ClientTelemetry.dll
2016-12-31 14:29 - 2016-12-08 16:13 - 00656160 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2016-12-31 14:29 - 2016-09-01 02:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2016-12-31 14:29 - 2016-12-20 03:25 - 02322720 _____ () C:\Program Files (x86)\Steam\video.dll
2016-12-31 14:29 - 2016-09-01 02:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2016-12-31 14:29 - 2016-09-01 02:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2016-12-31 14:29 - 2016-01-27 08:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2016-12-31 14:29 - 2016-01-27 08:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2016-12-31 14:29 - 2016-01-27 08:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2016-12-31 14:29 - 2016-01-27 08:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2016-12-31 14:29 - 2016-01-27 08:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2016-12-31 14:29 - 2016-12-20 03:25 - 00838944 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-12-31 14:29 - 2016-07-04 23:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2016-12-31 14:29 - 2016-12-05 17:21 - 67304736 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2016-12-31 14:29 - 2016-12-20 03:25 - 00388384 _____ () C:\Program Files (x86)\Steam\steam.dll
2016-12-31 14:29 - 2015-09-25 00:52 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
2016-04-13 09:38 - 2016-04-13 09:38 - 00482304 _____ () C:\Users\Henselmann\AppData\Local\MEGAsync\libsodium.dll
2016-12-31 14:23 - 2013-01-15 17:06 - 00061952 _____ () C:\Program Files (x86)\Drakonia Configurator\HidDevice.dll
2016-12-31 14:23 - 2011-11-22 14:18 - 00249856 _____ () C:\Program Files (x86)\Drakonia Configurator\language.dll
2016-12-31 14:24 - 2016-10-12 11:59 - 00036864 _____ () C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Lang\Lang_EN.dll
2016-12-31 14:24 - 2016-09-30 17:49 - 00061440 _____ () C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\hiddriver.dll
2016-12-01 09:59 - 2016-12-01 09:59 - 00143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2017-01-06 14:54 - 2016-10-08 08:13 - 50656768 _____ () C:\Users\Henselmann\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libcef.dll
2017-01-06 14:54 - 2016-10-08 08:13 - 01874944 _____ () C:\Users\Henselmann\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libglesv2.dll
2017-01-06 14:54 - 2016-10-08 08:13 - 00075264 _____ () C:\Users\Henselmann\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libegl.dll
2016-12-23 11:04 - 2017-01-06 01:09 - 00527416 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node
2016-12-23 11:04 - 2017-01-06 01:09 - 00252352 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node
2016-12-23 11:04 - 2017-01-06 01:09 - 02807232 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node
2016-12-23 11:04 - 2017-01-06 01:09 - 00384568 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node
2016-12-23 11:04 - 2017-01-06 01:09 - 00449080 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node
2016-12-23 11:04 - 2017-01-06 01:09 - 00336832 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node
2016-12-23 11:04 - 2017-01-06 01:09 - 01003456 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node
2016-12-31 18:14 - 2017-01-06 01:09 - 00954816 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSDKAPINode.node
2017-01-11 23:12 - 2017-01-11 23:12 - 37247976 _____ () C:\Program Files (x86)\Battle.net\Battle.net.8265\libcef.dll
2017-01-11 23:12 - 2017-01-11 23:12 - 00540336 _____ () C:\Program Files (x86)\Battle.net\Battle.net.8265\ortp.dll
2017-01-11 23:12 - 2017-01-11 23:12 - 00133632 _____ () C:\Program Files (x86)\Battle.net\Battle.net.8265\libEGL.dll
2017-01-11 23:12 - 2017-01-11 23:12 - 03384832 _____ () C:\Program Files (x86)\Battle.net\Battle.net.8265\libGLESv2.dll
2017-01-11 23:12 - 2017-01-11 23:12 - 03384832 _____ () C:\Program Files (x86)\Battle.net\Battle.net.8265\libglesv2.dll
2017-01-11 23:12 - 2017-01-11 23:12 - 00133632 _____ () C:\Program Files (x86)\Battle.net\Battle.net.8265\libegl.dll
2017-01-11 23:12 - 2017-01-11 23:12 - 00990696 _____ () C:\Program Files (x86)\Battle.net\Battle.net.8265\ffmpegsumo.dll
2016-10-31 20:43 - 2016-10-31 20:43 - 00564736 _____ () C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX32.dll
2017-01-01 18:07 - 2016-06-24 10:40 - 00863744 _____ () C:\Program Files (x86)\GameforgeLive\libstdc++-6.dll
2017-01-01 18:07 - 2016-06-24 10:40 - 00088064 _____ () C:\Program Files (x86)\GameforgeLive\libgcc_s_sjlj-1.dll
2017-01-01 18:07 - 2016-06-24 10:41 - 05686669 _____ () C:\Program Files (x86)\GameforgeLive\libtorrent.dll
2017-01-01 18:07 - 2016-06-24 10:41 - 01765301 _____ () C:\Program Files (x86)\GameforgeLive\libgcrypt-11.dll
2017-01-01 18:07 - 2016-06-24 10:47 - 00530432 _____ () C:\Program Files (x86)\GameforgeLive\log4qt.dll
2017-01-01 18:07 - 2016-06-24 10:46 - 00141312 _____ () C:\Program Files (x86)\GameforgeLive\qjson.dll
2017-01-01 18:07 - 2016-06-24 10:41 - 00126959 _____ () C:\Program Files (x86)\GameforgeLive\libgpg-error-0.dll
2017-01-01 18:07 - 2016-06-24 10:40 - 00097659 _____ () C:\Program Files (x86)\GameforgeLive\libboost_system-mgw47-mt-1_53.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

Da befinden sich 7924 mehr Seiten.

IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\...\123simsen.com -> www.123simsen.com

Da befinden sich 7924 mehr Seiten.

IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\123simsen.com -> www.123simsen.com

Da befinden sich 7924 mehr Seiten.

IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\...\123simsen.com -> www.123simsen.com

Da befinden sich 7924 mehr Seiten.

IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\123simsen.com -> www.123simsen.com

Da befinden sich 7924 mehr Seiten.

IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\123simsen.com -> www.123simsen.com

Da befinden sich 7924 mehr Seiten.

IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\...\123simsen.com -> www.123simsen.com

Da befinden sich 7924 mehr Seiten.


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2016-07-16 12:47 - 2016-07-16 12:45 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547343\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547366\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2565043127-2691430490-4239563169-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2565043127-2691430490-4239563169-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547392\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\Control Panel\Desktop\\Wallpaper -> C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => LPort=139
FirewallRules: [{0E47B457-4B1D-4F16-BDC5-912AB44760B7}] => C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{7D081491-E712-482D-81EA-ACAF9C0D1C84}] => C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{311812F6-FFA3-4B11-B582-A88CBF08B84E}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{28957022-8102-4FC4-B93D-DABB32A318DC}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{3068688B-FFF3-43F2-ABB2-7308A5DF785D}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{C085FAE0-02BC-4064-9230-E38642D24846}] => C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{F720E04A-1999-42F9-93A4-CC7BADD43C66}] => C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{735F8F34-814C-400E-B045-F25D9291FA30}] => C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{84933992-693A-4FD3-8B7A-CCAE63645C77}] => C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [TCP Query User{4CCFF972-1BC8-40F1-B076-56BDDE60A32F}C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe] => C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe
FirewallRules: [UDP Query User{38DB372C-5868-4762-A226-58383CA3AB99}C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe] => C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe
FirewallRules: [TCP Query User{E11A29F9-4CAE-4262-80EE-F09C654B12CF}C:\program files (x86)\overwatch\overwatch.exe] => C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [UDP Query User{7137A934-0488-483E-B554-0650C59A9E4E}C:\program files (x86)\overwatch\overwatch.exe] => C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [{2237B37D-A6F3-448C-9CB3-71768559F301}] => C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe
FirewallRules: [{4611E285-EFA0-45E2-A04D-973ED7400488}] => C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe
FirewallRules: [{FABECFE2-ED1C-4AD5-8A5A-C0AA5C8FC0D3}] => C:\Program Files (x86)\Steam\steamapps\common\Metal Gear Solid Ground Zeroes\MgsGroundZeroes.exe
FirewallRules: [{90AECE4F-6400-4E13-8A24-82E399D27D18}] => C:\Program Files (x86)\Steam\steamapps\common\Metal Gear Solid Ground Zeroes\MgsGroundZeroes.exe
FirewallRules: [{08997F7E-BE69-41A8-A3BE-D4702B8D8C33}] => C:\Program Files (x86)\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe
FirewallRules: [{3217F0C9-694B-44B3-9F66-19B9511EDD60}] => C:\Program Files (x86)\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe
FirewallRules: [{A7BEA246-B5A7-4C9A-9316-4CFE6072F920}] => C:\Program Files (x86)\Steam\steamapps\common\GOD EATER 2 Rage Burst\GE2RB.exe
FirewallRules: [{4AB6EB5F-9CBE-474D-A844-91B6EE0AD80D}] => C:\Program Files (x86)\Steam\steamapps\common\GOD EATER 2 Rage Burst\GE2RB.exe
FirewallRules: [{08454A83-18A3-4233-8756-61090E5A1257}] => C:\Program Files (x86)\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{A277378D-5E7C-4428-AA23-E510F8DC2427}] => C:\Program Files (x86)\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{E80B4C5C-D8E6-4A59-A712-9203F7673409}] => C:\Program Files (x86)\Steam\steamapps\common\MelodysEscape\MelodysEscape.exe
FirewallRules: [{CBFD1F7C-BBFB-4405-B483-5C4765D42E23}] => C:\Program Files (x86)\Steam\steamapps\common\MelodysEscape\MelodysEscape.exe
FirewallRules: [{3A869815-1212-45D4-9D2D-9AA2F9ABBE5A}] => C:\Program Files (x86)\Steam\steamapps\common\METAL GEAR RISING REVENGEANCE\METAL GEAR RISING REVENGEANCE.exe
FirewallRules: [{AADCC912-B087-45A3-B087-3CD064326216}] => C:\Program Files (x86)\Steam\steamapps\common\METAL GEAR RISING REVENGEANCE\METAL GEAR RISING REVENGEANCE.exe
FirewallRules: [{2B4825F4-408D-4AB6-8B23-33909203FCF4}] => C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{7EB63EB5-1CF5-4881-ACA7-5E2D1D066171}] => C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{A8CD48B4-21D7-4697-A058-4F79BBF963FB}] => C:\Program Files (x86)\Steam\steamapps\common\ArcheBlade\Binaries\Win32\Archeblade.exe
FirewallRules: [{5C14C959-3ED1-4A30-9A59-42C4DD1B717C}] => C:\Program Files (x86)\Steam\steamapps\common\ArcheBlade\Binaries\Win32\Archeblade.exe
FirewallRules: [TCP Query User{3630E24F-E6F8-4CB1-9A59-88AB59965CC0}C:\program files (x86)\hearthstone\hearthstone.exe] => C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{74F39530-9606-4973-B494-966E98F7282E}C:\program files (x86)\hearthstone\hearthstone.exe] => C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [{EC8031FF-0FBA-4356-A349-3721AB753BEC}] => C:\Program Files (x86)\Steam\steamapps\common\firstassault\Shipping\GAME.exe
FirewallRules: [{E4409F3B-2A26-4C8F-86C8-38F1EE625014}] => C:\Program Files (x86)\Steam\steamapps\common\firstassault\Shipping\GAME.exe
FirewallRules: [TCP Query User{561E25DD-1E58-47A4-810B-2A17B5016086}C:\users\henselmann\appdata\local\akamai\netsession_win.exe] => C:\users\henselmann\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{7DB71C7A-EC90-40FF-BF06-E801F77F2F02}C:\users\henselmann\appdata\local\akamai\netsession_win.exe] => C:\users\henselmann\appdata\local\akamai\netsession_win.exe
FirewallRules: [{A9BACE0D-6103-400C-98EE-6AA7A1CF5611}] => C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{530CF341-1046-404E-A902-6F308DE0B8C1}] => C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{721D84BD-1079-4FC3-82D2-2608DC83589B}] => C:\Program Files (x86)\GameforgeLive\gfl_client.exe
FirewallRules: [{27875A94-7829-476F-BC81-CB37A09E0B3E}] => C:\Nexon\Vindictus EU\en-EU\NMService.exe
FirewallRules: [{4F628093-382A-49E0-9E93-A91B0FD7973B}] => C:\Nexon\Vindictus EU\en-EU\NMService.exe
FirewallRules: [{85A4399C-87F0-4834-9594-76143F328980}] => D:\SteamLibrary\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe
FirewallRules: [{8BF46A5A-B075-45EA-95BC-8BB637423A2D}] => D:\SteamLibrary\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe
FirewallRules: [TCP Query User{28D9C26A-55B2-46F2-AE19-AEDDFFE4BE06}C:\users\henselmann\appdata\local\akamai\netsession_win.exe] => C:\users\henselmann\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{4CFE441A-8908-4057-8242-56CE80B6D9F7}C:\users\henselmann\appdata\local\akamai\netsession_win.exe] => C:\users\henselmann\appdata\local\akamai\netsession_win.exe
FirewallRules: [{C121A03C-2844-43E8-A7A5-2D24C43C644A}] => D:\SteamLibrary\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe
FirewallRules: [{4C843A58-92EE-4C2E-8317-EEE255475D23}] => D:\SteamLibrary\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe
FirewallRules: [{A547D236-CAE0-4BA4-8EE7-DD572F75D6EE}] => C:\Users\Henselmann\Downloads\bin\BlackDesert32.exe
FirewallRules: [{EBAC73D0-7BBD-4950-8F9B-C740E180B60D}] => C:\Users\Henselmann\Downloads\bin64\BlackDesert64.exe
FirewallRules: [{10C7C3EC-1AA0-4C17-9D63-CEB53AB85662}] => C:\Users\Henselmann\Downloads\BlackDesert_Launcher.exe
FirewallRules: [{62940371-2902-4D86-A26F-2B29FE71B751}] => C:\Users\Henselmann\Downloads\BlackDesert_Downloader.exe
FirewallRules: [{8D00E89F-64C2-4842-AA26-D95A0B16DA18}] => %ProgramFiles%\Zune\Zune.exe
FirewallRules: [{1407B8BF-F9B2-4609-8368-A576522B4FA9}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{2B776481-A9E4-4BF1-984E-7CF03F83857A}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{62ABD600-A976-4823-8B7F-E65784B7F4C8}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{93A99CF4-4353-4A9A-A415-4975C776E7E5}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{9BE63206-4F48-43E6-9B41-C87703E1DDC4}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{48484955-A33F-4C22-997A-E5103467B372}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{2373A42C-CE1F-4854-B9F0-10C5BA9FB2C7}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{5A335A4D-D463-44B0-9D14-9301378EE5FC}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{095367D4-1A5B-4D82-A785-CCA6EE7AAF82}] => D:\Gameforge\DEU_deu\Elsword\data\x2.exe
FirewallRules: [{7666EA8C-6FBD-497B-A4C1-C2641BF02B7B}] => D:\Gameforge\DEU_deu\Elsword\data\x2.exe
FirewallRules: [{10404BD8-04A3-4D38-A8CE-D9290A94537D}] => C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe
FirewallRules: [{A25E264A-7F0F-4DCE-B35E-68841122531E}] => C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe
FirewallRules: [{6CD6C2FD-BEBC-479C-B4C6-5F3E968E5345}] => D:\SteamLibrary\steamapps\common\GOD EATER RESURRECTION\GER.exe
FirewallRules: [{E59D8D82-98C0-4AAC-A2FE-F2FC808DAF1E}] => D:\SteamLibrary\steamapps\common\GOD EATER RESURRECTION\GER.exe
FirewallRules: [TCP Query User{915F5371-B0FD-48D5-B08C-48676C27C85E}D:\gameforge\deu_deu\tera\tera-launcher.exe] => D:\gameforge\deu_deu\tera\tera-launcher.exe
FirewallRules: [UDP Query User{E4192CCA-2536-4E84-8387-02BBD6B34B4F}D:\gameforge\deu_deu\tera\tera-launcher.exe] => D:\gameforge\deu_deu\tera\tera-launcher.exe
FirewallRules: [TCP Query User{5673D191-6E89-47E5-A523-B01E56A12EFE}D:\black desert\bin64\blackdesert64.exe] => D:\black desert\bin64\blackdesert64.exe
FirewallRules: [UDP Query User{A12F0534-44D8-4A4E-B97F-BD680E9B1848}D:\black desert\bin64\blackdesert64.exe] => D:\black desert\bin64\blackdesert64.exe
FirewallRules: [TCP Query User{488FF65C-D5B5-4C52-B31F-8F478CC791A3}D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe] => D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [UDP Query User{4C7B9974-3AC5-4C9F-98F0-07C44EFC37F3}D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe] => D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [{3F456006-F657-48E0-975E-61F64B5E8865}] => D:\SteamLibrary\steamapps\common\Shadowverse\Shadowverse.exe
FirewallRules: [{226993B5-1267-4771-8EF4-C6B3E646D993}] => D:\SteamLibrary\steamapps\common\Shadowverse\Shadowverse.exe
FirewallRules: [{5CCB0AE5-8B3B-4D03-BB53-6CD6395006F5}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{0FC46330-C5DC-4686-9B8D-ABD276748B6C}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{65FBF860-A52D-4AE3-94D5-28AB63C101D1}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{26A3C780-1A16-4FEF-8363-1102E5E0A0D1}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{1487859B-3896-4A73-A4D4-56A58BB2E151}] => D:\SteamLibrary\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{D3F4C190-771B-4275-85FB-6B13E1A3CD31}] => D:\SteamLibrary\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [{6969D4B7-4B62-46F8-9119-5653F7156FDE}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{5539CECA-DF1E-4A1E-834D-763043484F5B}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{391F473C-6125-42D8-AB30-60CFB4A99F8A}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{3629EE8D-AE32-42F0-AB92-B75F5FEB1143}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{EA750E24-914F-4194-9F5F-2478FA74E74F}] => D:\SteamLibrary\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{04E083C1-5609-4B55-AA74-52F1E77991E4}] => D:\SteamLibrary\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [TCP Query User{3CD26ACF-12EA-4431-908F-B4B7B9B58BCE}D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe] => D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{69BA4474-0A01-4D5C-8F25-9BB0083C0FB1}D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe] => D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe
FirewallRules: [{BDAA294F-A5D8-4C9E-A3F2-025136721058}] => D:\SteamLibrary\steamapps\common\AirMech\AirMech.exe
FirewallRules: [{4459E74B-3F02-4411-8AEA-6DAD77F49008}] => D:\SteamLibrary\steamapps\common\AirMech\AirMech.exe
FirewallRules: [{397C14B3-3C45-4BCF-A2B3-C11C8A494EA7}] => D:\SWTOR\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{825EFA01-6B1C-40F0-ABDF-8842711C5E56}] => D:\SWTOR\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{3E21308B-59E3-4114-BCCD-C86EBB10D6F3}] => D:\SWTOR\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{BE34C4EB-ED71-4E2E-ACA7-EF41C57388EB}] => D:\SWTOR\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{D7747FEC-2B93-4428-8261-E7A7846DA098}] => D:\SteamLibrary\steamapps\common\Storm of Spears\Storm of Spears.exe
FirewallRules: [{9CC219F5-1817-4CAE-858C-AE4E95B2044F}] => D:\SteamLibrary\steamapps\common\Storm of Spears\Storm of Spears.exe
FirewallRules: [TCP Query User{DCB81F3C-3596-4BF6-92B1-C270B073DAD9}C:\program files (x86)\roccat\power-grid\roccatpowergrid.exe] => C:\program files (x86)\roccat\power-grid\roccatpowergrid.exe
FirewallRules: [UDP Query User{8C5218B9-42C8-4C44-A374-C7668602744A}C:\program files (x86)\roccat\power-grid\roccatpowergrid.exe] => C:\program files (x86)\roccat\power-grid\roccatpowergrid.exe
FirewallRules: [{FF71E6F7-5EF2-4F98-A6C4-76F6D2B84C4F}] => C:\Program Files (x86)\Steam\steamapps\common\firstassault\Shipping\nxsteam.exe
FirewallRules: [{AE1E05B6-134B-4222-88E3-AFAE78761E63}] => C:\Program Files (x86)\Steam\steamapps\common\firstassault\Shipping\nxsteam.exe
FirewallRules: [{162F50A2-BC1A-4557-B7FD-F6CB367C6B7F}] => C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{E3A28816-EC62-494E-90FF-858E7ADC3AF5}] => C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E031CA45-554A-4094-8BC9-DB6AB2F7FB62}] => C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{91EADB84-6E92-473E-99C3-244A08422808}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{F8CC9070-DCB4-4AAE-A8DF-877B1749960E}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{59F9F9BE-0C78-47E7-BE88-313E7D73D6FC}] => D:\iTunes\iTunes.exe
FirewallRules: [{54FAC5CA-967B-461F-AD89-288D86EE8C1F}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{EE207509-480E-45D8-B28B-16FF71D3609D}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{E87A1080-040C-438C-B219-59016CED824A}] => D:\SteamLibrary\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{25867A8F-B473-406A-8C60-B47FAB8F5B20}] => D:\SteamLibrary\steamapps\common\Path of Exile\PathOfExileSteam.exe

==================== Wiederherstellungspunkte =========================


==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (01/17/2017 12:24:43 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm mbar.exe, Version 1.9.3.1001 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: e08

Startzeit: 01d2704f720e8dab

Beendigungszeit: 39429

Anwendungspfad: C:\Users\Henselmann\Desktop\mbar\mbar.exe

Berichts-ID: dc89e865-dc42-11e6-9688-1c1b0d61086e

Vollständiger Name des fehlerhaften Pakets: 

Auf das fehlerhafte Paket bezogene Anwendungs-ID:

Error: (01/17/2017 12:21:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SDUpdSvc.exe, Version: 2.5.44.79, Zeitstempel: 0x57e24e33
Name des fehlerhaften Moduls: rtl150.bpl, Version: 15.0.3953.35171, Zeitstempel: 0x4cca139f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000a116
ID des fehlerhaften Prozesses: 0x91c
Startzeit der fehlerhaften Anwendung: 0x01d26f63e52ac21a
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
Pfad des fehlerhaften Moduls: C:\Program Files (x86)\Spybot - Search & Destroy 2\rtl150.bpl
Berichtskennung: 3a9db971-7ad1-43aa-b467-91c4d0fe1bd8
Vollständiger Name des fehlerhaften Pakets: 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (01/16/2017 10:36:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: x2.exe, Version: 0.0.0.0, Zeitstempel: 0x585029de
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.479, Zeitstempel: 0x58256ca0
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0002a5d0
ID des fehlerhaften Prozesses: 0x3078
Startzeit der fehlerhaften Anwendung: 0x01d2702e81db0bdb
Pfad der fehlerhaften Anwendung: d:\gameforge\deu_deu\elsword\data\x2.exe
Pfad des fehlerhaften Moduls: C:\Windows\SYSTEM32\ntdll.dll
Berichtskennung: ab8607a9-d1b4-421c-82d2-1a1be710a1a8
Vollständiger Name des fehlerhaften Pakets: 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   23 D.F.8.3.9.6.D.2.7.1.C.A.9.1.4.6.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-BPA0M7P.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.114:5353   25 D.F.8.3.9.6.D.2.7.1.C.A.9.1.4.6.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-BPA0M7P-2.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   23 1.4.A.D.5.0.1.A.5.2.F.B.2.3.8.3.3.C.4.D.9.7.C.8.F.6.0.0.3.0.0.2.ip6.arpa. PTR DESKTOP-BPA0M7P.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.114:5353   25 1.4.A.D.5.0.1.A.5.2.F.B.2.3.8.3.3.C.4.D.9.7.C.8.F.6.0.0.3.0.0.2.ip6.arpa. PTR DESKTOP-BPA0M7P-2.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   23 D.F.8.3.9.6.D.2.7.1.C.A.9.1.4.6.3.C.4.D.9.7.C.8.F.6.0.0.3.0.0.2.ip6.arpa. PTR DESKTOP-BPA0M7P.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.114:5353   25 D.F.8.3.9.6.D.2.7.1.C.A.9.1.4.6.3.C.4.D.9.7.C.8.F.6.0.0.3.0.0.2.ip6.arpa. PTR DESKTOP-BPA0M7P-2.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   23 114.2.168.192.in-addr.arpa. PTR DESKTOP-BPA0M7P.local.


Systemfehler:
=============
Error: (01/17/2017 12:24:11 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (01/16/2017 10:36:04 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\Lokaler Dienst" (SID: S-1-5-19) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{3185A766-B338-11E4-A71E-12E3F512A338}
 und der APPID 
{7006698D-2974-4091-A424-85DD0B909E23}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (01/16/2017 04:47:26 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (01/16/2017 04:15:34 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (01/16/2017 04:14:56 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (01/16/2017 02:24:06 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (01/15/2017 10:03:34 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (01/15/2017 08:31:39 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
 und der APPID 
{F72671A9-012C-4725-9D2F-2A4D32D65169}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (01/15/2017 08:16:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "IOMap" wurde aufgrund folgenden Fehlers nicht gestartet: 
Das System kann die angegebene Datei nicht finden.

Error: (01/15/2017 08:16:14 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.


CodeIntegrity:
===================================
  Date: 2017-01-15 02:20:09.788
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-15 01:27:39.432
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-15 01:27:33.626
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-14 19:40:03.477
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-02 17:21:56.445
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-01 23:08:43.715
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2016-12-31 14:20:02.290
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2016-12-31 14:20:02.128
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i5-6600K CPU @ 3.50GHz
Prozentuale Nutzung des RAM: 54%
Installierter physikalischer RAM: 8144.44 MB
Verfügbarer physikalischer RAM: 3696.06 MB
Summe virtueller Speicher: 11856.44 MB
Verfügbarer virtueller Speicher: 5059.95 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:237.92 GB) (Free:44.55 GB) NTFS
Drive d: () (Fixed) (Total:1863 GB) (Free:1646.22 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==================== Ende von Addition.txt ============================
         
nochmals vielen dank dass ihr euch meinem problem annehmt ...
und entschuldigung wegen den 35000 textzeichen :/
LG Glaringsoul

Alt 17.01.2017, 14:04   #7
burningice
/// Malwareteam
 
Bestehen reste nach trojaner infektion? - Standard

Bestehen reste nach trojaner infektion?



Schritt 1
Lade dir folgendes Programm herunter und installiere es: Malwarebytes Anti-Malware
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke links auf Einstellungen und wechsle zum Tab Schutz.
  • Unter Scan-Optionen aktiviere die Option Nach Rootkits suchen
  • Klicke im Anschluss auf Scan, wähle den Bedrohungs-Scan aus und klicke auf Scan starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Ausgewählte Elemente in die Quarantäne verschieben.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM nach dem Neustart, klicke auf Berichte.
  • Wähle den neuesten Scan-Bericht aus, klicke auf Bericht anzeigen und dann auf Export.
  • Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.

Schritt 2
Downloade Dir bitte AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser.
  • Starte die adwcleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Werkzeuge > Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel
    • "Prefetch" Dateien
    • Proxy
    • Winsock
    • Internet Explorer Richtlinien
    • Chrome Richtlinien
  • Bestätige die Auswahl mit Ok.
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen (auch dann wenn AdwCleaner sagt, dass nichts gefunden wurde) und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Schritt 3
Bitte starte wieder FRST, setze den Haken bei Addition und drücke auf Untersuchen. Poste bitte wieder die beiden Textdateien, die so entstehen.

Bitte poste in deiner nächsten Antwort also:
  • Logfile von AdwCleaner
  • Logfile von Malwarebytes
  • Frst.txt
  • Addition.txt
__________________
Mfg,
Rafael

~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~

Unterstütze uns mit einer Spende
......... Lob, Kritik oder Wünsche .........
.......... Folge uns auf Facebook ..........

Alt 17.01.2017, 15:22   #8
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

Ra:2



AdwCleaner Logfile:
Code:
ATTFilter
# AdwCleaner v6.042 - Bericht erstellt am 17/01/2017 um 15:12:57
# Aktualisiert am 06/01/2017 von Malwarebytes
# Datenbank : 2017-01-17.1 [Server]
# Betriebssystem : Windows 10 Home  (X64)
# Benutzername : Henselmann - DESKTOP-BPA0M7P
# Gestartet von : C:\Users\Henselmann\Desktop\AdwCleaner_6.042.exe
# Modus: Löschen
# Unterstützung : https://www.malwarebytes.com/support



***** [ Dienste ] *****



***** [ Ordner ] *****

[-] Ordner gelöscht: C:\ProgramData\vCore
[-] Ordner gelöscht: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoBox
[-] Ordner gelöscht: C:\Program Files (x86)\adblocker


***** [ Dateien ] *****

[-] Datei gelöscht: C:\END
[-] Datei gelöscht: C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\invalidprefs.js


***** [ DLL ] *****



***** [ WMI ] *****



***** [ Verknüpfungen ] *****



***** [ Aufgabenplanung ] *****

[-] Aufgabe gelöscht: Microsoft\Windows\Media Center\VCore


***** [ Registrierungsdatenbank ] *****

[-] Daten  wiederhergestellt: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\Software\Microsoft\Internet Explorer\Main [Start Page] 
[-] Daten  wiederhergestellt: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main [Start Page] 
[-] Daten  wiederhergestellt: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01152017203547537\Software\Microsoft\Internet Explorer\Main [Start Page] 
[-] Daten  wiederhergestellt: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01172017143030459\Software\Microsoft\Internet Explorer\Main [Start Page] 
[-] Daten  wiederhergestellt: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] 
[-] Daten  wiederhergestellt: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] 


***** [ Browser ] *****



*************************

:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
:: "Prefetch" Dateien gelöscht
:: Proxy Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [2260 Bytes] - [17/01/2017 15:12:57]
C:\AdwCleaner\AdwCleaner[S0].txt - [2538 Bytes] - [17/01/2017 14:35:52]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [2406 Bytes] ##########
         
--- --- ---


Code:
ATTFilter
Malwarebytes
www.malwarebytes.com

-Protokolldetails-
Scan-Datum: 17.01.17
Scan-Zeit: 14:30
Protokolldatei: Mbam.txt
Administrator: Ja

-Softwaredaten-
Version: 3.0.5.1299
Komponentenversion: 1.0.43
Version des Aktualisierungspakets: 1.0.1036
Lizenz: Kostenlos

-Systemdaten-
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: DESKTOP-BPA0M7P\Henselmann

-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Ergebnis: Abgeschlossen
Gescannte Objekte: 404007
Abgelaufene Zeit: 3 Min., 31 Sek.

-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)

Modul: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)

Registrierungswert: 0
(keine bösartigen Elemente erkannt)

Daten-Stream: 0
(keine bösartigen Elemente erkannt)

Ordner: 0
(keine bösartigen Elemente erkannt)

Datei: 0
(keine bösartigen Elemente erkannt)

Physischer Sektor: 0
(keine bösartigen Elemente erkannt)


(end)
         
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 15-01-2017
durchgeführt von Henselmann (Administrator) auf DESKTOP-BPA0M7P (17-01-2017 15:15:09)
Gestartet von C:\Users\Henselmann\Downloads
Geladene Profile: Henselmann (Verfügbare Profile: defaultuser0 & Henselmann)
Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ASLED.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ledcontrolservice.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Corporation) C:\Program Files\Zune\ZuneLauncher.exe
(Apple Inc.) D:\iTunes\iTunesHelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Hammer & Chisel, Inc.) C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hammer & Chisel, Inc.) C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Innkeeper) C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Innkeeper.exe
(Akamai Technologies, Inc.) C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe
(Hammer & Chisel, Inc.) C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe
(Mega Limited) C:\Users\Henselmann\AppData\Local\MEGAsync\MEGAsync.exe
() C:\Program Files (x86)\Drakonia Configurator\hid.exe
() C:\Program Files (x86)\Drakonia Configurator\trayicon.exe
(Curse Inc.) C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Electron\bin\InnkeeperUI-win32-ia32\InnkeeperUI.exe
(SPEEDLINK) C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Monitor.EXE
(Curse Inc.) C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Electron\bin\InnkeeperUI-win32-ia32\InnkeeperUI.exe
(Curse Inc.) C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Electron\bin\InnkeeperUI-win32-ia32\InnkeeperUI.exe
(Curse Inc.) C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Electron\bin\InnkeeperUI-win32-ia32\InnkeeperUI.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
() C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
(Razer, Inc.) C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe
(Razer, Inc.) C:\Users\Henselmann\AppData\Local\Razer\InGameEngine\cache\RzStats.Manager\rzcefrenderprocess.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe

==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8844032 2016-01-27] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [323056 2015-11-04] (Intel Corporation)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2776528 2016-12-14] (Malwarebytes)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-07] (Microsoft Corporation)
HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM\...\Run: [iTunesHelper] => D:\iTunes\iTunesHelper.exe [176440 2016-12-06] (Apple Inc.)
HKLM-x32\...\Run: [GamingMouse] => C:\Program Files (x86)\Drakonia Configurator\hid.exe [248832 2013-10-29] ()
HKLM-x32\...\Run: [ACCUSOR Advanced Gaming Keyboard Driver] => C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Monitor.exe [1972736 2016-10-10] (SPEEDLINK)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2016-11-04] (Razer Inc.)
HKLM-x32\...\Run: [Kraken0502Launcher] => C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe [1599808 2015-08-14] (Razer Inc)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60408 2016-12-16] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [917576 2016-12-06] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2876704 2016-12-20] (Valve Corporation)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Discord] => C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe [64290304 2017-01-04] (Hammer & Chisel, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Innkeeper] => C:\Users\Henselmann\AppData\Local\Innkeeper\Update.exe --processStart Innkeeper.exe --process-start-args="-startup"
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\MountPoints2: {9a23862d-c8f4-11e6-966e-806e6f6e6963} - "E:\UI.exe" 
HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ledcontrolservice.exe [2111488 2016-06-06] (TODO: <Company name>)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
Startup: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2017-01-15]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Henselmann\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
BootExecute: autocheck autochk * sdnclean64.exe

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{98d075b7-ca2a-46d0-8d3d-d8c044d944b5}: [DhcpNameServer] 192.168.2.1
ManualProxies: 

Internet Explorer:
==================
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\Software\Microsoft\Internet Explorer\Main,Start Page = 
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 

FireFox:
========
FF DefaultProfile: wm3io0bs.default
FF ProfilePath: C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default [2017-01-17]
FF Homepage: Mozilla\Firefox\Profiles\wm3io0bs.default -> hxxp://www.google.de/
FF Extension: (Kein Name) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\abs@avira.com [2017-01-01]
FF Extension: (AdBlocker Ultimate) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\adblockultimate@adblockultimate.net.xpi [2017-01-15]
FF Extension: (anonymoX) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\client@anonymox.net.xpi [2016-12-31]
FF Extension: (Ghostery) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\firefox@ghostery.com.xpi [2016-12-31]
FF Extension: (MEGA) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\firefox@mega.co.nz.xpi [2017-01-17]
FF Extension: (uMatrix) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\uMatrix@raymondhill.net.xpi [2017-01-14]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-01-11] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-01-11] ()
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2017-01-02] (Nexon)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-11] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-11] (NVIDIA Corporation)

Chrome: 
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1089592 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [476736 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [476736 2016-12-06] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1490296 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.)
R2 ASLED; C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ASLED.exe [49664 2016-06-14] (TODO: <Company name>) [Datei ist nicht signiert]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [372272 2016-12-16] (Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1445384 2016-10-22] ()
S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2017-01-10] (BitRaider, LLC)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2016-12-09] (Hi-Rez Studios) [Datei ist nicht signiert]
S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [19440 2015-11-04] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4317648 2016-12-14] (Malwarebytes)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [7847256 2016-10-18] (INCA Internet Co., Ltd.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [464440 2017-01-06] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [464440 2017-01-06] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [459832 2016-12-11] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [427064 2017-01-06] (NVIDIA Corporation)
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
S2 NVIDIA Wireless Controller Service; "C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe" [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [151352 2016-12-06] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [153904 2016-12-06] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [78208 2016-12-06] (Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\Windows\System32\Drivers\avusbflt.sys [28272 2016-12-06] (Avira Operations GmbH & Co. KG)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77416 2016-12-14] ()
S3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [102856 2017-01-14] (Malwarebytes)
S3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [43968 2017-01-14] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [250816 2017-01-17] (Malwarebytes)
S3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [91584 2017-01-14] (Malwarebytes)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3f929cc119e3b994\nvlddmkm.sys [14200880 2016-12-12] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [29240 2017-01-06] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47672 2017-01-06] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [59448 2017-01-06] (NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [935168 2015-10-10] (Realtek                                            )
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [137840 2016-09-07] (Razer, Inc.)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
S3 xhunter1; C:\Windows\xhunter1.sys [36808 2017-01-16] (Wellbia.com Co., Ltd.)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
S3 IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-01-17 15:14 - 2017-01-17 15:14 - 00002492 _____ C:\Users\Henselmann\Desktop\AdwCleaner[C0].txt
2017-01-17 14:34 - 2017-01-17 15:12 - 00000000 ____D C:\AdwCleaner
2017-01-17 14:34 - 2017-01-17 14:34 - 00001178 _____ C:\Users\Henselmann\Desktop\Mbam.txt
2017-01-17 14:15 - 2017-01-17 14:34 - 03988944 _____ C:\Users\Henselmann\Desktop\AdwCleaner_6.042.exe
2017-01-17 00:25 - 2017-01-17 00:39 - 00000000 ____D C:\Users\Henselmann\Downloads\mbar
2017-01-17 00:24 - 2017-01-17 00:40 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2017-01-17 00:22 - 2017-01-17 00:22 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Henselmann\Downloads\mbar-1.09.3.1001.exe
2017-01-17 00:22 - 2017-01-17 00:22 - 00000000 ____D C:\Users\Henselmann\Desktop\mbar
2017-01-17 00:21 - 2017-01-17 00:21 - 00000085 _____ C:\Windows\wininit.ini
2017-01-15 16:41 - 2017-01-15 16:41 - 00054680 _____ C:\Users\Henselmann\Desktop\FRST&ADDITION.zip
2017-01-15 16:41 - 2017-01-15 16:41 - 00000000 ____D C:\ProgramData\Estsoft
2017-01-15 16:26 - 2017-01-17 15:15 - 00018472 _____ C:\Users\Henselmann\Downloads\FRST.txt
2017-01-15 16:26 - 2017-01-17 15:15 - 00000000 ____D C:\FRST
2017-01-15 16:25 - 2017-01-15 16:25 - 02419200 _____ (Farbar) C:\Users\Henselmann\Downloads\FRST64.exe
2017-01-15 14:48 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-144851.backup
2017-01-15 14:34 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-143431.backup
2017-01-15 12:09 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-120900.backup
2017-01-15 04:13 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-041311.backup
2017-01-15 02:32 - 2017-01-15 02:32 - 00001144 _____ C:\Users\Henselmann\Desktop\MEGAsync.lnk
2017-01-15 02:32 - 2017-01-15 02:32 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2017-01-15 02:23 - 2017-01-15 02:23 - 00000000 ____D C:\Program Files\Common Files\AV
2017-01-15 02:18 - 2017-01-15 02:18 - 09204168 _____ (Piriform Ltd) C:\Users\Henselmann\Downloads\ccsetup_525.exe
2017-01-15 02:18 - 2017-01-15 02:18 - 00002880 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2017-01-15 02:18 - 2017-01-15 02:18 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2017-01-15 02:18 - 2017-01-15 02:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-01-15 02:18 - 2017-01-15 02:18 - 00000000 ____D C:\Program Files\CCleaner
2017-01-15 02:17 - 2017-01-17 15:13 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2017-01-15 02:17 - 2017-01-17 00:21 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2017-01-15 02:17 - 2017-01-15 02:17 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2017-01-15 02:16 - 2017-01-15 02:16 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Henselmann\Downloads\spybot-2.4.40.exe
2017-01-15 01:28 - 2017-01-15 01:28 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-01-15 01:28 - 2017-01-15 01:28 - 00001220 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-01-15 01:28 - 2017-01-15 01:28 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-01-15 01:28 - 2017-01-15 01:28 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-01-15 01:27 - 2017-01-15 01:27 - 00243720 _____ C:\Users\Henselmann\Downloads\Firefox Setup Stub 50.1.0.exe
2017-01-15 01:19 - 2017-01-15 01:19 - 00001500 _____ C:\Users\Henselmann\Desktop\Overwatch.lnk
2017-01-15 01:19 - 2017-01-15 01:19 - 00001455 _____ C:\Users\Henselmann\Desktop\Hearthstone.lnk
2017-01-15 01:19 - 2017-01-15 01:19 - 00001256 _____ C:\Users\Henselmann\Desktop\SWTOR.lnk
2017-01-15 01:18 - 2017-01-15 01:18 - 00001461 _____ C:\Users\Henselmann\Desktop\Battle.net.lnk
2017-01-15 01:17 - 2017-01-15 01:17 - 00000872 _____ C:\Users\Henselmann\Desktop\Vindictus.lnk
2017-01-15 01:16 - 2017-01-15 01:16 - 00001194 _____ C:\Users\Henselmann\Desktop\Black Desert Online.lnk
2017-01-15 00:54 - 2017-01-15 00:55 - 00000000 ____D C:\Windows\system32\SSL
2017-01-15 00:54 - 2017-01-15 00:54 - 00001410 ___RS C:\ProgramData\Microsoft\Windows\Start Menu\Вlaсk Dеsеrt Online.lnk
2017-01-15 00:54 - 2017-01-15 00:54 - 00001345 ___RS C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Мozilla Firеfoх.lnk
2017-01-15 00:54 - 2017-01-15 00:54 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\SPI
2017-01-14 20:47 - 2017-01-14 20:47 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\JAM Software
2017-01-14 19:56 - 2017-01-14 19:57 - 00000000 ____D C:\Users\Henselmann\Desktop\musik i tunes packover
2017-01-14 19:45 - 2017-01-14 19:45 - 00000000 ____D C:\Users\Henselmann\Desktop\HeavyLoad
2017-01-14 19:41 - 2017-01-14 19:41 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2017-01-14 19:38 - 2017-01-14 19:38 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Temp
2017-01-14 19:21 - 2017-01-14 19:21 - 00000000 ___RD C:\Users\Henselmann\3D Objects
2017-01-14 19:20 - 2017-01-14 19:20 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Apps\2.0
2017-01-14 18:52 - 2017-01-14 19:42 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Apple Computer
2017-01-14 18:52 - 2017-01-14 18:52 - 00001477 _____ C:\Users\Public\Desktop\iTunes.lnk
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Apple Computer
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\ProgramData\Apple Computer
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\Program Files\iPod
2017-01-14 18:37 - 2017-01-14 18:52 - 00000000 ____D C:\Program Files\Common Files\Apple
2017-01-14 18:37 - 2017-01-14 18:37 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Windows\System32\Tasks\Apple
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Apple
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Program Files\Bonjour
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Program Files (x86)\Bonjour
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2017-01-14 18:36 - 2017-01-14 18:37 - 00000000 ____D C:\ProgramData\Apple
2017-01-14 14:40 - 2017-01-14 18:36 - 177044296 _____ (Apple Inc.) C:\Users\Henselmann\Downloads\iTunes6464Setup.exe
2017-01-14 14:39 - 2017-01-14 14:39 - 00000000 ____D C:\Users\Henselmann\Downloads\Gameforge Live
2017-01-13 20:34 - 2017-01-13 20:34 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SWTOR
2017-01-13 20:27 - 2017-01-13 20:27 - 00002642 _____ C:\Users\Public\Desktop\Skype.lnk
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ____D C:\Users\Henselmann\Tracing
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ____D C:\ProgramData\Skype
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-01-13 20:25 - 2017-01-13 20:26 - 01629664 _____ (Skype Technologies S.A.) C:\Users\Henselmann\Downloads\SkypeSetup.exe
2017-01-13 02:03 - 2017-01-13 02:03 - 00605564 _____ C:\Windows\Minidump\011317-5968-01.dmp
2017-01-13 00:02 - 2017-01-17 00:36 - 00000000 ____D C:\Users\Henselmann\Desktop\SDT
2017-01-13 00:01 - 2017-01-13 00:01 - 15032408 _____ (Adobe Systems, Inc.) C:\Users\Henselmann\Downloads\flashplayer_24_sa.exe
2017-01-11 17:36 - 2017-01-11 17:36 - 00000000 ____D C:\Windows\LastGood.Tmp
2017-01-11 17:36 - 2017-01-06 02:10 - 00158264 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2017-01-11 17:36 - 2017-01-06 02:10 - 00126008 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2017-01-11 17:36 - 2017-01-06 02:10 - 00059448 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2017-01-10 19:44 - 2017-01-10 19:44 - 00000000 ____D C:\Users\Public\Documents\BitRaider
2017-01-10 19:44 - 2017-01-10 19:44 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SWTORPerf
2017-01-10 19:44 - 2017-01-10 19:44 - 00000000 ____D C:\ProgramData\BitRaider
2017-01-10 19:41 - 2017-01-10 19:41 - 00000787 ____H C:\Users\Public\Desktop\Star Wars - The Old Republic.lnk
2017-01-10 19:40 - 2017-01-10 19:40 - 29719936 _____ C:\Users\Henselmann\Downloads\SWTOR_setup.exe
2017-01-10 19:18 - 2016-12-21 09:08 - 00245600 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2017-01-10 19:18 - 2016-12-21 09:08 - 00136032 _____ (Microsoft Corporation) C:\Windows\system32\ImplatSetup.dll
2017-01-10 19:18 - 2016-12-21 08:46 - 00624048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2017-01-10 19:18 - 2016-12-21 08:43 - 04130440 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2017-01-10 19:18 - 2016-12-21 08:43 - 01454504 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2017-01-10 19:18 - 2016-12-21 08:43 - 01071736 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 22224480 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 01988560 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 01702392 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 01300600 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2017-01-10 19:18 - 2016-12-21 08:41 - 01600632 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2017-01-10 19:18 - 2016-12-21 08:08 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2017-01-10 19:18 - 2016-12-21 08:06 - 06285312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2017-01-10 19:18 - 2016-12-21 07:59 - 00883712 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2017-01-10 19:18 - 2016-12-21 07:56 - 00936960 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2017-01-10 19:18 - 2016-12-21 07:53 - 04474368 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2017-01-10 19:18 - 2016-12-21 07:51 - 08075776 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2017-01-10 19:18 - 2016-12-21 07:51 - 05611008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2017-01-10 19:18 - 2016-12-21 07:50 - 01490432 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-01-10 19:18 - 2016-12-21 06:59 - 00218976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinesam.dll
2017-01-10 19:18 - 2016-12-21 06:09 - 00263472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2017-01-10 19:18 - 2016-12-21 06:01 - 20969928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-01-10 19:18 - 2016-12-21 05:43 - 00285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2017-01-10 19:18 - 2016-12-21 05:41 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BioFeedback.dll
2017-01-10 19:18 - 2016-12-21 05:40 - 00557568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2017-01-10 19:18 - 2016-12-21 05:40 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2017-01-10 19:18 - 2016-12-21 05:39 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgentUserBroker.exe
2017-01-10 19:18 - 2016-12-21 05:38 - 00866816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll
2017-01-10 19:18 - 2016-12-21 05:30 - 05398016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2017-01-10 19:18 - 2016-12-21 05:26 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVP9DEC.dll
2017-01-10 19:18 - 2016-12-21 05:22 - 01883648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2017-01-10 19:18 - 2016-12-14 06:41 - 01235296 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-01-10 19:18 - 2016-12-14 06:23 - 00404832 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-01-10 19:18 - 2016-12-14 06:21 - 02206496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2017-01-10 19:18 - 2016-12-14 05:48 - 01631232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2017-01-10 19:18 - 2016-12-14 05:38 - 17188864 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2017-01-10 19:18 - 2016-12-14 05:38 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.CredDialogController.dll
2017-01-10 19:18 - 2016-12-14 05:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2017-01-10 19:18 - 2016-12-14 05:35 - 00755712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-01-10 19:18 - 2016-12-14 05:26 - 00932864 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-01-10 19:18 - 2016-12-14 05:26 - 00869888 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-01-10 19:18 - 2016-12-14 05:24 - 01005568 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2017-01-10 19:18 - 2016-12-14 05:24 - 00673792 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2017-01-10 19:18 - 2016-12-14 05:23 - 03134976 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2017-01-10 19:18 - 2016-12-14 05:22 - 02317824 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-01-10 19:17 - 2016-12-21 09:04 - 07816032 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-01-10 19:17 - 2016-12-21 08:49 - 00328008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2017-01-10 19:17 - 2016-12-21 08:43 - 00092512 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2017-01-10 19:17 - 2016-12-21 08:42 - 00241504 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
2017-01-10 19:17 - 2016-12-21 08:37 - 00455520 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2017-01-10 19:17 - 2016-12-21 08:15 - 22563840 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2017-01-10 19:17 - 2016-12-21 08:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2017-01-10 19:17 - 2016-12-21 08:13 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2017-01-10 19:17 - 2016-12-21 08:12 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2017-01-10 19:17 - 2016-12-21 08:10 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2017-01-10 19:17 - 2016-12-21 08:09 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\OneBackupHandler.dll
2017-01-10 19:17 - 2016-12-21 08:09 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 01292288 _____ (Microsoft Corporation) C:\Windows\system32\MSVPXENC.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\DeveloperOptionsSettingsHandlers.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2017-01-10 19:17 - 2016-12-21 08:07 - 00748544 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2017-01-10 19:17 - 2016-12-21 08:06 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll
2017-01-10 19:17 - 2016-12-21 08:06 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe
2017-01-10 19:17 - 2016-12-21 08:06 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-01-10 19:17 - 2016-12-21 08:05 - 00425984 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
2017-01-10 19:17 - 2016-12-21 08:05 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\indexeddbserver.dll
2017-01-10 19:17 - 2016-12-21 08:05 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2017-01-10 19:17 - 2016-12-21 08:01 - 09131008 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2017-01-10 19:17 - 2016-12-21 08:00 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2017-01-10 19:17 - 2016-12-21 07:59 - 01908224 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2017-01-10 19:17 - 2016-12-21 07:58 - 23678464 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-01-10 19:17 - 2016-12-21 07:57 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\fhsettingsprovider.dll
2017-01-10 19:17 - 2016-12-21 07:56 - 00947712 _____ (Microsoft Corporation) C:\Windows\system32\MSVP9DEC.dll
2017-01-10 19:17 - 2016-12-21 07:55 - 08129536 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2017-01-10 19:17 - 2016-12-21 07:55 - 04749312 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2017-01-10 19:17 - 2016-12-21 07:54 - 05511680 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2017-01-10 19:17 - 2016-12-21 07:53 - 06664192 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2017-01-10 19:17 - 2016-12-21 07:53 - 01692672 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2017-01-10 19:17 - 2016-12-21 07:51 - 02275840 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2017-01-10 19:17 - 2016-12-21 07:49 - 04149248 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2017-01-10 19:17 - 2016-12-21 07:49 - 02691072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2017-01-10 19:17 - 2016-12-21 07:49 - 01062912 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2017-01-10 19:17 - 2016-12-21 07:47 - 01121280 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 03892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01852720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01360464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01277344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01201872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 00980832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2017-01-10 19:17 - 2016-12-21 05:46 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2017-01-10 19:17 - 2016-12-21 05:41 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-01-10 19:17 - 2016-12-21 05:40 - 00318976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2017-01-10 19:17 - 2016-12-21 05:40 - 00237056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncSettings.dll
2017-01-10 19:17 - 2016-12-21 05:39 - 01300480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll
2017-01-10 19:17 - 2016-12-21 05:35 - 04612608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2017-01-10 19:17 - 2016-12-21 05:35 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\indexeddbserver.dll
2017-01-10 19:17 - 2016-12-21 05:34 - 07626752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-01-10 19:17 - 2016-12-21 05:33 - 19413504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2017-01-10 19:17 - 2016-12-21 05:32 - 19417600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-01-10 19:17 - 2016-12-21 05:30 - 01255936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2017-01-10 19:17 - 2016-12-21 05:27 - 00640000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2017-01-10 19:17 - 2016-12-21 05:25 - 07469056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2017-01-10 19:17 - 2016-12-21 05:25 - 06474752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe
2017-01-10 19:17 - 2016-12-21 05:24 - 06044160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2017-01-10 19:17 - 2016-12-21 05:24 - 05061120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2017-01-10 19:17 - 2016-12-21 05:24 - 03733504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2017-01-10 19:17 - 2016-12-21 05:24 - 00886272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2017-01-10 19:17 - 2016-12-21 05:22 - 00860672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2017-01-10 19:17 - 2016-12-14 06:41 - 00590960 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2017-01-10 19:17 - 2016-12-14 06:34 - 02482280 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2017-01-10 19:17 - 2016-12-14 06:33 - 01356864 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2017-01-10 19:17 - 2016-12-14 06:19 - 00584544 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2017-01-10 19:17 - 2016-12-14 06:18 - 00715104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2017-01-10 19:17 - 2016-12-14 06:18 - 00335712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2017-01-10 19:17 - 2016-12-14 06:17 - 00319288 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2017-01-10 19:17 - 2016-12-14 06:14 - 01694712 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2017-01-10 19:17 - 2016-12-14 06:14 - 00418952 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2017-01-10 19:17 - 2016-12-14 06:14 - 00089416 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2017-01-10 19:17 - 2016-12-14 06:08 - 00341344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-01-10 19:17 - 2016-12-14 06:06 - 00509792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2017-01-10 19:17 - 2016-12-14 06:01 - 01557808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2017-01-10 19:17 - 2016-12-14 06:01 - 00382784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2017-01-10 19:17 - 2016-12-14 06:01 - 00076984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2017-01-10 19:17 - 2016-12-14 05:46 - 01631232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-01-10 19:17 - 2016-12-14 05:46 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-01-10 19:17 - 2016-12-14 05:45 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2017-01-10 19:17 - 2016-12-14 05:43 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2017-01-10 19:17 - 2016-12-14 05:41 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-01-10 19:17 - 2016-12-14 05:40 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudBackupSettings.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-10 19:17 - 2016-12-14 05:39 - 00837632 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2017-01-10 19:17 - 2016-12-14 05:39 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2017-01-10 19:17 - 2016-12-14 05:39 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.CredDialogController.dll
2017-01-10 19:17 - 2016-12-14 05:38 - 13869056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2017-01-10 19:17 - 2016-12-14 05:38 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\CloudBackupSettings.dll
2017-01-10 19:17 - 2016-12-14 05:36 - 01002496 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2017-01-10 19:17 - 2016-12-14 05:36 - 00539648 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2017-01-10 19:17 - 2016-12-14 05:36 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2017-01-10 19:17 - 2016-12-14 05:35 - 00712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-01-10 19:17 - 2016-12-14 05:35 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2017-01-10 19:17 - 2016-12-14 05:35 - 00553984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2017-01-10 19:17 - 2016-12-14 05:32 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3D12.dll
2017-01-10 19:17 - 2016-12-14 05:32 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2017-01-10 19:17 - 2016-12-14 05:25 - 02009600 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll
2017-01-10 19:17 - 2016-12-14 05:23 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2017-01-10 19:17 - 2016-12-14 05:22 - 02998272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2017-01-10 19:17 - 2016-12-14 05:22 - 02748416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2017-01-10 19:17 - 2016-12-14 05:22 - 01513472 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2017-01-10 19:17 - 2016-12-14 05:22 - 00707584 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2017-01-10 19:17 - 2016-12-14 05:22 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2017-01-10 19:17 - 2016-12-14 05:21 - 03616768 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2017-01-10 19:17 - 2016-11-02 13:01 - 00484584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2017-01-10 19:17 - 2016-11-02 12:00 - 00534096 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2017-01-10 19:17 - 2016-11-02 11:28 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2017-01-10 19:17 - 2016-11-02 11:22 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2017-01-10 19:17 - 2016-11-02 11:21 - 00942080 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2017-01-10 19:17 - 2016-08-02 05:30 - 00822784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2017-01-09 18:49 - 2017-01-09 18:49 - 00000718 _____ C:\Users\Henselmann\Desktop\S4 League.lnk
2017-01-09 18:35 - 2017-01-09 18:35 - 00578584 _____ (Aeria Games & Entertainment) C:\Users\Henselmann\Downloads\s4league_us_downloader.exe
2017-01-09 18:35 - 2017-01-09 18:35 - 00000000 ____D C:\AeriaGames
2017-01-08 04:12 - 2017-01-14 20:47 - 00007597 _____ C:\Users\Henselmann\AppData\Local\Resmon.ResmonCfg
2017-01-07 23:26 - 2017-01-07 23:26 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Carbon
2017-01-07 18:12 - 2017-01-17 15:13 - 00000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2017-01-07 18:12 - 2017-01-07 18:16 - 00000000 ____D C:\ProgramData\Hi-Rez Studios
2017-01-07 18:12 - 2017-01-07 18:12 - 00000000 ____D C:\Users\Henselmann\AppData\Local\HirezLauncherUI
2017-01-07 18:12 - 2017-01-07 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2017-01-07 17:50 - 2017-01-07 18:11 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Warframe
2017-01-07 15:27 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Podcasts
2017-01-07 15:00 - 2017-01-07 15:00 - 13049800 _____ (MEGA Limited) C:\Users\Henselmann\Downloads\MEGAsyncSetup.exe
2017-01-07 13:42 - 2017-01-07 21:04 - 00001036 _____ C:\Users\Henselmann\Desktop\osu!.lnk
2017-01-07 13:42 - 2017-01-07 13:42 - 00001028 _____ C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\osu!.lnk
2017-01-07 13:41 - 2017-01-07 21:10 - 00000000 ____D C:\Users\Henselmann\AppData\Local\osu!
2017-01-07 13:41 - 2017-01-07 13:41 - 04470976 _____ (ppy) C:\Users\Henselmann\Downloads\osu!install.exe
2017-01-07 12:35 - 2017-01-07 12:35 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Ndemic Creations
2017-01-06 13:27 - 2017-01-06 13:27 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Cygames
2017-01-06 01:29 - 2017-01-06 01:32 - 00000000 ____D C:\Users\Henselmann\Powersaves3DS
2017-01-06 01:29 - 2017-01-06 01:29 - 04599725 _____ C:\Users\Henselmann\Downloads\powersaves3ds-software-145.zip
2017-01-06 01:29 - 2017-01-06 01:29 - 00000000 ____D C:\Users\Henselmann\Desktop\powersaves3ds-software-145
2017-01-06 01:29 - 2017-01-06 01:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Action Replay PowerSaves 3DS
2017-01-06 01:29 - 2017-01-06 01:29 - 00000000 ____D C:\Program Files (x86)\Action Replay PowerSaves 3DS
2017-01-06 01:28 - 2017-01-06 01:28 - 00049498 _____ C:\Users\Henselmann\Downloads\myuninst.zip
2017-01-06 01:28 - 2017-01-06 01:28 - 00000000 ____D C:\Users\Henselmann\Desktop\myuninst
2017-01-06 01:22 - 2017-01-06 01:22 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Sony Online Entertainment
2017-01-06 00:39 - 2017-01-06 00:43 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Daybreak Game Company
2017-01-06 00:39 - 2017-01-06 00:39 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SCE
2017-01-06 00:39 - 2017-01-06 00:39 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Daybreak Game Company
2017-01-05 00:36 - 2017-01-07 15:26 - 00000000 ____D C:\Users\Henselmann\Documents\MEGAsync Downloads
2017-01-05 00:34 - 2017-01-05 00:34 - 00000000 ____D C:\Users\Henselmann\Documents\MEGAsync
2017-01-05 00:33 - 2017-01-15 02:32 - 00000000 ____D C:\Users\Henselmann\AppData\Local\MEGAsync
2017-01-05 00:33 - 2017-01-05 00:33 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Mega Limited
2017-01-05 00:29 - 2017-01-05 00:29 - 00250816 _____ (Malwarebytes) C:\Windows\system32\Drivers\3CC91E54.sys
2017-01-04 19:28 - 2017-01-16 18:22 - 00036808 _____ (Wellbia.com Co., Ltd.) C:\Windows\xhunter1.sys
2017-01-04 14:15 - 2017-01-04 14:15 - 00001068 _____ C:\Users\Public\Desktop\TERA.lnk
2017-01-04 14:15 - 2017-01-04 14:15 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\TERA
2017-01-04 14:15 - 2017-01-04 14:15 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Solid State Networks
2017-01-04 12:52 - 2017-01-04 12:52 - 00000000 ____D C:\Users\Henselmann\AppData\Local\BANDAI NAMCO GAMES
2017-01-04 03:59 - 2017-01-13 02:03 - 1407543786 _____ C:\Windows\MEMORY.DMP
2017-01-04 03:59 - 2017-01-13 02:03 - 00000000 ____D C:\Windows\Minidump
2017-01-04 03:59 - 2017-01-04 03:59 - 00611220 _____ C:\Windows\Minidump\010417-4578-01.dmp
2017-01-04 02:51 - 2017-01-04 02:51 - 00000000 ____D C:\Users\Henselmann\Desktop\saveedit_r256
2017-01-04 02:45 - 2017-01-04 02:51 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\ESTsoft
2017-01-04 02:45 - 2017-01-04 02:45 - 00001156 _____ C:\Users\Public\Desktop\ALZip.lnk
2017-01-04 02:45 - 2017-01-04 02:45 - 00000000 ____D C:\Users\Henselmann\AppData\Local\ECRSC
2017-01-04 02:45 - 2017-01-04 02:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESTsoft
2017-01-04 02:45 - 2017-01-04 02:45 - 00000000 ____D C:\Program Files (x86)\ESTsoft
2017-01-04 02:44 - 2017-01-04 02:44 - 00000000 ____D C:\Program Files\Common Files\INCA Shared
2017-01-04 02:44 - 2016-10-18 11:13 - 07847256 _____ (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\GameMon.des
2017-01-04 02:44 - 2004-12-30 13:43 - 00004682 _____ (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\npptNT2.sys
2017-01-04 02:44 - 2003-07-15 22:17 - 00005174 _____ C:\Windows\SysWOW64\nppt9x.vxd
2017-01-04 02:10 - 2017-01-16 20:26 - 00001062 _____ C:\Users\Public\Desktop\Elsword.lnk
2017-01-03 19:00 - 2017-01-03 19:01 - 00000000 ____D C:\Program Files\Zune
2017-01-03 19:00 - 2017-01-03 19:00 - 00000996 _____ C:\Users\Public\Desktop\Zune.lnk
2017-01-03 19:00 - 2017-01-03 19:00 - 00000000 ____D C:\Windows\PCHEALTH
2017-01-03 19:00 - 2017-01-03 19:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zune
2017-01-03 18:32 - 2017-01-03 18:39 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\MelodyEscape
2017-01-03 18:32 - 2017-01-03 18:32 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA
2017-01-03 17:54 - 2017-01-16 18:50 - 00000000 ____D C:\Users\Henselmann\Documents\Black Desert
2017-01-03 17:53 - 2017-01-16 17:56 - 00000000 ____D C:\Users\Henselmann\AppData\Local\BlackDesertOnline
2017-01-03 17:16 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Desert Online
2017-01-03 17:16 - 2017-01-03 17:16 - 00000717 ____H C:\Users\Public\Desktop\Black Desert Online.lnk
2017-01-03 17:16 - 2017-01-03 17:16 - 00000717 ____H C:\ProgramData\Microsoft\Windows\Start Menu\Black Desert Online.lnk
2017-01-02 20:10 - 2017-01-17 15:07 - 00004182 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{564F6E84-C00A-4C0A-BC99-D7AB81F118FD}
2017-01-02 18:25 - 2017-01-02 18:25 - 00000000 ____D C:\ProgramData\Nexon
2017-01-02 18:24 - 2017-01-02 18:45 - 00000000 ____D C:\Users\Henselmann\Documents\Vindictus EU
2017-01-02 18:24 - 2017-01-02 18:24 - 00000000 ____D C:\Users\Henselmann\AppData\Local\NXEPassportClient
2017-01-02 18:23 - 2017-01-02 18:23 - 00001824 ____H C:\Users\Public\Desktop\Vindictus EU.lnk
2017-01-02 18:23 - 2017-01-02 18:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon
2017-01-02 14:54 - 2017-01-02 14:54 - 00000000 ____D C:\Users\Henselmann\Documents\Skullgirls
2017-01-02 14:39 - 2017-01-02 14:48 - 00021019 _____ C:\Users\Henselmann\Desktop\eigenes lehmbruck.odt
2017-01-02 14:39 - 2017-01-02 14:39 - 00000000 ____D C:\Users\Henselmann\AppData\Local\HP
2017-01-02 14:26 - 2017-01-02 14:38 - 00019777 _____ C:\Users\Henselmann\Desktop\handout lehmbruck.odt
2017-01-02 13:37 - 2017-01-02 13:37 - 00002355 _____ C:\Users\Henselmann\Desktop\ACCUSOR Advanced Gaming Keyboard Driver.lnk
2017-01-02 13:12 - 2017-01-13 01:45 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2017-01-02 13:12 - 2017-01-11 19:30 - 00003870 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-01-02 13:12 - 2017-01-02 13:12 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Macromedia
2017-01-02 13:12 - 2017-01-02 13:12 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Adobe
2017-01-02 12:57 - 2017-01-02 12:57 - 00001204 _____ C:\Users\Henselmann\Desktop\OpenOffice 4.1.3.lnk
2017-01-02 12:57 - 2017-01-02 12:57 - 00000000 ___SD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3
2017-01-02 12:57 - 2017-01-02 12:57 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\OpenOffice
2017-01-02 12:57 - 2017-01-02 12:57 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2017-01-01 23:04 - 2017-01-02 18:21 - 00000000 ____D C:\Nexon
2017-01-01 19:07 - 2017-01-01 19:07 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Avira
2017-01-01 19:04 - 2017-01-01 19:14 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nexon
2017-01-01 18:07 - 2017-01-16 20:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live
2017-01-01 18:07 - 2017-01-01 18:07 - 00001140 _____ C:\Users\Public\Desktop\Gameforge Live.lnk
2017-01-01 18:07 - 2017-01-01 18:07 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Gameforge4d
2017-01-01 18:07 - 2017-01-01 18:07 - 00000000 ____D C:\Program Files (x86)\GameforgeLive
2017-01-01 17:51 - 2017-01-01 17:51 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Crashpad
2017-01-01 16:53 - 2017-01-02 18:26 - 00000000 ____D C:\ProgramData\NexonEU
2017-01-01 15:00 - 2017-01-01 15:01 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Akamai
2017-01-01 14:03 - 2017-01-01 14:03 - 00000016 _____ C:\ProgramData\mntemp
2017-01-01 14:02 - 2017-01-01 14:02 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Macromedia
2017-01-01 13:44 - 2017-01-01 13:44 - 00000992 _____ C:\Users\Public\Desktop\Heroes of the Storm.lnk
2017-01-01 13:44 - 2017-01-01 13:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm
2017-01-01 13:41 - 2017-01-07 18:11 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\NVIDIA
2017-01-01 13:33 - 2017-01-01 13:33 - 00000000 ____D C:\Users\Henselmann\Documents\League of Legends
2017-01-01 13:30 - 2017-01-14 13:32 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm
2017-01-01 13:30 - 2017-01-01 13:30 - 00000000 ____D C:\Users\Henselmann\Documents\Heroes of the Storm
2017-01-01 13:30 - 2017-01-01 13:30 - 00000000 ____D C:\Users\Henselmann\AppData\Local\AviraSpeedup
2017-01-01 13:25 - 2017-01-01 13:25 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf
2017-01-01 13:25 - 2016-12-06 16:01 - 00153904 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00151352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00078208 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00035488 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00028272 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avusbflt.sys
2017-01-01 13:23 - 2017-01-02 10:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-01-01 13:23 - 2017-01-02 10:05 - 00000000 ____D C:\ProgramData\Avira
2017-01-01 13:23 - 2017-01-02 10:05 - 00000000 ____D C:\Program Files (x86)\Avira
2017-01-01 13:23 - 2017-01-01 13:23 - 00001285 _____ C:\Users\Public\Desktop\Avira Connect.lnk
2017-01-01 13:23 - 2017-01-01 13:23 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Avira
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\.mono
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Blizzard Entertainment
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Blizzard
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\ProgramData\.mono
2017-01-01 03:33 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2017-01-01 03:33 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2017-01-01 03:33 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2017-01-01 03:33 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2017-01-01 03:32 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2017-01-01 03:32 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2017-01-01 03:32 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2017-01-01 03:32 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2017-01-01 03:32 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2017-01-01 03:32 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2017-01-01 03:32 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2017-01-01 03:32 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2017-01-01 03:32 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2017-01-01 03:32 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2017-01-01 03:32 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2017-01-01 03:32 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2017-01-01 03:32 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2017-01-01 03:32 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2017-01-01 03:32 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2017-01-01 03:32 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2017-01-01 03:32 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2017-01-01 03:32 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2017-01-01 03:32 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2017-01-01 03:32 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2017-01-01 03:32 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2017-01-01 03:32 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2017-01-01 03:32 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2017-01-01 03:32 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2017-01-01 03:32 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2017-01-01 03:32 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2017-01-01 03:32 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2017-01-01 03:32 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2017-01-01 03:32 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2017-01-01 03:32 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2017-01-01 03:32 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2017-01-01 03:32 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2017-01-01 03:32 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2017-01-01 03:32 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2017-01-01 03:32 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2017-01-01 03:32 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2017-01-01 03:32 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2017-01-01 03:32 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2017-01-01 03:32 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2017-01-01 03:32 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2017-01-01 03:32 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2017-01-01 03:32 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2017-01-01 03:32 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2017-01-01 03:32 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2017-01-01 03:32 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2017-01-01 03:32 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2017-01-01 03:32 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2017-01-01 03:32 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2017-01-01 03:32 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2017-01-01 03:32 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2017-01-01 03:32 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2017-01-01 03:32 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2017-01-01 03:32 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2017-01-01 03:32 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2017-01-01 03:32 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2017-01-01 03:32 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2017-01-01 03:32 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2017-01-01 03:32 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2017-01-01 03:32 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2017-01-01 03:32 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2017-01-01 03:32 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2017-01-01 03:32 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2017-01-01 03:32 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2017-01-01 03:32 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2017-01-01 03:32 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2017-01-01 03:32 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2017-01-01 03:32 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2017-01-01 03:32 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2017-01-01 03:32 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2017-01-01 03:32 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2017-01-01 03:32 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2017-01-01 03:32 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2017-01-01 03:32 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2017-01-01 03:32 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2017-01-01 03:32 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2017-01-01 03:32 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2017-01-01 03:32 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2017-01-01 03:32 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2017-01-01 03:32 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2017-01-01 02:15 - 2017-01-01 02:15 - 00000000 ____D C:\ProgramData\Riot Games
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files\Reference Assemblies
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files\MSBuild
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files (x86)\MSBuild
2017-01-01 02:13 - 2017-01-01 13:34 - 00001749 _____ C:\Users\Public\Desktop\League of Legends.lnk
2017-01-01 02:13 - 2017-01-01 02:13 - 00000000 ____D C:\Riot Games
2017-01-01 02:13 - 2016-05-25 14:31 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 14:31 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 14:31 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2017-01-01 02:13 - 2016-05-25 11:03 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 11:03 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 11:03 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2017-01-01 02:13 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2017-01-01 02:13 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2017-01-01 02:13 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2017-01-01 02:13 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2017-01-01 02:13 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2017-01-01 02:12 - 2017-01-01 02:14 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Riot Games
2016-12-31 22:06 - 2016-12-31 22:06 - 00000000 ____D C:\Users\Henselmann\Documents\MGR
2016-12-31 18:20 - 2017-01-14 19:02 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\InnkeeperUI
2016-12-31 18:20 - 2017-01-01 13:06 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Innkeeper
2016-12-31 18:20 - 2016-12-31 18:20 - 00002290 _____ C:\Users\Henselmann\Desktop\Innkeeper.lnk
2016-12-31 18:20 - 2016-12-31 18:20 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Innkeeper
2016-12-31 18:14 - 2017-01-11 17:36 - 00007609 _____ C:\ProgramData\NvTelemetryContainer.log
2016-12-31 18:14 - 2017-01-11 17:36 - 00004308 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-31 18:14 - 2017-01-11 17:36 - 00001489 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2016-12-31 18:14 - 2017-01-10 19:32 - 00010108 _____ C:\ProgramData\NvTelemetryContainer.log_backup1
2016-12-31 18:14 - 2017-01-06 01:09 - 00001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2016-12-31 17:46 - 2017-01-17 15:13 - 00096494 ____H C:\Users\Henselmann\AppData\Local\IconCache.db
2016-12-31 17:35 - 2016-12-31 17:35 - 00000938 _____ C:\Users\Public\Desktop\AURA(GRAPHICS CARD).lnk
2016-12-31 17:35 - 2016-12-31 17:35 - 00000000 ____D C:\Program Files (x86)\ASUS
2016-12-31 17:29 - 2017-01-07 18:15 - 00000000 ____D C:\Users\Henselmann\Documents\My games
2016-12-31 16:04 - 2016-12-31 16:04 - 00000000 ____D C:\Users\Henselmann\Documents\Overwatch
2016-12-31 16:00 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch
2016-12-31 16:00 - 2016-12-31 16:00 - 00000898 ____H C:\Users\Public\Desktop\Overwatch.lnk
2016-12-31 15:58 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2016-12-31 15:58 - 2016-12-31 15:58 - 00000952 ____H C:\Users\Public\Desktop\Hearthstone.lnk
2016-12-31 15:50 - 2016-12-31 15:51 - 04121824 _____ (Husdawg, LLC) C:\Users\Henselmann\Downloads\Detection.exe
2016-12-31 15:49 - 2016-12-31 15:49 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Diagnostics
2016-12-31 15:47 - 2016-12-31 15:47 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-12-31 15:47 - 2016-12-11 19:23 - 00134712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2016-12-31 15:47 - 2016-09-09 19:25 - 00269600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2016-12-31 15:47 - 2016-09-09 19:25 - 00261920 _____ C:\Windows\system32\vulkan-1.dll
2016-12-31 15:47 - 2016-09-09 19:25 - 00110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2016-12-31 15:47 - 2016-09-09 19:24 - 00125216 _____ C:\Windows\system32\vulkaninfo.exe
2016-12-31 15:45 - 2016-12-12 04:03 - 40125496 _____ C:\Windows\system32\nvcompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 35222976 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 34710584 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 28201408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 10912744 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 10803880 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 10353960 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 09158616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 08913328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 08761560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 02950200 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 02587704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 01953336 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437633.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437633.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 01038392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00974784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00942528 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00894400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00802768 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00801560 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFThevc.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00683640 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00643928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00642392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFThevc.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00617696 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00572888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00438208 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00394888 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00388544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00386104 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00347072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00327408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2016-12-31 15:12 - 2017-01-15 01:19 - 00000000 ____D C:\Program Files (x86)\Overwatch
2016-12-31 15:12 - 2017-01-15 01:19 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2016-12-31 15:11 - 2016-12-31 15:11 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Blizzard Entertainment
2016-12-31 15:10 - 2017-01-17 15:06 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Battle.net
2016-12-31 15:10 - 2017-01-16 00:42 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-12-31 15:10 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2016-12-31 15:10 - 2016-12-31 15:10 - 00000914 ____H C:\Users\Public\Desktop\Battle.net.lnk
2016-12-31 15:10 - 2016-12-31 15:10 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2016-12-31 15:09 - 2016-12-31 15:11 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Battle.net
2016-12-31 15:09 - 2016-12-31 15:09 - 00000000 ____D C:\ProgramData\Battle.net
2016-12-31 14:57 - 2016-12-31 14:57 - 00000000 ____D C:\Users\Henselmann\AppData\Local\RzStats
2016-12-31 14:51 - 2016-09-17 02:12 - 00044144 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpmgrk.sys
2016-12-31 14:51 - 2016-09-07 22:27 - 00137840 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpnk.sys
2016-12-31 14:50 - 2017-01-01 13:21 - 00000000 ____D C:\Program Files (x86)\Razer
2016-12-31 14:50 - 2016-12-31 14:52 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Razer
2016-12-31 14:50 - 2016-12-31 14:51 - 00000000 ____D C:\ProgramData\Razer
2016-12-31 14:50 - 2016-12-31 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2016-12-31 14:47 - 2017-01-11 23:48 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\TS3Client
2016-12-31 14:44 - 2016-12-31 14:44 - 00001299 _____ C:\Users\Henselmann\Desktop\TeamSpeak 3 Client.lnk
2016-12-31 14:44 - 2016-12-31 14:44 - 00001257 _____ C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2016-12-31 14:44 - 2016-12-31 14:44 - 00000000 ____D C:\Users\Henselmann\AppData\Local\TeamSpeak 3 Client
2016-12-31 14:43 - 2017-01-13 15:27 - 00002262 _____ C:\Users\Henselmann\Desktop\Discord.lnk
2016-12-31 14:43 - 2017-01-13 15:27 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2016-12-31 14:43 - 2017-01-13 15:27 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\discord
2016-12-31 14:43 - 2017-01-13 15:27 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Discord
2016-12-31 14:43 - 2016-12-31 18:20 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SquirrelTemp
2016-12-31 14:30 - 2017-01-06 00:45 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Steam
2016-12-31 14:30 - 2016-12-31 14:30 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Chromium
2016-12-31 14:28 - 2017-01-17 15:13 - 00000000 ____D C:\Program Files (x86)\Steam
2016-12-31 14:28 - 2016-12-31 14:28 - 00001036 _____ C:\Users\Public\Desktop\Steam.lnk
2016-12-31 14:28 - 2016-12-31 14:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-12-31 14:26 - 2017-01-17 15:13 - 00250816 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-12-31 14:26 - 2017-01-17 00:31 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-12-31 14:26 - 2017-01-17 00:25 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2016-12-31 14:26 - 2017-01-14 18:33 - 00091584 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2016-12-31 14:26 - 2017-01-14 13:56 - 00102856 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2016-12-31 14:26 - 2017-01-14 13:56 - 00043968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-12-31 14:26 - 2016-12-31 14:26 - 00001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2016-12-31 14:26 - 2016-12-31 14:26 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\SPEEDLINK
2016-12-31 14:26 - 2016-12-31 14:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2016-12-31 14:26 - 2016-12-31 14:26 - 00000000 ____D C:\Program Files\Malwarebytes
2016-12-31 14:26 - 2016-12-14 12:55 - 00077416 _____ C:\Windows\system32\Drivers\mbae64.sys
2016-12-31 14:25 - 2016-12-31 14:25 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Programs
2016-12-31 14:24 - 2016-12-31 14:24 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\InstallShield
2016-12-31 14:24 - 2016-12-31 14:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPEEDLINK
2016-12-31 14:24 - 2016-12-31 14:24 - 00000000 ____D C:\Program Files (x86)\SPEEDLINK
2016-12-31 14:23 - 2016-12-31 14:23 - 00018130 _____ C:\Windows\unins000.dat
2016-12-31 14:23 - 2016-12-31 14:23 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\MingGuan
2016-12-31 14:23 - 2016-12-31 14:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHARKOON Drakonia
2016-12-31 14:23 - 2016-12-31 14:23 - 00000000 ____D C:\Program Files (x86)\Drakonia Configurator
2016-12-31 14:23 - 2016-12-31 14:22 - 01192533 _____ C:\Windows\unins000.exe
2016-12-31 14:21 - 2017-01-17 15:15 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Mozilla
2016-12-31 14:21 - 2016-12-31 14:27 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Mozilla
2016-12-31 14:21 - 2016-12-31 14:21 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Mozilla
2016-12-31 14:20 - 2017-01-16 22:36 - 00000000 ____D C:\Users\Henselmann\AppData\Local\CrashDumps
2016-12-31 14:20 - 2016-12-31 14:20 - 00000000 ____D C:\Users\Henselmann\AppData\Local\MicrosoftEdge
2016-12-31 14:09 - 2017-01-10 19:22 - 00000000 ____D C:\Windows\system32\MRT
2016-12-31 14:09 - 2017-01-10 19:21 - 135657872 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-12-31 14:09 - 2016-12-09 11:42 - 01637728 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-12-31 14:09 - 2016-12-09 11:42 - 00137568 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-12-31 14:09 - 2016-12-09 11:34 - 01051112 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-12-31 14:09 - 2016-12-09 11:34 - 00894096 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-12-31 14:09 - 2016-12-09 11:33 - 01354320 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-12-31 14:09 - 2016-12-09 11:33 - 01173496 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-12-31 14:09 - 2016-12-09 11:30 - 00377184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2016-12-31 14:09 - 2016-12-09 11:29 - 02681200 _____ C:\Windows\system32\CoreUIComponents.dll
2016-12-31 14:09 - 2016-12-09 11:28 - 00764392 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2016-12-31 14:09 - 2016-12-09 11:19 - 01293152 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2016-12-31 14:09 - 2016-12-09 11:19 - 00168424 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2016-12-31 14:09 - 2016-12-09 11:18 - 02913144 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2016-12-31 14:09 - 2016-12-09 11:18 - 01100128 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2016-12-31 14:09 - 2016-12-09 11:18 - 00989024 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2016-12-31 14:09 - 2016-12-09 11:18 - 00947552 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.efi
2016-12-31 14:09 - 2016-12-09 11:18 - 00811872 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.exe
2016-12-31 14:09 - 2016-12-09 11:15 - 08168000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-12-31 14:09 - 2016-12-09 11:14 - 01274712 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-12-31 14:09 - 2016-12-09 11:10 - 01572768 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2016-12-31 14:09 - 2016-12-09 11:10 - 01461200 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-12-31 14:09 - 2016-12-09 11:01 - 02323728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-12-31 14:09 - 2016-12-09 11:01 - 01503544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-12-31 14:09 - 2016-12-09 11:01 - 00861024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2016-12-31 14:09 - 2016-12-09 11:00 - 00106896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2016-12-31 14:09 - 2016-12-09 10:59 - 02166752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2016-12-31 14:09 - 2016-12-09 10:59 - 00846560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2016-12-31 14:09 - 2016-12-09 10:57 - 06668040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-31 14:09 - 2016-12-09 10:52 - 01435896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2016-12-31 14:09 - 2016-12-09 10:52 - 01415752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2016-12-31 14:09 - 2016-12-09 10:51 - 00117240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-12-31 14:09 - 2016-12-09 10:45 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2016-12-31 14:09 - 2016-12-09 10:41 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WordBreakers.dll
2016-12-31 14:09 - 2016-12-09 10:37 - 00411136 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2016-12-31 14:09 - 2016-12-09 10:36 - 03059200 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-12-31 14:09 - 2016-12-09 10:36 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2016-12-31 14:09 - 2016-12-09 10:33 - 03777536 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2016-12-31 14:09 - 2016-12-09 10:33 - 01589760 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2016-12-31 14:09 - 2016-12-09 10:31 - 03689984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-12-31 14:09 - 2016-12-09 10:31 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2016-12-31 14:09 - 2016-12-09 10:28 - 03306496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2016-12-31 14:09 - 2016-12-09 10:28 - 01004544 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2016-12-31 14:09 - 2016-12-09 10:27 - 13084160 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-12-31 14:09 - 2016-12-09 10:27 - 05114368 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2016-12-31 14:09 - 2016-12-09 10:27 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-31 14:09 - 2016-12-09 10:23 - 12177920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-12-31 14:09 - 2016-12-09 10:22 - 02820096 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2016-12-31 14:09 - 2016-12-09 10:21 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
2016-12-31 14:09 - 2016-12-09 10:20 - 03198464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2016-12-31 14:09 - 2016-12-09 10:20 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2016-12-31 14:09 - 2016-12-09 10:19 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2016-12-31 14:09 - 2016-12-09 10:19 - 00261120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2016-12-31 14:09 - 2016-12-09 10:19 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2016-12-31 14:09 - 2016-12-09 10:19 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2016-12-31 14:09 - 2016-12-09 10:18 - 02138112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2016-12-31 14:09 - 2016-12-09 10:17 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2016-12-31 14:09 - 2016-12-09 10:16 - 00353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2016-12-31 14:09 - 2016-12-09 10:15 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2016-12-31 14:09 - 2016-12-09 10:15 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputLocaleManager.dll
2016-12-31 14:09 - 2016-12-09 10:15 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditBufferTestHook.dll
2016-12-31 14:09 - 2016-12-09 09:54 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2016-12-31 14:09 - 2016-11-11 11:15 - 00101216 _____ (Microsoft Corporation) C:\Windows\system32\DeviceReactivation.dll
2016-12-31 14:09 - 2016-11-11 11:14 - 02186896 _____ (Microsoft Corporation) C:\Windows\system32\hevcdecoder.dll
2016-12-31 14:09 - 2016-11-11 11:14 - 00603488 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2016-12-31 14:09 - 2016-11-11 11:13 - 02213760 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-12-31 14:09 - 2016-11-11 11:13 - 01886344 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-12-31 14:09 - 2016-11-11 11:13 - 00352096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2016-12-31 14:09 - 2016-11-11 11:12 - 00128352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-12-31 14:09 - 2016-11-11 11:03 - 01069720 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2016-12-31 14:09 - 2016-11-11 11:02 - 00360040 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2016-12-31 14:09 - 2016-11-11 11:01 - 01859264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-12-31 14:09 - 2016-11-11 11:00 - 00223584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-12-31 14:09 - 2016-11-11 11:00 - 00219488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2016-12-31 14:09 - 2016-11-11 10:59 - 00433504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2016-12-31 14:09 - 2016-11-11 10:57 - 01473048 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2016-12-31 14:09 - 2016-11-11 10:56 - 04673304 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-12-31 14:09 - 2016-11-11 10:56 - 01062480 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2016-12-31 14:09 - 2016-11-11 10:56 - 00424616 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2016-12-31 14:09 - 2016-11-11 10:56 - 00187520 _____ (Microsoft Corporation) C:\Windows\system32\CloudStorageWizard.exe
2016-12-31 14:09 - 2016-11-11 10:56 - 00126568 _____ (Microsoft Corporation) C:\Windows\system32\mfaudiocnv.dll
2016-12-31 14:09 - 2016-11-11 10:55 - 00882680 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2016-12-31 14:09 - 2016-11-11 10:55 - 00743224 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-12-31 14:09 - 2016-11-11 10:54 - 01418312 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2016-12-31 14:09 - 2016-11-11 10:51 - 00454592 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2016-12-31 14:09 - 2016-11-11 10:31 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2016-12-31 14:09 - 2016-11-11 10:28 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\CbtBackgroundManagerPolicy.dll
2016-12-31 14:09 - 2016-11-11 10:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2016-12-31 14:09 - 2016-11-11 10:26 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys
2016-12-31 14:09 - 2016-11-11 10:25 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\BcastDVRHelper.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\HttpsDataSource.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\VEStoreEventHandlers.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2016-12-31 14:09 - 2016-11-11 10:23 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2016-12-31 14:09 - 2016-11-11 10:23 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnr.dll
2016-12-31 14:09 - 2016-11-11 10:23 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2016-12-31 14:09 - 2016-11-11 10:22 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2016-12-31 14:09 - 2016-11-11 10:21 - 00313856 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\cdpusersvc.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00620544 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2016-12-31 14:09 - 2016-11-11 10:19 - 00495104 _____ (Microsoft Corporation) C:\Windows\system32\DataSenseHandlers.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\cdpsvc.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00388096 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-31 14:09 - 2016-11-11 10:17 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 01477632 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 00560128 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeHelper.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\RjvMDMConfig.dll
2016-12-31 14:09 - 2016-11-11 10:14 - 07654400 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2016-12-31 14:09 - 2016-11-11 10:14 - 02104320 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2016-12-31 14:09 - 2016-11-11 10:14 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-12-31 14:09 - 2016-11-11 10:13 - 07812096 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2016-12-31 14:09 - 2016-11-11 10:13 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2016-12-31 14:09 - 2016-11-11 10:12 - 00870912 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll
2016-12-31 14:09 - 2016-11-11 10:11 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2016-12-31 14:09 - 2016-11-11 10:09 - 01366016 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2016-12-31 14:09 - 2016-11-11 10:09 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\dialserver.dll
2016-12-31 14:09 - 2016-11-11 10:08 - 00539136 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 03441152 _____ (Microsoft Corporation) C:\Windows\system32\MapRouter.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 02953216 _____ (Microsoft Corporation) C:\Windows\system32\MapGeocoder.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 01060864 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 00347648 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2016-12-31 14:09 - 2016-11-11 10:06 - 03400192 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2016-12-31 14:09 - 2016-11-11 10:06 - 00960000 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2016-12-31 14:09 - 2016-11-11 10:06 - 00650752 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2016-12-31 14:09 - 2016-11-11 10:05 - 04136448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll
2016-12-31 14:09 - 2016-11-11 10:05 - 02852864 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-31 14:09 - 2016-11-11 10:05 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2016-12-31 14:09 - 2016-11-11 10:04 - 02611200 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2016-12-31 14:09 - 2016-11-11 10:04 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2016-12-31 14:09 - 2016-11-11 10:04 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2016-12-31 14:09 - 2016-11-11 10:03 - 02287616 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2016-12-31 14:09 - 2016-11-11 10:03 - 00905216 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2016-12-31 14:09 - 2016-11-11 10:03 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2016-12-31 14:09 - 2016-11-11 10:02 - 03542016 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2016-12-31 14:09 - 2016-11-11 10:02 - 01726976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2016-12-31 14:09 - 2016-11-11 10:02 - 00936448 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll
2016-12-31 14:09 - 2016-11-11 09:01 - 01969912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hevcdecoder.dll
2016-12-31 14:09 - 2016-11-11 09:01 - 00167848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2016-12-31 14:09 - 2016-11-11 09:00 - 01706488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-12-31 14:09 - 2016-11-11 08:59 - 01572768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-12-31 14:09 - 2016-11-11 08:54 - 00122208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\migisol.dll
2016-12-31 14:09 - 2016-11-11 08:49 - 00869848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2016-12-31 14:09 - 2016-11-11 08:48 - 02277248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2016-12-31 14:09 - 2016-11-11 08:47 - 05722832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2016-12-31 14:09 - 2016-11-11 08:47 - 01430720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2016-12-31 14:09 - 2016-11-11 08:47 - 00527880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-12-31 14:09 - 2016-11-11 08:42 - 01123912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2016-12-31 14:09 - 2016-11-11 08:42 - 00952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2016-12-31 14:09 - 2016-11-11 08:42 - 00091936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfaudiocnv.dll
2016-12-31 14:09 - 2016-11-11 08:41 - 04311736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-12-31 14:09 - 2016-11-11 08:41 - 00157536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudStorageWizard.exe
2016-12-31 14:09 - 2016-11-11 08:38 - 01263856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2016-12-31 14:09 - 2016-11-11 08:25 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapsBtSvc.dll
2016-12-31 14:09 - 2016-11-11 08:25 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosStorage.dll
2016-12-31 14:09 - 2016-11-11 08:24 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BcastDVRHelper.dll
2016-12-31 14:09 - 2016-11-11 08:24 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2016-12-31 14:09 - 2016-11-11 08:24 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-31 14:09 - 2016-11-11 08:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppCapture.dll
2016-12-31 14:09 - 2016-11-11 08:23 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll
2016-12-31 14:09 - 2016-11-11 08:22 - 00505856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
         

Alt 17.01.2017, 15:23   #9
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

Bestehen reste nach trojaner infektion?



Code:
ATTFilter
2016-12-31 14:09 - 2016-11-11 08:22 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll
2016-12-31 14:09 - 2016-11-11 08:21 - 00332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2016-12-31 14:09 - 2016-11-11 08:19 - 01755136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceFlows.DataModel.dll
2016-12-31 14:09 - 2016-11-11 08:19 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2016-12-31 14:09 - 2016-11-11 08:19 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
2016-12-31 14:09 - 2016-11-11 08:18 - 02333184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2016-12-31 14:09 - 2016-11-11 08:18 - 01336320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2016-12-31 14:09 - 2016-11-11 08:18 - 01196544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2016-12-31 14:09 - 2016-11-11 08:18 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2016-12-31 14:09 - 2016-11-11 08:18 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscinterop.dll
2016-12-31 14:09 - 2016-11-11 08:17 - 00333312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2016-12-31 14:09 - 2016-11-11 08:17 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2016-12-31 14:09 - 2016-11-11 08:15 - 01357824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2016-12-31 14:09 - 2016-11-11 08:15 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
2016-12-31 14:09 - 2016-11-11 08:15 - 00348672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2016-12-31 14:09 - 2016-11-11 08:12 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcuiu.dll
2016-12-31 14:09 - 2016-11-11 08:10 - 06109184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2016-12-31 14:09 - 2016-11-11 08:10 - 00746496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcprx.dll
2016-12-31 14:09 - 2016-11-11 08:09 - 05380608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2016-12-31 14:09 - 2016-11-11 08:09 - 00545280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2016-12-31 14:09 - 2016-11-11 08:08 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xolehlp.dll
2016-12-31 14:09 - 2016-11-11 08:06 - 02362880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapRouter.dll
2016-12-31 14:09 - 2016-11-11 08:06 - 02109952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapGeocoder.dll
2016-12-31 14:09 - 2016-11-11 08:06 - 00359936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll
2016-12-31 14:09 - 2016-11-11 08:05 - 04423680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-12-31 14:09 - 2016-11-11 08:05 - 03370496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 02682880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 01992704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 00912896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 00715264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlCore.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 02484736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 01576448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 01556480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 00760832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NMAA.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 00565248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2016-12-31 14:09 - 2016-11-11 08:02 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2016-12-31 14:09 - 2016-11-02 13:01 - 00315744 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-12-31 14:09 - 2016-11-02 12:22 - 00601712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-12-31 14:09 - 2016-11-02 12:20 - 00378720 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-12-31 14:09 - 2016-11-02 12:13 - 00773720 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-12-31 14:09 - 2016-11-02 12:12 - 02255712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-12-31 14:09 - 2016-11-02 12:09 - 02257104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-12-31 14:09 - 2016-11-02 12:08 - 00602464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2016-12-31 14:09 - 2016-11-02 12:01 - 01425000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2016-12-31 14:09 - 2016-11-02 12:01 - 00545936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2016-12-31 14:09 - 2016-11-02 11:56 - 01609920 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2016-12-31 14:09 - 2016-11-02 11:56 - 00628552 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2016-12-31 14:09 - 2016-11-02 11:56 - 00322912 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2016-12-31 14:09 - 2016-11-02 11:55 - 00048992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\iorate.sys
2016-12-31 14:09 - 2016-11-02 11:49 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-12-31 14:09 - 2016-11-02 11:45 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsensorgroup.dll
2016-12-31 14:09 - 2016-11-02 11:44 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthExt.dll
2016-12-31 14:09 - 2016-11-02 11:43 - 00731136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8.dll
2016-12-31 14:09 - 2016-11-02 11:43 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FSClient.dll
2016-12-31 14:09 - 2016-11-02 11:42 - 00632832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2016-12-31 14:09 - 2016-11-02 11:42 - 00549376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll
2016-12-31 14:09 - 2016-11-02 11:42 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-12-31 14:09 - 2016-11-02 11:40 - 00896512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2016-12-31 14:09 - 2016-11-02 11:40 - 00548352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddraw.dll
2016-12-31 14:09 - 2016-11-02 11:39 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll
2016-12-31 14:09 - 2016-11-02 11:39 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2016-12-31 14:09 - 2016-11-02 11:38 - 00760832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2016-12-31 14:09 - 2016-11-02 11:34 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2016-12-31 14:09 - 2016-11-02 11:33 - 12349952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-12-31 14:09 - 2016-11-02 11:32 - 00045056 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-12-31 14:09 - 2016-11-02 11:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\efsext.dll
2016-12-31 14:09 - 2016-11-02 11:31 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2016-12-31 14:09 - 2016-11-02 11:31 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-12-31 14:09 - 2016-11-02 11:30 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 01247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 00336896 _____ (Microsoft Corporation) C:\Windows\system32\NetworkBindingEngineMigPlugin.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\FSClient.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\mfsensorgroup.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00807424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00411136 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\NetworkUXBroker.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\NetworkDesktopSettings.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chartv.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 02458112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 01388544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2016-12-31 14:09 - 2016-11-02 11:27 - 00422400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2016-12-31 14:09 - 2016-11-02 11:26 - 00579072 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll
2016-12-31 14:09 - 2016-11-02 11:26 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2016-12-31 14:09 - 2016-11-02 11:25 - 00956416 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2016-12-31 14:09 - 2016-11-02 11:25 - 00655872 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2016-12-31 14:09 - 2016-11-02 11:25 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.UserAccountsHandlers.dll
2016-12-31 14:09 - 2016-11-02 11:24 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2016-12-31 14:09 - 2016-11-02 11:23 - 03106304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2016-12-31 14:09 - 2016-11-02 11:23 - 02356736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2016-12-31 14:09 - 2016-11-02 11:23 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2016-12-31 14:09 - 2016-11-02 11:23 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetailsUpdate.dll
2016-12-31 14:09 - 2016-11-02 11:22 - 13441024 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-12-31 14:09 - 2016-11-02 11:22 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2016-12-31 14:09 - 2016-11-02 11:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetails.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 01586176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\NPSM.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-12-31 14:09 - 2016-11-02 11:18 - 00836608 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2016-12-31 14:09 - 2016-11-02 11:17 - 01282048 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2016-12-31 14:09 - 2016-11-02 11:17 - 00982528 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-12-31 14:09 - 2016-11-02 11:17 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2016-12-31 14:09 - 2016-11-02 11:16 - 02512384 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00881664 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00770560 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00629248 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00579072 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2016-12-31 14:09 - 2016-11-02 11:15 - 01348608 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2016-12-31 14:09 - 2016-11-02 11:15 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2016-12-31 14:09 - 2016-11-02 11:13 - 03496960 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2016-12-31 14:09 - 2016-11-02 11:13 - 03299840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-12-31 14:09 - 2016-11-02 11:13 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2016-12-31 14:09 - 2016-11-02 10:11 - 00788624 _____ C:\Windows\SysWOW64\locale.nls
2016-12-31 14:09 - 2016-11-02 10:11 - 00788624 _____ C:\Windows\system32\locale.nls
2016-12-31 14:09 - 2016-11-02 09:20 - 00446896 _____ C:\Windows\system32\ApnDatabase.xml
2016-12-31 14:09 - 2016-10-15 05:51 - 00595296 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00584032 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00322912 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00283488 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2016-12-31 14:09 - 2016-10-15 05:51 - 00232800 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00078688 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-12-31 14:09 - 2016-10-15 05:48 - 00498952 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2016-12-31 14:09 - 2016-10-15 05:41 - 05622088 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-12-31 14:09 - 2016-10-15 05:38 - 00409952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-12-31 14:09 - 2016-10-15 05:37 - 00063328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2016-12-31 14:09 - 2016-10-15 05:33 - 00455040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2016-12-31 14:09 - 2016-10-15 05:30 - 01851696 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-12-31 14:09 - 2016-10-15 05:26 - 00811416 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2016-12-31 14:09 - 2016-10-15 05:26 - 00691080 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2016-12-31 14:09 - 2016-10-15 05:26 - 00160096 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostBroker.dll
2016-12-31 14:09 - 2016-10-15 05:21 - 02537824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-12-31 14:09 - 2016-10-15 05:21 - 01100128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-12-31 14:09 - 2016-10-15 05:21 - 00292872 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2016-12-31 14:09 - 2016-10-15 05:19 - 00272720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-12-31 14:09 - 2016-10-15 05:18 - 01556712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-12-31 14:09 - 2016-10-15 05:15 - 00687936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2016-12-31 14:09 - 2016-10-15 05:10 - 00254656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll
2016-12-31 14:09 - 2016-10-15 05:06 - 05685760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2016-12-31 14:09 - 2016-10-15 05:05 - 07216640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2016-12-31 14:09 - 2016-10-15 05:00 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2016-12-31 14:09 - 2016-10-15 05:00 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stdole2.tlb
2016-12-31 14:09 - 2016-10-15 04:59 - 00272384 _____ (Microsoft Corporation) C:\Windows\system32\mfksproxy.dll
2016-12-31 14:09 - 2016-10-15 04:59 - 00187904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfksproxy.dll
2016-12-31 14:09 - 2016-10-15 04:59 - 00130560 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2016-12-31 14:09 - 2016-10-15 04:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\stdole2.tlb
2016-12-31 14:09 - 2016-10-15 04:57 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2016-12-31 14:09 - 2016-10-15 04:57 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2016-12-31 14:09 - 2016-10-15 04:57 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll
2016-12-31 14:09 - 2016-10-15 04:57 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2016-12-31 14:09 - 2016-10-15 04:56 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00306688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentutl.exe
2016-12-31 14:09 - 2016-10-15 04:56 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\AudioSrvPolicyManager.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFi.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00329216 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Flights.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2016-12-31 14:09 - 2016-10-15 04:55 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFi.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00410112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00102912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll
2016-12-31 14:09 - 2016-10-15 04:52 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2016-12-31 14:09 - 2016-10-15 04:52 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2016-12-31 14:09 - 2016-10-15 04:52 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2016-12-31 14:09 - 2016-10-15 04:51 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2016-12-31 14:09 - 2016-10-15 04:51 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2016-12-31 14:09 - 2016-10-15 04:50 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Bluetooth.dll
2016-12-31 14:09 - 2016-10-15 04:50 - 00438784 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2016-12-31 14:09 - 2016-10-15 04:49 - 01913344 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2016-12-31 14:09 - 2016-10-15 04:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2016-12-31 14:09 - 2016-10-15 04:48 - 01554944 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2016-12-31 14:09 - 2016-10-15 04:48 - 01323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2016-12-31 14:09 - 2016-10-15 04:47 - 01113600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2016-12-31 14:09 - 2016-10-15 04:47 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-12-31 14:09 - 2016-10-15 04:46 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:46 - 00471552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2016-12-31 14:09 - 2016-10-15 04:45 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.MediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00747008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoteNaturalLanguage.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00636928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00470016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.exe
2016-12-31 14:09 - 2016-10-15 04:43 - 02748928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2016-12-31 14:09 - 2016-10-15 04:43 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\energy.dll
2016-12-31 14:09 - 2016-10-15 04:42 - 00459776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:41 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsiwmi.dll
2016-12-31 14:09 - 2016-10-15 04:39 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-12-31 14:09 - 2016-10-15 04:39 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2016-12-31 14:09 - 2016-10-15 04:37 - 01980416 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2016-12-31 14:09 - 2016-10-15 04:37 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 00983040 _____ (Microsoft Corporation) C:\Windows\system32\RemoteNaturalLanguage.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 00792064 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2016-12-31 14:09 - 2016-10-15 04:36 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll
2016-12-31 14:09 - 2016-10-15 04:35 - 02708992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2016-12-31 14:09 - 2016-10-15 04:35 - 02005504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2016-12-31 14:09 - 2016-10-15 04:32 - 00886784 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-12-31 14:09 - 2016-10-15 04:31 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2016-12-31 14:09 - 2016-10-05 11:35 - 00279904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2016-12-31 14:09 - 2016-10-05 11:33 - 00128864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys
2016-12-31 14:09 - 2016-10-05 11:16 - 00187232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2016-12-31 14:09 - 2016-10-05 11:13 - 00146784 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2016-12-31 14:09 - 2016-10-05 11:12 - 01112928 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2016-12-31 14:09 - 2016-10-05 11:09 - 00064352 _____ (Avago Technologies) C:\Windows\system32\Drivers\MegaSas2i.sys
2016-12-31 14:09 - 2016-10-05 10:50 - 00116576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2016-12-31 14:09 - 2016-10-05 10:49 - 01980768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2016-12-31 14:09 - 2016-10-05 10:48 - 01022304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2016-12-31 14:09 - 2016-10-05 10:36 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-31 14:09 - 2016-10-05 10:35 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.dll
2016-12-31 14:09 - 2016-10-05 10:35 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.Ngc.dll
2016-12-31 14:09 - 2016-10-05 10:34 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2016-12-31 14:09 - 2016-10-05 10:33 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.AllJoyn.dll
2016-12-31 14:09 - 2016-10-05 10:33 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\credprovs.dll
2016-12-31 14:09 - 2016-10-05 10:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2016-12-31 14:09 - 2016-10-05 10:31 - 00480768 _____ (Microsoft Corporation) C:\Windows\system32\dsreg.dll
2016-12-31 14:09 - 2016-10-05 10:31 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll
2016-12-31 14:09 - 2016-10-05 10:29 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\EmailApis.dll
2016-12-31 14:09 - 2016-10-05 10:28 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2016-12-31 14:09 - 2016-10-05 10:28 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.dll
2016-12-31 14:09 - 2016-10-05 10:27 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
2016-12-31 14:09 - 2016-10-05 10:27 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-31 14:09 - 2016-10-05 10:26 - 00184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2016-12-31 14:09 - 2016-10-05 10:26 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovs.dll
2016-12-31 14:09 - 2016-10-05 10:26 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.Ngc.dll
2016-12-31 14:09 - 2016-10-05 10:25 - 00404992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsreg.dll
2016-12-31 14:09 - 2016-10-05 10:25 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccountApis.dll
2016-12-31 14:09 - 2016-10-05 10:25 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2016-12-31 14:09 - 2016-10-05 10:24 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.AllJoyn.dll
2016-12-31 14:09 - 2016-10-05 10:24 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
2016-12-31 14:09 - 2016-10-05 10:23 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-12-31 14:09 - 2016-10-05 10:23 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\dialclient.dll
2016-12-31 14:09 - 2016-10-05 10:21 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ChatApis.dll
2016-12-31 14:09 - 2016-10-05 10:20 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2016-12-31 14:09 - 2016-10-05 10:19 - 02390016 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
2016-12-31 14:09 - 2016-10-05 10:18 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2016-12-31 14:09 - 2016-10-05 10:18 - 00983040 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2016-12-31 14:09 - 2016-10-05 10:18 - 00858112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EmailApis.dll
2016-12-31 14:09 - 2016-10-05 10:18 - 00759296 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-12-31 14:09 - 2016-10-05 10:16 - 00771072 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentApis.dll
2016-12-31 14:09 - 2016-10-05 10:16 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2016-12-31 14:09 - 2016-10-05 10:16 - 00508416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-12-31 14:09 - 2016-10-05 10:15 - 00833024 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-12-31 14:09 - 2016-10-05 10:14 - 01456640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2016-12-31 14:09 - 2016-10-05 10:14 - 01013760 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll
2016-12-31 14:09 - 2016-10-05 10:12 - 00998912 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2016-12-31 14:09 - 2016-10-05 10:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentApis.dll
2016-12-31 14:09 - 2016-10-05 10:09 - 00691712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-12-31 14:09 - 2016-10-05 10:07 - 02646016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2016-12-31 14:09 - 2016-10-05 10:06 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll
2016-12-31 14:09 - 2016-09-15 18:40 - 00965472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2016-12-31 14:09 - 2016-09-15 18:37 - 00496872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2016-12-31 14:09 - 2016-09-15 18:37 - 00402352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-12-31 14:09 - 2016-09-15 18:33 - 00083120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 01117024 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 00512416 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 00218008 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2016-12-31 14:09 - 2016-09-15 18:29 - 00169056 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 00081760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2016-12-31 14:09 - 2016-09-15 18:29 - 00023392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cmimcext.sys
2016-12-31 14:09 - 2016-09-15 18:27 - 00434528 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2016-12-31 14:09 - 2016-09-15 18:26 - 00090400 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2016-12-31 14:09 - 2016-09-15 18:23 - 00170960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-12-31 14:09 - 2016-09-15 18:22 - 00975744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2016-12-31 14:09 - 2016-09-15 18:22 - 00433832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2016-12-31 14:09 - 2016-09-15 18:20 - 00634944 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2016-12-31 14:09 - 2016-09-15 18:18 - 00856872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2016-12-31 14:09 - 2016-09-15 18:16 - 00527808 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2016-12-31 14:09 - 2016-09-15 18:15 - 00130912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2016-12-31 14:09 - 2016-09-15 18:14 - 00119648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2016-12-31 14:09 - 2016-09-15 18:13 - 00113504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2016-12-31 14:09 - 2016-09-15 18:11 - 00862064 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2016-12-31 14:09 - 2016-09-15 18:11 - 00725664 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2016-12-31 14:09 - 2016-09-15 18:07 - 00128864 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2016-12-31 14:09 - 2016-09-15 18:06 - 00387872 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2016-12-31 14:09 - 2016-09-15 18:06 - 00372440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2016-12-31 14:09 - 2016-09-15 18:03 - 00094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
2016-12-31 14:09 - 2016-09-15 18:03 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TempSignedLicenseExchangeTask.dll
2016-12-31 14:09 - 2016-09-15 18:01 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2016-12-31 14:09 - 2016-09-15 18:00 - 00554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2016-12-31 14:09 - 2016-09-15 17:59 - 00255488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2016-12-31 14:09 - 2016-09-15 17:59 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinRtTracing.dll
2016-12-31 14:09 - 2016-09-15 17:58 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-12-31 14:09 - 2016-09-15 17:58 - 00129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SerialCommunication.dll
2016-12-31 14:09 - 2016-09-15 17:58 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.UserDeviceAssociation.dll
2016-12-31 14:09 - 2016-09-15 17:57 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll
2016-12-31 14:09 - 2016-09-15 17:57 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2016-12-31 14:09 - 2016-09-15 17:57 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ClipboardServer.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00265728 _____ C:\Windows\SysWOW64\Windows.Perception.Stub.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00257536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DataExchange.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Core.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManagerApi.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 01243136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.FaceAnalysis.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetworkCollectionAgent.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00386048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00218624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\biwinrt.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00431104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00819200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00445952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2016-12-31 14:09 - 2016-09-15 17:52 - 00238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
2016-12-31 14:09 - 2016-09-15 17:51 - 00762368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2016-12-31 14:09 - 2016-09-15 17:51 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll
2016-12-31 14:09 - 2016-09-15 17:49 - 00901120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:49 - 00653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
2016-12-31 14:09 - 2016-09-15 17:49 - 00468992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.InkControls.dll
2016-12-31 14:09 - 2016-09-15 17:47 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2016-12-31 14:09 - 2016-09-15 17:47 - 00355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTMediaFrame.dll
2016-12-31 14:09 - 2016-09-15 17:47 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Energy.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00713216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00558080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\ffbroker.dll
2016-12-31 14:09 - 2016-09-15 17:45 - 02642944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2016-12-31 14:09 - 2016-09-15 17:44 - 02153984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2016-12-31 14:09 - 2016-09-15 17:44 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL
2016-12-31 14:09 - 2016-09-15 17:43 - 03520512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
2016-12-31 14:09 - 2016-09-15 17:43 - 00433664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
2016-12-31 14:09 - 2016-09-15 17:43 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2016-12-31 14:09 - 2016-09-15 17:43 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2016-12-31 14:09 - 2016-09-15 17:42 - 01220608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2016-12-31 14:09 - 2016-09-15 17:42 - 00719872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_sr.dll
2016-12-31 14:09 - 2016-09-15 17:42 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2016-12-31 14:09 - 2016-09-15 17:41 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\Family.SyncEngine.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\Family.Client.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\Family.Authentication.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Printers.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\NfcRadioMedia.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 02026496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-12-31 14:09 - 2016-09-15 17:40 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 01656320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Perception.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.XboxLive.Storage.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.UserDeviceAssociation.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 02740224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 01232384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 01004544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Input.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00418304 _____ C:\Windows\system32\Windows.Perception.Stub.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Radios.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00773120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2016-12-31 14:09 - 2016-09-15 17:38 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00691200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00671232 _____ (Microsoft Corporation) C:\Windows\system32\NetworkCollectionAgent.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00620544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\vmrdvcore.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\credprovhost.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2016-12-31 14:09 - 2016-09-15 17:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SerialCommunication.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\PrintWSDAHost.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 01507840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.FaceAnalysis.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00568320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.LowLevel.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\wlancfg.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\biwinrt.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00852480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00719360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2016-12-31 14:09 - 2016-09-15 17:36 - 00686592 _____ (Microsoft Corporation) C:\Windows\system32\dsregcmd.exe
2016-12-31 14:09 - 2016-09-15 17:36 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00358912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2016-12-31 14:09 - 2016-09-15 17:36 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\credprovslegacy.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 01060352 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 01013248 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00949248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00472064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00431616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Picker.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\icsvc.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\DataExchange.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00671744 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.InkControls.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00560640 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\AccountsRt.dll
2016-12-31 14:09 - 2016-09-15 17:33 - 03753984 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll
2016-12-31 14:09 - 2016-09-15 17:33 - 00966144 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2016-12-31 14:09 - 2016-09-15 17:33 - 00896512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll
2016-12-31 14:09 - 2016-09-15 17:32 - 01037312 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2016-12-31 14:09 - 2016-09-15 17:32 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 01639424 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 01403392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\RTMediaFrame.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Energy.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\CastLaunch.dll
2016-12-31 14:09 - 2016-09-15 17:29 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:29 - 00715264 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2016-12-31 14:09 - 2016-09-15 17:29 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2016-12-31 14:09 - 2016-09-15 17:28 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2016-12-31 14:09 - 2016-09-15 17:28 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 01078784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2016-12-31 14:09 - 2016-09-15 17:27 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2016-12-31 14:09 - 2016-09-15 17:27 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\fvenotify.exe
2016-12-31 14:09 - 2016-09-15 17:27 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\Sens.dll
2016-12-31 14:09 - 2016-09-15 17:26 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\PlayToReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:26 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerDeviceEncryption.exe
2016-12-31 14:09 - 2016-09-15 17:26 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\bdeui.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 00947200 _____ (Microsoft Corporation) C:\Windows\system32\wsp_sr.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\SpaceAgent.exe
2016-12-31 14:09 - 2016-09-15 17:25 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundMediaPolicy.dll
2016-12-31 14:09 - 2016-09-15 17:24 - 04596224 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2016-12-31 14:09 - 2016-09-15 17:24 - 01080320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Ocr.dll
2016-12-31 14:09 - 2016-09-15 17:24 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2016-12-31 14:09 - 2016-09-15 17:23 - 03405824 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2016-12-31 14:09 - 2016-09-15 17:23 - 01361408 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2016-12-31 14:09 - 2016-09-15 17:23 - 01040896 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2016-12-31 14:09 - 2016-09-15 17:22 - 00857600 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 02538496 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 02208768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.3D.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 02424320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Perception.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 02095616 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-12-31 14:09 - 2016-09-15 17:20 - 01535488 _____ (Microsoft Corporation) C:\Windows\system32\SpeechPal.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 01275392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 01266176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 00875520 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 00845824 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2016-12-31 14:09 - 2016-09-15 17:19 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Maps.dll
2016-12-31 14:09 - 2016-09-15 17:19 - 01130496 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-12-31 14:09 - 2016-09-15 17:19 - 00903680 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2016-12-31 14:09 - 2016-09-15 17:18 - 01369088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Phone.dll
2016-12-31 14:09 - 2016-09-15 17:16 - 00387072 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2016-12-31 14:09 - 2016-09-10 14:21 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\capimg.sys
2016-12-31 14:09 - 2016-09-07 06:48 - 00379744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2016-12-31 14:09 - 2016-09-07 06:34 - 00178528 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostUser.dll
2016-12-31 14:09 - 2016-09-07 06:33 - 00450392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-12-31 14:09 - 2016-09-07 06:29 - 00755656 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-12-31 14:09 - 2016-09-07 06:29 - 00523712 _____ (Microsoft Corporation) C:\Windows\system32\DMRServer.dll
2016-12-31 14:09 - 2016-09-07 06:29 - 00382272 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2016-12-31 14:09 - 2016-09-07 06:29 - 00118112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\EhStorTcgDrv.sys
2016-12-31 14:09 - 2016-09-07 06:17 - 00782176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2016-12-31 14:09 - 2016-09-07 06:12 - 00321792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2016-12-31 14:09 - 2016-09-07 06:04 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosHost.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\MosResource.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MapControls.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\MapsCSP.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosTrace.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\nativemap.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvcProxy.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\MapControlStringsRes.dll
2016-12-31 14:09 - 2016-09-07 06:00 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\mapstoasttask.dll
2016-12-31 14:09 - 2016-09-07 06:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-12-31 14:09 - 2016-09-07 06:00 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosHost.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00409088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosResource.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00110080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MapControls.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\mapsupdatetask.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExtrasXmlParser.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlStringsRes.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\POSyncServices.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AddressParser.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTypeHelperUtil.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataLanguageUtil.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccessRes.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhoneutilRes.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2016-12-31 14:09 - 2016-09-07 05:57 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExSMime.dll
2016-12-31 14:09 - 2016-09-07 05:56 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\XamlTileRender.dll
2016-12-31 14:09 - 2016-09-07 05:56 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactActivation.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 00820736 _____ (Microsoft Corporation) C:\Windows\system32\BingOnlineServices.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 00781824 _____ (Microsoft Corporation) C:\Windows\system32\PhoneService.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VCardParser.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00678912 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\NmaDirect.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataPlatformHelperUtil.dll
2016-12-31 14:09 - 2016-09-07 05:53 - 00526848 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2016-12-31 14:09 - 2016-09-07 05:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentActivation.dll
2016-12-31 14:09 - 2016-09-07 05:53 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2016-12-31 14:09 - 2016-09-07 05:52 - 00536576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingOnlineServices.dll
2016-12-31 14:09 - 2016-09-07 05:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NmaDirect.dll
2016-12-31 14:09 - 2016-09-07 05:52 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2016-12-31 14:09 - 2016-09-07 05:50 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2016-12-31 14:09 - 2016-09-07 05:50 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2016-12-31 14:09 - 2016-09-07 05:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Phoneutil.dll
2016-12-31 14:09 - 2016-09-07 05:47 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2016-12-31 14:09 - 2016-09-07 05:46 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2016-12-31 14:09 - 2016-09-07 05:45 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-12-31 14:09 - 2016-09-07 05:43 - 00484352 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2016-12-31 14:09 - 2016-09-07 05:39 - 03116544 _____ (Microsoft Corporation) C:\Windows\system32\MSAJApi.dll
2016-12-31 14:09 - 2016-09-07 05:39 - 00895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2016-12-31 14:09 - 2016-09-07 05:37 - 02370048 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2016-12-31 14:09 - 2016-09-07 05:37 - 00540160 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2016-12-31 14:09 - 2016-09-07 05:36 - 02423296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAJApi.dll
2016-12-31 14:09 - 2016-09-07 05:34 - 04557824 _____ (Microsoft) C:\Windows\SysWOW64\dbgeng.dll
2016-12-31 14:09 - 2016-09-07 05:34 - 00444416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2016-12-31 14:09 - 2016-09-07 05:33 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-12-31 14:09 - 2016-09-07 05:31 - 00461312 _____ (Microsoft) C:\Windows\SysWOW64\DbgModel.dll
2016-12-31 14:09 - 2016-08-27 06:12 - 00244816 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-12-31 14:09 - 2016-08-27 05:58 - 00121368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2016-12-31 14:09 - 2016-08-27 05:44 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\encapi.dll
2016-12-31 14:09 - 2016-08-27 05:43 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\encapi.dll
2016-12-31 14:09 - 2016-08-20 06:34 - 00136032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostUser.dll
2016-12-31 14:09 - 2016-08-20 06:20 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2016-12-31 14:09 - 2016-08-20 06:17 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManagerSvc.dll
2016-12-31 14:09 - 2016-08-20 06:12 - 00476672 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-12-31 14:09 - 2016-08-20 06:07 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2016-12-31 14:09 - 2016-08-20 06:04 - 00592384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2016-12-31 14:09 - 2016-08-20 05:58 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi_passthru.dll
2016-12-31 14:09 - 2016-08-20 05:56 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\delegatorprovider.dll
2016-12-31 14:09 - 2016-08-06 05:17 - 00790760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-12-31 14:09 - 2016-08-06 05:16 - 00073568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2016-12-31 14:09 - 2016-08-06 05:16 - 00020320 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2016-12-31 14:09 - 2016-08-06 05:13 - 01847048 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2016-12-31 14:09 - 2016-08-06 05:03 - 01343928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2016-12-31 14:09 - 2016-08-06 04:48 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-12-31 14:09 - 2016-08-06 04:48 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-12-31 14:09 - 2016-08-06 04:48 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-12-31 14:09 - 2016-08-06 04:48 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2016-12-31 14:09 - 2016-08-06 04:47 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2016-12-31 14:09 - 2016-08-06 04:47 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-12-31 14:09 - 2016-08-06 04:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-12-31 14:09 - 2016-08-06 04:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-12-31 14:09 - 2016-08-06 04:46 - 09260032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-12-31 14:09 - 2016-08-06 04:46 - 09260032 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-12-31 14:09 - 2016-08-06 04:46 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\dasHost.exe
2016-12-31 14:09 - 2016-08-06 04:46 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2016-12-31 14:09 - 2016-08-06 04:45 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-12-31 14:09 - 2016-08-06 04:45 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\StorageUsage.dll
2016-12-31 14:09 - 2016-08-06 04:45 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-12-31 14:09 - 2016-08-06 04:44 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-12-31 14:09 - 2016-08-06 04:44 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll
2016-12-31 14:09 - 2016-08-06 04:43 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_WorkAccess.dll
2016-12-31 14:09 - 2016-08-06 04:43 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\ClipboardServer.dll
2016-12-31 14:09 - 2016-08-06 04:41 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncPolicy.dll
2016-12-31 14:09 - 2016-08-06 04:40 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\dafpos.dll
2016-12-31 14:09 - 2016-08-06 04:40 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncPolicy.dll
2016-12-31 14:09 - 2016-08-06 04:36 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\das.dll
2016-12-31 14:09 - 2016-08-06 04:35 - 00471552 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2016-12-31 14:09 - 2016-08-06 04:33 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smphost.dll
2016-12-31 14:09 - 2016-08-06 04:31 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\wpninprc.dll
2016-12-31 14:09 - 2016-08-05 10:14 - 01066328 _____ (Microsoft Corporation) C:\Windows\system32\pidgenx.dll
2016-12-31 14:09 - 2016-08-05 10:10 - 00939872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pidgenx.dll
2016-12-31 14:09 - 2016-08-05 10:05 - 00665768 _____ (Microsoft Corporation) C:\Windows\system32\GenValObj.exe
2016-12-31 14:09 - 2016-08-05 09:28 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
2016-12-31 14:09 - 2016-08-05 09:23 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2016-12-31 14:09 - 2016-08-05 09:22 - 00138240 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2016-12-31 14:09 - 2016-08-05 09:18 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2016-12-31 14:09 - 2016-08-05 09:08 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2016-12-31 14:09 - 2016-08-02 09:44 - 00114192 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2016-12-31 14:09 - 2016-08-02 09:15 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2016-12-31 14:09 - 2016-08-02 05:47 - 00079536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2016-12-31 14:09 - 2016-07-22 02:18 - 00297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtapi.dll
2016-12-31 14:08 - 2016-12-09 11:27 - 00172528 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-12-31 14:08 - 2016-12-09 11:20 - 02677544 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-12-31 14:08 - 2016-12-09 11:20 - 02189664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-12-31 14:08 - 2016-12-09 11:20 - 01738560 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-12-31 14:08 - 2016-12-09 11:20 - 00658784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2016-12-31 14:08 - 2016-12-09 11:20 - 00402272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-12-31 14:08 - 2016-12-09 11:18 - 01267512 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2016-12-31 14:08 - 2016-12-09 11:11 - 02048496 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2016-12-31 14:08 - 2016-12-09 10:56 - 00959112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-12-31 14:08 - 2016-12-09 10:42 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-12-31 14:08 - 2016-12-09 10:41 - 00380928 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2016-12-31 14:08 - 2016-12-09 10:34 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2016-12-31 14:08 - 2016-12-09 10:32 - 00635904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-12-31 14:08 - 2016-12-09 10:25 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll
2016-12-31 14:08 - 2016-12-09 10:21 - 04746752 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-12-31 14:08 - 2016-12-09 10:20 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2016-12-31 14:08 - 2016-12-09 10:20 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2016-12-31 14:08 - 2016-12-09 10:18 - 03666432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-12-31 14:08 - 2016-12-09 10:18 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2016-12-31 14:08 - 2016-11-11 11:15 - 00198856 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2016-12-31 14:08 - 2016-11-11 11:08 - 00142176 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll
2016-12-31 14:08 - 2016-11-11 11:03 - 00266544 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2016-12-31 14:08 - 2016-11-11 11:02 - 02828376 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-12-31 14:08 - 2016-11-11 11:01 - 07219672 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2016-12-31 14:08 - 2016-11-11 11:01 - 00637400 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-12-31 14:08 - 2016-11-11 10:56 - 00163752 _____ (Microsoft Corporation) C:\Windows\system32\RTWorkQ.dll
2016-12-31 14:08 - 2016-11-11 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\NetCfgNotifyObjectHost.exe
2016-12-31 14:08 - 2016-11-11 10:26 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xboxgip.sys
2016-12-31 14:08 - 2016-11-11 10:26 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-31 14:08 - 2016-11-11 10:26 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\ReportingCSP.dll
2016-12-31 14:08 - 2016-11-11 10:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2016-12-31 14:08 - 2016-11-11 10:25 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe
2016-12-31 14:08 - 2016-11-11 10:24 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-31 14:08 - 2016-11-11 10:23 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\EAMProgressHandler.dll
2016-12-31 14:08 - 2016-11-11 10:22 - 00489472 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll
2016-12-31 14:08 - 2016-11-11 10:22 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\EDPCleanup.exe
2016-12-31 14:08 - 2016-11-11 10:21 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2016-12-31 14:08 - 2016-11-11 10:21 - 00587776 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2016-12-31 14:08 - 2016-11-11 10:21 - 00379392 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00574464 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2016-12-31 14:08 - 2016-11-11 10:19 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2016-12-31 14:08 - 2016-11-11 10:19 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAppMgmtSvc.dll
2016-12-31 14:08 - 2016-11-11 10:19 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2016-12-31 14:08 - 2016-11-11 10:18 - 02084352 _____ (Microsoft Corporation) C:\Windows\system32\DeviceFlows.DataModel.dll
2016-12-31 14:08 - 2016-11-11 10:18 - 00278016 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2016-12-31 14:08 - 2016-11-11 10:17 - 01220096 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2016-12-31 14:08 - 2016-11-11 10:16 - 02716672 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-12-31 14:08 - 2016-11-11 10:16 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2016-12-31 14:08 - 2016-11-11 10:15 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-12-31 14:08 - 2016-11-11 10:15 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll
2016-12-31 14:08 - 2016-11-11 10:15 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2016-12-31 14:08 - 2016-11-11 10:14 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2016-12-31 14:08 - 2016-11-11 10:14 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2016-12-31 14:08 - 2016-11-11 10:13 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll
2016-12-31 14:08 - 2016-11-11 10:11 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\umpoext.dll
2016-12-31 14:08 - 2016-11-11 10:07 - 02510848 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2016-12-31 14:08 - 2016-11-11 10:07 - 01691136 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2016-12-31 14:08 - 2016-11-11 10:05 - 01779712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 02800128 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 01709056 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 00691712 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 04708864 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 02669056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 00632320 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2016-12-31 14:08 - 2016-11-11 08:49 - 00248480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2016-12-31 14:08 - 2016-11-11 08:42 - 00374448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2016-12-31 14:08 - 2016-11-11 08:42 - 00152416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTWorkQ.dll
2016-12-31 14:08 - 2016-11-11 08:27 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetCfgNotifyObjectHost.exe
2016-12-31 14:08 - 2016-11-11 08:26 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe
2016-12-31 14:08 - 2016-11-11 08:24 - 00519168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ngccredprov.dll
2016-12-31 14:08 - 2016-11-11 08:21 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-31 14:08 - 2016-11-11 08:20 - 00306176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupShim.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2016-12-31 14:08 - 2016-11-11 08:18 - 00431616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2016-12-31 14:08 - 2016-11-11 08:16 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-31 14:08 - 2016-11-11 08:15 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2016-12-31 14:08 - 2016-11-11 08:14 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2016-12-31 14:08 - 2016-11-11 08:06 - 01228288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2016-12-31 14:08 - 2016-11-11 08:06 - 00400384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2016-12-31 14:08 - 2016-11-11 08:04 - 01595392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-12-31 14:08 - 2016-11-11 08:03 - 02256384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-12-31 14:08 - 2016-11-11 08:03 - 00772608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2016-12-31 14:08 - 2016-11-02 12:13 - 00423776 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2016-12-31 14:08 - 2016-11-02 12:08 - 00576408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2016-12-31 14:08 - 2016-11-02 12:08 - 00186424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2016-12-31 14:08 - 2016-11-02 12:08 - 00111968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2016-12-31 14:08 - 2016-11-02 12:04 - 00596832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2016-12-31 14:08 - 2016-11-02 12:03 - 02750936 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00848736 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00682816 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00238056 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00148832 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2016-12-31 14:08 - 2016-11-02 12:01 - 00276832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2016-12-31 14:08 - 2016-11-02 11:48 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-12-31 14:08 - 2016-11-02 11:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-12-31 14:08 - 2016-11-02 11:48 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsext.dll
2016-12-31 14:08 - 2016-11-02 11:46 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininetlui.dll
2016-12-31 14:08 - 2016-11-02 11:43 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-12-31 14:08 - 2016-11-02 11:43 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-12-31 14:08 - 2016-11-02 11:36 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetailsUpdate.dll
         

Alt 17.01.2017, 15:24   #10
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

Bestehen reste nach trojaner infektion?



Code:
ATTFilter
2016-12-31 14:08 - 2016-11-02 11:35 - 00336896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2016-12-31 14:08 - 2016-11-02 11:31 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-12-31 14:08 - 2016-11-02 11:31 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\wininetlui.dll
2016-12-31 14:08 - 2016-11-02 11:30 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2016-12-31 14:08 - 2016-11-02 11:30 - 00134144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetails.dll
2016-12-31 14:08 - 2016-11-02 11:30 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00884224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00122368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSM.dll
2016-12-31 14:08 - 2016-11-02 11:28 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-12-31 14:08 - 2016-11-02 11:28 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2016-12-31 14:08 - 2016-11-02 11:28 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-12-31 14:08 - 2016-11-02 11:26 - 01509376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-12-31 14:08 - 2016-11-02 11:26 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-12-31 14:08 - 2016-11-02 11:25 - 00541696 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2016-12-31 14:08 - 2016-11-02 11:23 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2016-12-31 14:08 - 2016-11-02 11:19 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\chartv.dll
2016-12-31 14:08 - 2016-11-02 11:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2016-12-31 14:08 - 2016-11-02 11:16 - 01637888 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-12-31 14:08 - 2016-11-02 11:16 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2016-12-31 14:08 - 2016-11-02 11:16 - 00265728 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2016-12-31 14:08 - 2016-10-15 05:38 - 00500064 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2016-12-31 14:08 - 2016-10-15 05:30 - 00557408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2016-12-31 14:08 - 2016-10-15 05:30 - 00509280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2016-12-31 14:08 - 2016-10-15 05:30 - 00341936 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-12-31 14:08 - 2016-10-15 05:29 - 00908640 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2016-12-31 14:08 - 2016-10-15 05:29 - 00079200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2016-12-31 14:08 - 2016-10-15 05:21 - 00584032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-12-31 14:08 - 2016-10-15 05:18 - 00749920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll
2016-12-31 14:08 - 2016-10-15 05:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-12-31 14:08 - 2016-10-15 04:56 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe
2016-12-31 14:08 - 2016-10-15 04:56 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2016-12-31 14:08 - 2016-10-15 04:56 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\OnDemandConnRouteHelper.dll
2016-12-31 14:08 - 2016-10-15 04:55 - 00265728 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2016-12-31 14:08 - 2016-10-15 04:54 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2016-12-31 14:08 - 2016-10-15 04:48 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2016-12-31 14:08 - 2016-10-15 04:46 - 03287552 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2016-12-31 14:08 - 2016-10-15 04:45 - 01790464 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2016-12-31 14:08 - 2016-10-15 04:43 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmi.dll
2016-12-31 14:08 - 2016-10-15 04:42 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Geolocation.dll
2016-12-31 14:08 - 2016-10-15 04:42 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.exe
2016-12-31 14:08 - 2016-10-15 04:41 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2016-12-31 14:08 - 2016-10-15 04:39 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Geolocation.dll
2016-12-31 14:08 - 2016-10-15 04:38 - 00913920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2016-12-31 14:08 - 2016-10-15 04:38 - 00675840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2016-12-31 14:08 - 2016-10-15 04:37 - 01643008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2016-12-31 14:08 - 2016-10-15 04:37 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\cmifw.dll
2016-12-31 14:08 - 2016-10-15 04:36 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2016-12-31 14:08 - 2016-10-15 04:36 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmifw.dll
2016-12-31 14:08 - 2016-10-15 04:35 - 03054080 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2016-12-31 14:08 - 2016-10-15 04:35 - 00701952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2016-12-31 14:08 - 2016-10-15 04:34 - 02476544 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-12-31 14:08 - 2016-10-15 04:34 - 01840640 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-12-31 14:08 - 2016-10-05 11:22 - 01181536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-12-31 14:08 - 2016-10-05 11:17 - 01322848 _____ (Microsoft Corporation) C:\Windows\system32\wpx.dll
2016-12-31 14:08 - 2016-10-05 11:12 - 02446696 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2016-12-31 14:08 - 2016-10-05 10:38 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-12-31 14:08 - 2016-10-05 10:38 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Diagnostics.dll
2016-12-31 14:08 - 2016-10-05 10:33 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2016-12-31 14:08 - 2016-10-05 10:32 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.HostName.dll
2016-12-31 14:08 - 2016-10-05 10:31 - 00748544 _____ (Microsoft Corporation) C:\Windows\system32\ChatApis.dll
2016-12-31 14:08 - 2016-10-05 10:31 - 00561664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Wallet.dll
2016-12-31 14:08 - 2016-10-05 10:31 - 00425472 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2016-12-31 14:08 - 2016-10-05 10:30 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2016-12-31 14:08 - 2016-10-05 10:29 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2016-12-31 14:08 - 2016-10-05 10:28 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2016-12-31 14:08 - 2016-10-05 10:28 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.HostName.dll
2016-12-31 14:08 - 2016-10-05 10:26 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-12-31 14:08 - 2016-10-05 10:22 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2016-12-31 14:08 - 2016-10-05 10:20 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2016-12-31 14:08 - 2016-10-05 10:17 - 02914304 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-12-31 14:08 - 2016-10-05 10:17 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll
2016-12-31 14:08 - 2016-10-05 10:15 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
2016-12-31 14:08 - 2016-10-05 10:15 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dialclient.dll
2016-12-31 14:08 - 2016-10-05 10:13 - 01328128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2016-12-31 14:08 - 2016-10-05 10:13 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2016-12-31 14:08 - 2016-10-05 10:12 - 00924672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2016-12-31 14:08 - 2016-10-05 10:08 - 00598528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2016-12-31 14:08 - 2016-10-05 10:07 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2016-12-31 14:08 - 2016-10-05 10:06 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2016-12-31 14:08 - 2016-10-05 10:05 - 00751104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-12-31 14:08 - 2016-09-15 18:30 - 00646136 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-12-31 14:08 - 2016-09-15 18:30 - 00354264 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2016-12-31 14:08 - 2016-09-15 18:29 - 00424640 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-12-31 14:08 - 2016-09-15 18:29 - 00074080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys
2016-12-31 14:08 - 2016-09-15 18:25 - 00280472 _____ (Microsoft Corporation) C:\Windows\system32\bdeunlock.exe
2016-12-31 14:08 - 2016-09-15 18:21 - 01000288 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2016-12-31 14:08 - 2016-09-15 18:19 - 00361104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2016-12-31 14:08 - 2016-09-15 18:16 - 01157000 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2016-12-31 14:08 - 2016-09-15 18:16 - 00206096 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-12-31 14:08 - 2016-09-15 18:15 - 00649568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-12-31 14:08 - 2016-09-15 18:03 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2016-12-31 14:08 - 2016-09-15 18:01 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Radios.dll
2016-12-31 14:08 - 2016-09-15 17:59 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovslegacy.dll
2016-12-31 14:08 - 2016-09-15 17:58 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlancfg.dll
2016-12-31 14:08 - 2016-09-15 17:58 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovhost.dll
2016-12-31 14:08 - 2016-09-15 17:58 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-12-31 14:08 - 2016-09-15 17:57 - 00392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.Input.dll
2016-12-31 14:08 - 2016-09-15 17:56 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Import.dll
2016-12-31 14:08 - 2016-09-15 17:55 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2016-12-31 14:08 - 2016-09-15 17:54 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Ocr.dll
2016-12-31 14:08 - 2016-09-15 17:54 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2016-12-31 14:08 - 2016-09-15 17:53 - 00466432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcext.dll
2016-12-31 14:08 - 2016-09-15 17:52 - 00816640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2016-12-31 14:08 - 2016-09-15 17:50 - 01534464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.3D.dll
2016-12-31 14:08 - 2016-09-15 17:50 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pwrshplugin.dll
2016-12-31 14:08 - 2016-09-15 17:48 - 01320448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2016-12-31 14:08 - 2016-09-15 17:46 - 00343040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2016-12-31 14:08 - 2016-09-15 17:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dlnashext.dll
2016-12-31 14:08 - 2016-09-15 17:44 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTimeUtil.dll
2016-12-31 14:08 - 2016-09-15 17:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2016-12-31 14:08 - 2016-09-15 17:42 - 00545792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uReFS.dll
2016-12-31 14:08 - 2016-09-15 17:42 - 00492544 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2016-12-31 14:08 - 2016-09-15 17:42 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhvr.sys
2016-12-31 14:08 - 2016-09-15 17:42 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BackgroundMediaPolicy.dll
2016-12-31 14:08 - 2016-09-15 17:40 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll
2016-12-31 14:08 - 2016-09-15 17:40 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00654336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00573952 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnrGidsHandler.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\icsvcext.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.Phone.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\provops.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\PimIndexMaintenance.dll
2016-12-31 14:08 - 2016-09-15 17:38 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2016-12-31 14:08 - 2016-09-15 17:36 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2016-12-31 14:08 - 2016-09-15 17:36 - 00448512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll
2016-12-31 14:08 - 2016-09-15 17:36 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2016-12-31 14:08 - 2016-09-15 17:36 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2016-12-31 14:08 - 2016-09-15 17:35 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2016-12-31 14:08 - 2016-09-15 17:35 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2016-12-31 14:08 - 2016-09-15 17:35 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\rshx32.dll
2016-12-31 14:08 - 2016-09-15 17:34 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
2016-12-31 14:08 - 2016-09-15 17:34 - 00284160 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll
2016-12-31 14:08 - 2016-09-15 17:33 - 00963584 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
2016-12-31 14:08 - 2016-09-15 17:33 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2016-12-31 14:08 - 2016-09-15 17:32 - 00634368 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-12-31 14:08 - 2016-09-15 17:31 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\pwrshplugin.dll
2016-12-31 14:08 - 2016-09-15 17:29 - 01082368 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2016-12-31 14:08 - 2016-09-15 17:29 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2016-12-31 14:08 - 2016-09-15 17:27 - 02860032 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2016-12-31 14:08 - 2016-09-15 17:27 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2016-12-31 14:08 - 2016-09-15 17:27 - 00582656 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2016-12-31 14:08 - 2016-09-15 17:26 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2016-12-31 14:08 - 2016-09-15 17:26 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2016-12-31 14:08 - 2016-09-15 17:25 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\uReFS.dll
2016-12-31 14:08 - 2016-09-15 17:24 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll
2016-12-31 14:08 - 2016-09-15 17:23 - 01020928 _____ (Microsoft Corporation) C:\Windows\system32\usermgr.dll
2016-12-31 14:08 - 2016-09-15 17:23 - 00611328 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2016-12-31 14:08 - 2016-09-15 17:23 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Midi.dll
2016-12-31 14:08 - 2016-09-15 17:22 - 01709056 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2016-12-31 14:08 - 2016-09-15 17:19 - 03202048 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2016-12-31 14:08 - 2016-09-15 17:17 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\FontProvider.dll
2016-12-31 14:08 - 2016-09-15 17:16 - 01817088 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll
2016-12-31 14:08 - 2016-09-15 17:16 - 00531456 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll
2016-12-31 14:08 - 2016-09-15 17:16 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\spaceman.exe
2016-12-31 14:08 - 2016-09-07 06:54 - 00133472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-12-31 14:08 - 2016-09-07 06:44 - 02049480 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2016-12-31 14:08 - 2016-09-07 06:34 - 00857440 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2016-12-31 14:08 - 2016-09-07 06:33 - 00681304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ClipSp.sys
2016-12-31 14:08 - 2016-09-07 06:29 - 00595488 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2016-12-31 14:08 - 2016-09-07 06:27 - 01362504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2016-12-31 14:08 - 2016-09-07 06:24 - 00057400 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-12-31 14:08 - 2016-09-07 06:13 - 00640976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2016-12-31 14:08 - 2016-09-07 06:13 - 00529928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2016-12-31 14:08 - 2016-09-07 06:03 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\UserDataAccessRes.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTypeHelperUtil.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\UserDataLanguageUtil.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\ExtrasXmlParser.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\PhoneutilRes.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\PhoneServiceRes.dll
2016-12-31 14:08 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2016-12-31 14:08 - 2016-09-07 06:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wificonnapi.dll
2016-12-31 14:08 - 2016-09-07 06:01 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\AddressParser.dll
2016-12-31 14:08 - 2016-09-07 06:01 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\POSyncServices.dll
2016-12-31 14:08 - 2016-09-07 06:00 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-12-31 14:08 - 2016-09-07 05:59 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\ExSMime.dll
2016-12-31 14:08 - 2016-09-07 05:59 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2016-12-31 14:08 - 2016-09-07 05:59 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\UserDataPlatformHelperUtil.dll
2016-12-31 14:08 - 2016-09-07 05:59 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\ContactActivation.dll
2016-12-31 14:08 - 2016-09-07 05:58 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\VCardParser.dll
2016-12-31 14:08 - 2016-09-07 05:58 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-12-31 14:08 - 2016-09-07 05:57 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-12-31 14:08 - 2016-09-07 05:57 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2016-12-31 14:08 - 2016-09-07 05:56 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2016-12-31 14:08 - 2016-09-07 05:56 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentActivation.dll
2016-12-31 14:08 - 2016-09-07 05:56 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2016-12-31 14:08 - 2016-09-07 05:55 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2016-12-31 14:08 - 2016-09-07 05:54 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-12-31 14:08 - 2016-09-07 05:54 - 00315904 _____ (Microsoft Corporation) C:\Windows\system32\Phoneutil.dll
2016-12-31 14:08 - 2016-09-07 05:53 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2016-12-31 14:08 - 2016-09-07 05:49 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-12-31 14:08 - 2016-09-07 05:46 - 00846336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2016-12-31 14:08 - 2016-09-07 05:46 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dlnashext.dll
2016-12-31 14:08 - 2016-09-07 05:41 - 01891328 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2016-12-31 14:08 - 2016-09-07 05:40 - 01312768 _____ (Microsoft Corporation) C:\Windows\system32\SensorDataService.exe
2016-12-31 14:08 - 2016-09-07 05:39 - 05384192 _____ (Microsoft) C:\Windows\system32\dbgeng.dll
2016-12-31 14:08 - 2016-09-07 05:38 - 01555456 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe
2016-12-31 14:08 - 2016-09-07 05:35 - 00650240 _____ (Microsoft) C:\Windows\system32\DbgModel.dll
2016-12-31 14:08 - 2016-09-07 05:31 - 01293312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2016-12-31 14:08 - 2016-08-20 07:06 - 00108384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2016-12-31 14:08 - 2016-08-20 06:22 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-12-31 14:08 - 2016-08-20 06:21 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\C_G18030.DLL
2016-12-31 14:08 - 2016-08-20 06:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\RemovableMediaProvisioningPlugin.dll
2016-12-31 14:08 - 2016-08-20 06:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\c_GSM7.DLL
2016-12-31 14:08 - 2016-08-20 06:20 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\BarcodeProvisioningPlugin.dll
2016-12-31 14:08 - 2016-08-20 06:20 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xinputhid.sys
2016-12-31 14:08 - 2016-08-20 06:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\C_IS2022.DLL
2016-12-31 14:08 - 2016-08-20 06:19 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\NFCProvisioningPlugin.dll
2016-12-31 14:08 - 2016-08-20 06:18 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\provisioningcsp.dll
2016-12-31 14:08 - 2016-08-20 06:18 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\provtool.exe
2016-12-31 14:08 - 2016-08-20 06:15 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\provhandlers.dll
2016-12-31 14:08 - 2016-08-20 06:14 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_G18030.DLL
2016-12-31 14:08 - 2016-08-20 06:14 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\provdatastore.dll
2016-12-31 14:08 - 2016-08-20 06:14 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_IS2022.DLL
2016-12-31 14:08 - 2016-08-20 06:14 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\c_GSM7.DLL
2016-12-31 14:08 - 2016-08-20 06:08 - 00204288 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\DscCoreConfProv.dll
2016-12-31 14:08 - 2016-08-20 06:06 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-12-31 14:08 - 2016-08-20 06:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi_passthru.dll
2016-12-31 14:08 - 2016-08-20 06:04 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\delegatorprovider.dll
2016-12-31 14:08 - 2016-08-20 06:00 - 00141824 _____ (Windows (R) Win 7 DDK provider) C:\Windows\SysWOW64\DscCoreConfProv.dll
2016-12-31 14:08 - 2016-08-19 02:33 - 00162850 _____ C:\Windows\system32\C_932.NLS
2016-12-31 14:08 - 2016-08-06 05:31 - 00041824 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2016-12-31 14:08 - 2016-08-06 05:29 - 00199008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2016-12-31 14:08 - 2016-08-06 05:26 - 01176664 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-12-31 14:08 - 2016-08-06 05:23 - 00168800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-12-31 14:08 - 2016-08-06 05:18 - 00396168 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2016-12-31 14:08 - 2016-08-06 05:16 - 00026408 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-12-31 14:08 - 2016-08-06 05:15 - 00408600 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2016-12-31 14:08 - 2016-08-06 05:13 - 00044472 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2016-12-31 14:08 - 2016-08-06 05:08 - 00313560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2016-12-31 14:08 - 2016-08-06 05:03 - 00036168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2016-12-31 14:08 - 2016-08-06 04:50 - 02755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-12-31 14:08 - 2016-08-06 04:48 - 02755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-12-31 14:08 - 2016-08-06 04:48 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-12-31 14:08 - 2016-08-06 04:48 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2016-12-31 14:08 - 2016-08-06 04:48 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2016-12-31 14:08 - 2016-08-06 04:48 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.exe
2016-12-31 14:08 - 2016-08-06 04:47 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WiFiConfigSP.dll
2016-12-31 14:08 - 2016-08-06 04:46 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModelOOBE.exe
2016-12-31 14:08 - 2016-08-06 04:46 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2016-12-31 14:08 - 2016-08-06 04:45 - 00327680 _____ (Microsoft Corporation) C:\Windows\system32\container.dll
2016-12-31 14:08 - 2016-08-06 04:45 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\container.dll
2016-12-31 14:08 - 2016-08-06 04:45 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2016-12-31 14:08 - 2016-08-06 04:45 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2016-12-31 14:08 - 2016-08-06 04:45 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe
2016-12-31 14:08 - 2016-08-06 04:44 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceassociation.dll
2016-12-31 14:08 - 2016-08-06 04:43 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2016-12-31 14:08 - 2016-08-06 04:41 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2016-12-31 14:08 - 2016-08-06 04:41 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2016-12-31 14:08 - 2016-08-06 04:41 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\WinBioDataModel.dll
2016-12-31 14:08 - 2016-08-06 04:40 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2016-12-31 14:08 - 2016-08-06 04:39 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\wifiprofilessettinghandler.dll
2016-12-31 14:08 - 2016-08-06 04:39 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll
2016-12-31 14:08 - 2016-08-06 04:34 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\smphost.dll
2016-12-31 14:08 - 2016-08-06 04:29 - 00298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2016-12-31 14:08 - 2016-08-06 04:29 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2016-12-31 14:08 - 2016-08-06 04:28 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2016-12-31 14:08 - 2016-08-06 04:23 - 00520192 _____ (Microsoft Corporation) C:\Windows\system32\w32time.dll
2016-12-31 14:08 - 2016-08-06 04:21 - 00102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinelsa.dll
2016-12-31 14:08 - 2016-08-06 04:19 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\offlinelsa.dll
2016-12-31 14:08 - 2016-08-05 09:29 - 00568832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.UXRes.dll
2016-12-31 14:08 - 2016-08-05 09:29 - 00568832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.UXRes.dll
2016-12-31 14:08 - 2016-08-05 09:29 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slcext.dll
2016-12-31 14:08 - 2016-08-02 09:21 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\Chakrathunk.dll
2016-12-31 14:08 - 2016-08-02 09:13 - 01081856 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2016-12-31 14:08 - 2016-08-02 05:37 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakrathunk.dll
2016-12-31 14:08 - 2016-07-22 02:25 - 00389000 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll
2016-12-29 14:11 - 2016-12-29 14:10 - 00485032 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2016-12-29 14:00 - 2017-01-14 18:41 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Skype
2016-12-29 14:00 - 2016-12-29 14:00 - 00003300 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task v2
2016-12-29 13:59 - 2017-01-02 20:10 - 00000000 ___SD C:\Users\Henselmann\AppData\LocalLow\Microsoft
2016-12-23 11:04 - 2017-01-11 17:36 - 00003884 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:04 - 2017-01-06 02:10 - 01855544 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 01756728 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 01454136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 01318968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 00121912 _____ C:\Windows\system32\NvRtmpStreamer64.dll
2016-12-23 11:04 - 2016-12-31 18:14 - 00000000 ____D C:\Users\Henselmann\AppData\Local\NVIDIA Corporation
2016-12-23 11:04 - 2016-12-31 15:26 - 00000000 ____D C:\Users\Henselmann\AppData\Local\NVIDIA
2016-12-23 11:04 - 2016-12-23 11:04 - 00000000 ____D C:\Users\Henselmann\AppData\Local\CEF
2016-12-23 11:04 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2016-12-23 11:04 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2016-12-23 11:04 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2016-12-23 11:04 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2016-12-23 11:04 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2016-12-23 11:04 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2016-12-23 11:03 - 2017-01-17 15:13 - 00000000 ____D C:\ProgramData\NVIDIA
2016-12-23 11:03 - 2017-01-11 17:36 - 00003894 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:03 - 2017-01-11 17:36 - 00003866 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:03 - 2017-01-11 17:36 - 00003858 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:03 - 2017-01-11 17:36 - 00003696 _____ C:\Windows\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:03 - 2017-01-11 17:36 - 00003654 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-23 11:03 - 2017-01-11 17:36 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-12-23 11:03 - 2017-01-11 17:36 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-12-23 11:03 - 2017-01-06 00:42 - 00001951 _____ C:\Windows\NvContainerRecovery.bat
2016-12-23 11:03 - 2016-12-31 15:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-12-23 11:03 - 2016-12-11 19:47 - 06384576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 02475968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 01764408 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 00548408 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 00392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 00081856 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 00071224 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2016-12-23 11:03 - 2016-12-09 09:52 - 07639617 _____ C:\Windows\system32\nvcoproc.bin
2016-12-23 11:03 - 2016-12-01 21:02 - 00215608 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2016-12-23 11:03 - 2016-12-01 21:02 - 00203320 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2016-12-23 11:02 - 2017-01-06 02:10 - 00047672 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2016-12-23 11:02 - 2016-12-12 04:03 - 03934504 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2016-12-23 11:02 - 2016-12-12 04:03 - 03474392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2016-12-23 11:02 - 2016-12-12 04:03 - 00042286 _____ C:\Windows\system32\nvinfo.pb
2016-12-23 11:02 - 2016-12-02 21:41 - 01595456 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2016-12-23 11:02 - 2016-12-02 21:41 - 00212936 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2016-12-23 11:02 - 2016-12-02 21:41 - 00046024 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2016-12-23 11:02 - 2016-12-01 21:02 - 01951680 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437619.dll
2016-12-23 11:02 - 2016-12-01 21:02 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437619.dll
2016-12-23 11:02 - 2016-12-01 21:02 - 00000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2016-12-23 11:02 - 2016-12-01 21:02 - 00000669 _____ C:\Windows\system32\nv-vk64.json
2016-12-23 11:00 - 2017-01-11 17:36 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-12-23 11:00 - 2016-12-23 11:00 - 00000000 ____D C:\NVIDIA
2016-12-23 10:59 - 2016-12-23 10:59 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-12-23 10:55 - 2016-12-23 10:55 - 01351936 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2016-12-23 10:55 - 2016-12-23 10:55 - 00030766 _____ C:\csb.log
2016-12-23 10:55 - 2016-12-23 10:55 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-12-23 10:55 - 2016-12-23 10:55 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Intel Corporation
2016-12-23 10:55 - 2016-12-23 10:55 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Comms
2016-12-23 10:55 - 2016-12-23 10:55 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3
2016-12-23 10:54 - 2016-12-23 10:55 - 00000189 _____ C:\Install.log
2016-12-23 10:54 - 2016-12-23 10:54 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2016-12-23 10:54 - 2015-10-10 00:27 - 00935168 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys
2016-12-23 10:54 - 2015-10-10 00:27 - 00082544 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2016-12-23 10:53 - 2016-12-23 10:53 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-12-23 10:53 - 2016-12-23 10:53 - 00000000 ____D C:\Program Files\Realtek
2016-12-23 10:53 - 2016-01-27 03:04 - 03195648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-12-23 10:53 - 2016-01-27 03:04 - 02894976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-12-23 10:53 - 2016-01-27 03:03 - 72203792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-12-23 10:53 - 2016-01-27 03:03 - 07172920 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 04779776 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-12-23 10:53 - 2016-01-27 03:03 - 03769493 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-12-23 10:53 - 2016-01-27 03:03 - 03283248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 03080784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 02036992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 01356504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00447728 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00192992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00151792 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00134208 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00105312 _____ C:\Windows\system32\audioLibVc.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00084616 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2016-12-23 10:53 - 2016-01-27 03:03 - 00023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-12-23 10:52 - 2017-01-15 20:22 - 02055386 _____ C:\Windows\system32\PerfStringBackup.INI
2016-12-23 10:52 - 2016-01-27 03:03 - 07096192 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 01965816 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00727440 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00445408 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00327464 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00272720 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00253872 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-12-23 10:52 - 2016-01-27 03:03 - 00252880 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2016-12-23 10:51 - 2017-01-07 18:12 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-12-23 10:51 - 2017-01-04 12:52 - 00000000 ____D C:\ProgramData\Package Cache
2016-12-23 10:51 - 2016-12-23 10:55 - 00000000 ____D C:\Program Files\Intel
2016-12-23 10:51 - 2016-12-23 10:54 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-12-23 10:51 - 2016-12-23 10:54 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-12-23 10:51 - 2016-12-23 10:51 - 00000000 ____D C:\Users\Henselmann\Intel
2016-12-23 10:51 - 2016-12-23 10:51 - 00000000 ____D C:\ProgramData\Intel
2016-12-23 10:51 - 2016-12-23 10:51 - 00000000 ____D C:\Program Files (x86)\Intel
2016-12-23 10:51 - 2016-01-27 03:03 - 00118600 _____ C:\Windows\system32\AcpiServiceVnA64.dll
2016-12-23 10:51 - 2016-01-06 09:23 - 02826832 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2016-12-23 10:50 - 2016-12-23 10:54 - 00026192 ____N (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys
2016-12-23 10:50 - 2016-12-23 10:54 - 00000010 _____ C:\Windows\GSetup.ini
2016-12-23 10:50 - 2009-08-27 08:04 - 00207400 ____R () C:\Windows\GSetup.exe
2016-12-23 10:49 - 2016-12-29 14:00 - 00002402 _____ C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-12-23 10:49 - 2016-12-29 14:00 - 00000000 ___RD C:\Users\Henselmann\OneDrive
2016-12-23 10:49 - 2016-12-23 10:49 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-12-23 10:49 - 2016-07-16 12:41 - 02716672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2016-12-23 10:48 - 2017-01-17 15:15 - 00000000 ___RD C:\Users\Henselmann\Downloads
2016-12-23 10:48 - 2017-01-17 15:15 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Temp
2016-12-23 10:48 - 2017-01-17 15:14 - 00000000 ___RD C:\Users\Henselmann\Desktop
2016-12-23 10:48 - 2017-01-17 15:13 - 06553600 ____H C:\Users\Henselmann\NTUSER.DAT
2016-12-23 10:48 - 2017-01-17 15:13 - 00000000 ____D C:\Users\Henselmann
2016-12-23 10:48 - 2017-01-17 14:38 - 00000000 ___RD C:\Users\Henselmann\Videos
2016-12-23 10:48 - 2017-01-16 01:32 - 00000000 ___RD C:\Users\Henselmann\Pictures
2016-12-23 10:48 - 2017-01-15 20:51 - 00000000 ___RD C:\Users\Henselmann\Music
2016-12-23 10:48 - 2017-01-15 03:32 - 00000000 ____D C:\Users\Henselmann\AppData\Local
2016-12-23 10:48 - 2017-01-15 02:33 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2016-12-23 10:48 - 2017-01-15 02:32 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
2016-12-23 10:48 - 2017-01-15 02:13 - 00000000 ___RD C:\Users\Henselmann\Documents
2016-12-23 10:48 - 2017-01-15 01:03 - 00524288 ___SH C:\Users\Henselmann\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:48 - 2017-01-15 01:03 - 00065536 ___SH C:\Users\Henselmann\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TM.blf
2016-12-23 10:48 - 2017-01-15 01:02 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming
2016-12-23 10:48 - 2017-01-15 00:54 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2016-12-23 10:48 - 2017-01-15 00:54 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Microsoft
2016-12-23 10:48 - 2017-01-14 19:38 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow
2016-12-23 10:48 - 2017-01-14 18:56 - 00000000 ___SD C:\Users\Henselmann\AppData\Roaming\Microsoft
2016-12-23 10:48 - 2017-01-10 19:33 - 00000402 ___SH C:\Users\Henselmann\Documents\desktop.ini
2016-12-23 10:48 - 2017-01-10 19:33 - 00000282 ___SH C:\Users\Henselmann\Downloads\desktop.ini
2016-12-23 10:48 - 2017-01-10 19:33 - 00000282 ___SH C:\Users\Henselmann\Desktop\desktop.ini
2016-12-23 10:48 - 2017-01-10 19:33 - 00000174 ___SH C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\desktop.ini
2016-12-23 10:48 - 2017-01-10 19:33 - 00000174 ___SH C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\desktop.ini
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Searches
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Saved Games
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Links
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Favorites
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Contacts
2016-12-23 10:48 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2016-12-23 10:48 - 2017-01-08 00:51 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Packages
2016-12-23 10:48 - 2017-01-07 23:52 - 00524288 ___SH C:\Users\Henselmann\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:48 - 2016-12-23 10:54 - 00000000 ____D C:\Users\Henselmann\AppData\Local\ConnectedDevicesPlatform
2016-12-23 10:48 - 2016-12-23 10:48 - 01310720 ___SH C:\Users\Henselmann\ntuser.dat.LOG1
2016-12-23 10:48 - 2016-12-23 10:48 - 00003340 ____H C:\Users\defaultuser0\AppData\Local\IconCache.db
2016-12-23 10:48 - 2016-12-23 10:48 - 00000020 ___SH C:\Users\Henselmann\ntuser.ini
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Vorlagen
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Startmenü
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\SendTo
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Recent
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Netzwerkumgebung
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Lokale Einstellungen
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Eigene Dateien
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Druckumgebung
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Documents\Eigene Videos
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Documents\Eigene Musik
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Documents\Eigene Bilder
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Cookies
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\AppData\Local\Verlauf
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\AppData\Local\Temporary Internet Files
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\AppData\Local\Anwendungsdaten
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 _SHDL C:\Users\Henselmann\Anwendungsdaten
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ___SH C:\Users\Henselmann\ntuser.dat.LOG2
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ___HD C:\Users\Henselmann\AppData
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Adobe
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ____D C:\Users\Henselmann\AppData\Local\VirtualStore
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ____D C:\Users\Henselmann\AppData\Local\TileDataLayer
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Publishers
2016-12-23 10:48 - 2016-12-23 10:48 - 00000000 ____D C:\ProgramData\USOShared
2016-12-23 10:48 - 2016-07-16 12:48 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2016-12-23 10:48 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2016-12-23 10:48 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2016-12-23 10:48 - 2016-07-16 12:47 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2016-12-23 10:47 - 2017-01-17 15:13 - 05242880 ____H C:\Users\defaultuser0\NTUSER.DAT
2016-12-23 10:47 - 2017-01-17 15:13 - 00000275 _____ C:\Windows\WindowsUpdate.log
2016-12-23 10:47 - 2017-01-14 18:58 - 00000000 ____D C:\Users\defaultuser0
2016-12-23 10:47 - 2016-12-29 14:08 - 00000000 ____D C:\Windows\SoftwareDistribution
2016-12-23 10:47 - 2016-12-23 10:48 - 00000000 ____D C:\Users\defaultuser0\AppData\Local
2016-12-23 10:47 - 2016-12-23 10:47 - 00524288 ___SH C:\Users\defaultuser0\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:47 - 2016-12-23 10:47 - 00524288 ___SH C:\Users\defaultuser0\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:47 - 2016-12-23 10:47 - 00119808 ___SH C:\Users\defaultuser0\ntuser.dat.LOG1
2016-12-23 10:47 - 2016-12-23 10:47 - 00065536 ___SH C:\Users\defaultuser0\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TM.blf
2016-12-23 10:47 - 2016-12-23 10:47 - 00049152 ___SH C:\Users\defaultuser0\ntuser.dat.LOG2
2016-12-23 10:47 - 2016-12-23 10:47 - 00000020 ___SH C:\Users\defaultuser0\ntuser.ini
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Vorlagen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Startmenü
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\SendTo
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Recent
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Netzwerkumgebung
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Lokale Einstellungen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Eigene Dateien
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Druckumgebung
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Videos
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Musik
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Eigene Bilder
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Cookies
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Verlauf
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Temporary Internet Files
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\defaultuser0\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\SendTo
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Recent
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Cookies
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\AppData\Local\Temporary Internet Files
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Temporary Internet Files
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Programme
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Vorlagen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Startmenü
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Dokumente
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Desktop
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 _SHDL C:\Dokumente und Einstellungen
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 __SHD C:\Recovery
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ___SD C:\Users\defaultuser0\AppData\Roaming\Microsoft
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ___RD C:\Users\defaultuser0\Documents
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ___HD C:\Users\defaultuser0\AppData
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\LocalLow
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\VirtualStore
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\TileDataLayer
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Temp
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Packages
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Microsoft
2016-12-23 10:47 - 2016-12-23 10:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\ConnectedDevicesPlatform
2016-12-23 10:47 - 2016-07-16 12:48 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Videos
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Pictures
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Music
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Links
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Favorites
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Downloads
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\Desktop
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\defaultuser0\Saved Games
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Roaming
2016-12-23 10:46 - 2017-01-17 15:15 - 00000000 ____D C:\Windows\Prefetch
2016-12-23 10:46 - 2017-01-17 15:13 - 4026531840 ___SH C:\pagefile.sys
2016-12-23 10:46 - 2017-01-17 15:13 - 3416023040 ___SH C:\hiberfil.sys
2016-12-23 10:46 - 2017-01-17 15:13 - 16777216 ___SH C:\swapfile.sys
2016-12-23 10:46 - 2017-01-17 15:13 - 00067584 ____S C:\Windows\bootstat.dat
2016-12-23 10:46 - 2017-01-17 15:13 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-12-23 10:46 - 2017-01-17 09:15 - 00000000 ____D C:\Windows\system32\SleepStudy
2016-12-23 10:46 - 2017-01-15 02:58 - 00524288 ___SH C:\Windows\system32\config\COMPONENTS{f8d8b5e2-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:46 - 2017-01-15 02:58 - 00065536 ___SH C:\Windows\system32\config\COMPONENTS{f8d8b5e2-4ba6-11e6-80cd-0026b955b121}.TM.blf
2016-12-23 10:46 - 2017-01-14 19:41 - 00006756 _____ C:\Windows\setupact.log
2016-12-23 10:46 - 2017-01-11 17:00 - 00524288 ___SH C:\Windows\system32\config\COMPONENTS{f8d8b5e2-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:46 - 2017-01-10 19:32 - 00226680 _____ C:\Windows\system32\FNTCACHE.DAT
2016-12-23 10:46 - 2016-12-23 10:46 - 00524288 ___SH C:\Windows\system32\config\ELAM{1cc41df8-4b1b-11e6-80cc-e41d2d1026d0}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:46 - 2016-12-23 10:46 - 00524288 ___SH C:\Windows\system32\config\ELAM{1cc41df8-4b1b-11e6-80cc-e41d2d1026d0}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:46 - 2016-12-23 10:46 - 00524288 ___SH C:\Users\Default\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:46 - 2016-12-23 10:46 - 00524288 ___SH C:\Users\Default\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:46 - 2016-12-23 10:46 - 00065536 ___SH C:\Windows\system32\config\ELAM{1cc41df8-4b1b-11e6-80cc-e41d2d1026d0}.TM.blf
2016-12-23 10:46 - 2016-12-23 10:46 - 00065536 ___SH C:\Users\Default\NTUSER.DAT{f8d8b5f1-4ba6-11e6-80cd-0026b955b121}.TM.blf
2016-12-23 10:46 - 2016-12-23 10:46 - 00047425 _____ C:\Windows\SysWOW64\license.rtf
2016-12-23 10:46 - 2016-12-23 10:46 - 00047425 _____ C:\Windows\system32\license.rtf
2016-12-23 10:46 - 2016-12-23 10:46 - 00001344 _____ C:\Windows\lsasetup.log
2016-12-23 10:46 - 2016-12-23 10:46 - 00000000 ___SD C:\Windows\system32\Microsoft
2016-12-23 10:46 - 2016-12-23 10:46 - 00000000 ___HD C:\Program Files\Uninstall Information
2016-12-23 10:46 - 2016-12-23 10:46 - 00000000 ____D C:\Windows\ServiceProfiles
2016-12-23 10:46 - 2016-12-23 10:46 - 00000000 _____ C:\Windows\setuperr.log
2016-12-23 10:45 - 2017-01-16 01:58 - 00000000 __SHD C:\System Volume Information
2016-12-23 10:45 - 2017-01-10 19:32 - 00524288 ___SH C:\Windows\system32\config\DRIVERS{f8d8b5e8-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 10:45 - 2017-01-10 19:32 - 00065536 ___SH C:\Windows\system32\config\DRIVERS{f8d8b5e8-4ba6-11e6-80cd-0026b955b121}.TM.blf
2016-12-23 10:45 - 2016-12-23 10:46 - 00524288 ___SH C:\Windows\system32\config\DRIVERS{f8d8b5e8-4ba6-11e6-80cd-0026b955b121}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 10:45 - 2016-12-23 10:46 - 00000000 ____D C:\Windows\Panther
2016-12-20 11:24 - 2016-12-20 11:24 - 00035784 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\tap0901.sys

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-01-17 15:13 - 2016-07-16 07:04 - 00262144 _____ C:\Windows\system32\config\BBI
2017-01-15 20:22 - 2016-07-16 23:51 - 00811282 _____ C:\Windows\system32\perfh007.dat
2017-01-15 20:22 - 2016-07-16 23:51 - 00179342 _____ C:\Windows\system32\perfc007.dat
2017-01-15 12:09 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\AppReadiness
2017-01-15 02:55 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\rescache
2017-01-14 19:41 - 2016-07-16 12:45 - 00000000 ____D C:\Windows\INF
2017-01-14 11:24 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps
2017-01-13 01:06 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\NDF
2017-01-11 19:30 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2017-01-11 19:30 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\Macromed
2017-01-10 19:32 - 2016-07-16 12:47 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2017-01-10 19:32 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\WinBioPlugIns
2017-01-10 19:32 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\oobe
2017-01-10 19:32 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\ShellExperiences
2017-01-10 19:32 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\Provisioning
2017-01-10 19:21 - 2016-07-16 12:36 - 00000000 ____D C:\Windows\CbsTemp
2017-01-09 18:26 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\LiveKernelReports
2017-01-04 02:45 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\Resources
2017-01-03 19:00 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2017-01-01 19:08 - 2016-07-16 07:04 - 00032768 _____ C:\Windows\system32\config\ELAM
2017-01-01 02:14 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\MUI
2017-01-01 02:14 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\MUI
2016-12-31 14:16 - 2016-07-16 23:50 - 00000000 ____D C:\Windows\system32\Drivers\de-DE
2016-12-31 14:16 - 2016-07-16 12:47 - 00015425 _____ C:\Windows\system32\OEMDefaultAssociations.xml
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___SD C:\Windows\SysWOW64\F12
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___SD C:\Windows\system32\F12
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___SD C:\Windows\system32\dsc
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___SD C:\Windows\system32\DiagSvcs
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ___RD C:\Program Files\Windows Defender
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\wbem
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\sr-Latn-CS
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\setup
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\oobe
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\migration
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\en-US
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\zh-TW
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\zh-HK
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\zh-CN
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\uk-UA
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\tr-TR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\th-TH
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\sv-SE
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\sr-Latn-CS
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\sl-SI
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\sk-SK
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\setup
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\ru-RU
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\ro-RO
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\pt-PT
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\pt-BR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\pl-PL
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\nl-NL
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\nb-NO
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\migwiz
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\migration
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\lv-LV
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\lt-LT
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\ko-KR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\ja-jp
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\it-IT
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\hu-HU
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\hr-HR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\he-IL
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\fr-FR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\fr-CA
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\fi-FI
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\et-EE
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\es-MX
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\es-ES
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\en-US
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\en-GB
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\el-GR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\da-DK
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\cs-CZ
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\config\TxR
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\Boot
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\bg-BG
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\ar-SA
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\appraiser
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\bcastdvr
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\AppPatch
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows Media Player
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows Mail
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Media Player
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Mail
2016-12-31 14:16 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-12-31 14:16 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\SysWOW64\Dism
2016-12-31 14:16 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\system32\Sysprep
2016-12-31 14:16 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\system32\Dism
2016-12-31 14:16 - 2016-07-16 07:04 - 00000000 ____D C:\Windows\servicing
2016-12-31 14:02 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\WinBioDatabase
2016-12-31 14:02 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\appcompat
2016-12-29 14:07 - 2016-07-16 12:47 - 00000000 __SHD C:\$Recycle.Bin
2016-12-29 14:07 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\CodeIntegrity
2016-12-23 11:03 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\Public\Pictures
2016-12-23 11:03 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\Help
2016-12-23 10:51 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\SysWOW64\drivers
2016-12-23 10:51 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\restore
2016-12-23 10:49 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\spool
2016-12-23 10:49 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\FxsTmp
2016-12-23 10:48 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\USOPrivate
2016-12-23 10:48 - 2016-07-16 07:04 - 00000000 ___RD C:\Users
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ___RD C:\Users\Default\Documents
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\debug
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\Default\AppData\Local
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Users\Default User\AppData\Local
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-12-23 10:47 - 2016-07-16 12:47 - 00000000 ____D C:\Program Files\Windows NT
2016-12-23 10:47 - 2016-07-16 07:04 - 00000000 __RHD C:\Users\Default
2016-12-23 10:46 - 2016-07-16 12:49 - 00001947 _____ C:\Windows\DtcInstall.log
2016-12-23 10:46 - 2016-07-16 12:47 - 00000000 ___RD C:\Windows\PrintDialog
2016-12-23 10:46 - 2016-07-16 12:47 - 00000000 ___RD C:\Windows\MiracastView
2016-12-23 10:46 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\System32\Tasks\Microsoft
2016-12-23 10:46 - 2016-07-16 12:47 - 00000000 ____D C:\Windows\system32\Recovery
2016-12-23 10:45 - 2016-07-16 12:47 - 00028672 _____ C:\Windows\system32\config\BCD-Template
2016-12-23 00:13 - 2016-07-16 12:49 - 00835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-12-23 00:13 - 2016-07-16 12:49 - 00177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2017-01-08 04:12 - 2017-01-14 20:47 - 0007597 _____ () C:\Users\Henselmann\AppData\Local\Resmon.ResmonCfg
2016-12-23 10:54 - 2016-12-23 10:54 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2017-01-01 14:03 - 2017-01-01 14:03 - 0000016 _____ () C:\ProgramData\mntemp
2016-12-31 18:14 - 2017-01-11 17:36 - 0007609 _____ () C:\ProgramData\NvTelemetryContainer.log
2016-12-31 18:14 - 2017-01-10 19:32 - 0010108 _____ () C:\ProgramData\NvTelemetryContainer.log_backup1

Einige Dateien in TEMP:
====================
C:\Users\Henselmann\AppData\Local\Temp\0Kraken0502DevProps.dll
C:\Users\Henselmann\AppData\Local\Temp\6699d3ee8dd9cf775caae782c8f44f03.dll
C:\Users\Henselmann\AppData\Local\Temp\e3a0f8dd4837fff176547bdbd39cbe30.dll


==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert

LastRegBack: 2017-01-15 01:52

==================== Ende von FRST.txt ============================
         

Alt 17.01.2017, 15:25   #11
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

Bestehen reste nach trojaner infektion?



Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 15-01-2017
durchgeführt von Henselmann (17-01-2017 15:15:39)
Gestartet von C:\Users\Henselmann\Downloads
Windows 10 Home Version 1607 (X64) (2016-12-23 09:47:40)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-2565043127-2691430490-4239563169-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2565043127-2691430490-4239563169-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-2565043127-2691430490-4239563169-1000 - Limited - Disabled) => C:\Users\defaultuser0
Gast (S-1-5-21-2565043127-2691430490-4239563169-501 - Limited - Disabled)
Henselmann (S-1-5-21-2565043127-2691430490-4239563169-1001 - Administrator - Enabled) => C:\Users\Henselmann

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

ACCUSOR Advanced Gaming Keyboard Driver (HKLM-x32\...\{93078AA8-F6A1-4C16-B527-64F08801EAAD}) (Version: 1.0 - SPEEDLINK)
Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated)
AirMech (HKLM\...\Steam App 206500) (Version:  - Carbon Games)
Akamai NetSession Interface (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Akamai) (Version:  - Akamai Technologies, Inc)
Ansel (Version: 376.33 - NVIDIA Corporation) Hidden
Apple Application Support (32-Bit) (HKLM-x32\...\{D079CAAD-0C31-47A2-9AF5-A82F9CD9B221}) (Version: 5.2 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{64E6007B-1DA9-42CD-BBE4-D5FA67A7C71D}) (Version: 5.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Archeblade (HKLM\...\Steam App 207230) (Version:  - CodeBrush Games)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.26.1 - Asmedia Technology)
AURA(GRAPHICS CARD) (HKLM-x32\...\{8318B34B-E1F1-47CD-88C7-718F16C3C782}) (Version: 0.0.2.1 - )
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.24.146 - Avira Operations GmbH & Co. KG)
Avira Connect (HKLM-x32\...\{e4e126a8-f29e-4b56-947d-fe8bbdce8b1b}) (Version: 1.2.77.32054 - Avira Operations GmbH & Co. KG)
Avira Connect (x32 Version: 1.2.77.32054 - Avira Operations GmbH & Co. KG) Hidden
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC)
Black Desert Online (HKLM-x32\...\{C1F96C92-7B8C-485F-A9CD-37A0708A2A60}) (Version: 1.0.0.5 - Daum Games EU)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Borderlands 2 (HKLM\...\Steam App 49520) (Version:  - Gearbox Software)
CCleaner (HKLM\...\CCleaner) (Version: 5.25 - Piriform)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version:  - Valve)
Discord (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.)
Elsword 1.0 (HKLM-x32\...\Elsword_de_is1) (Version: 1.0 - Gameforge4d)
Evolve Stage 2 (HKLM\...\Steam App 273350) (Version:  - Turtle Rock Studios)
Ghost in the Shell: Stand Alone Complex - First Assault Online (HKLM\...\Steam App 369200) (Version:  - Neople)
GOD EATER 2 Rage Burst (HKLM\...\Steam App 438490) (Version:  - BANDAI NAMCO Studio)
GOD EATER RESURRECTION (HKLM\...\Steam App 460870) (Version:  - )
Hearthstone (HKLM-x32\...\Hearthstone) (Version:  - Blizzard Entertainment)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Innkeeper (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Innkeeper) (Version: 0.3.4 - Curse Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1162 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.0.1042 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.9 - Intel(R) Corporation) Hidden
iTunes (HKLM\...\{81C96689-EA5B-4B7D-A04F-16326EC51BC2}) (Version: 12.5.4.42 - Apple Inc.)
League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games)
League of Legends (x32 Version: 4.2.1 - Riot Games) Hidden
MEGAsync (HKLM-x32\...\MEGAsync) (Version:  - Mega Limited)
Melody's Escape (HKLM\...\Steam App 270210) (Version:  - Icetesy SPRL)
METAL GEAR RISING: REVENGEANCE (HKLM\...\Steam App 235460) (Version:  - PlatinumGames)
METAL GEAR SOLID V: GROUND ZEROES (HKLM\...\Steam App 311340) (Version:  - Kojima Productions)
METAL GEAR SOLID V: THE PHANTOM PAIN (HKLM\...\Steam App 287700) (Version:  - Konami Digital Entertainment)
Microsoft OneDrive (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\OneDriveSetup.exe) (Version: 17.3.6720.1207 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mozilla Firefox 50.1.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 50.1.0 (x86 de)) (Version: 50.1.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.1.0 - Mozilla)
NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 376.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 376.33 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.2.2.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.2.2.49 - NVIDIA Corporation)
NVIDIA Grafiktreiber 376.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.33 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.34.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.17 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NvNodejs (Version: 3.2.2.49 - NVIDIA Corporation) Hidden
NvTelemetry (Version: 2.0.2.1 - NVIDIA Corporation) Hidden
NvvHci (Version: 2.02.0.2 - NVIDIA Corporation) Hidden
OpenOffice 4.1.3 (HKLM-x32\...\{EEA30AEB-8BA7-465B-85D4-098BB99733E7}) (Version: 4.13.9783 - Apache Software Foundation)
osu! (HKLM-x32\...\{6b2acd56-1df1-4565-ac4c-1d74d735e6a8}) (Version: latest - ppy Pty Ltd)
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
Path of Exile (HKLM\...\Steam App 238960) (Version:  - Grinding Gear Games)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.15.1104 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.6.1001.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7727 - Realtek Semiconductor Corp.)
S4 League (HKLM-x32\...\S4 League) (Version:  - )
Shadowverse (HKLM\...\Steam App 453480) (Version:  - Cygames, Inc.)
SHIELD Streaming (Version: 7.1.0351 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 3.2.2.49 - NVIDIA Corporation) Hidden
Skullgirls (HKLM\...\Steam App 245170) (Version:  - Lab Zero Games)
Skype™ 7.31 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.31.104 - Skype Technologies S.A.)
SMITE (HKLM\...\Steam App 386360) (Version:  - Hi-Rez Studios)
Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 12.0.0.5 - Bioware/EA)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Storm of Spears (HKLM\...\Steam App 463350) (Version:  - Warfare Studios)
TeamSpeak 3 Client (HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
Vindictus EU (HKLM-x32\...\Vindictus EU) (Version:  - )
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
Warframe (HKLM\...\Steam App 230410) (Version:  - Digital Extremes)
Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation)
CustomCLSID: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {2946EB12-204C-42F9-8F9A-99B1F8A9DB0E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {29601261-DDE2-4B85-81C9-D405474A2C15} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-01-11] (Adobe Systems Incorporated)
Task: {8006BE86-544F-43F0-890E-E9C74B492B0D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {89B62C76-1148-46B0-A84F-47DEAA00A5C4} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-06] (NVIDIA Corporation)
Task: {91AB939C-3E9E-4EAE-AD33-B1AB91FF8848} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-15] (Piriform Ltd)
Task: {9C7363DA-99D7-4CF8-A7CF-4135E166AF37} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {9F685957-B1A6-411E-A735-01AC01F2A609} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-01-06] (NVIDIA Corporation)
Task: {A948B7A3-B7E3-44CE-B3D7-4534F5797BA2} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-06] (NVIDIA Corporation)
Task: {B1FF650B-6F75-428B-ABF5-F3D9CF8D2486} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-01-06] (NVIDIA Corporation)
Task: {B4F5F7DF-D5D0-4373-BA7C-B0EACEE6ECEB} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-01-06] (NVIDIA Corporation)
Task: {CC904F93-8C84-47FD-8FE6-CAF54D46B2F3} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-06] (NVIDIA Corporation)
Task: {DE862DFF-97EF-4942-A44E-555C04C39D5A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {E711467A-D558-4EC7-B69B-6B542CBCF40D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation)
Task: {FD6CD81C-3205-43D7-A31D-D2A12406D28E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-06] (NVIDIA Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnet Eхplоrer.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.erolpxei.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzilla Firеfox.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzilla Firеfоx.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Мozilla Firеfoх.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\Windows\SYSTEM32\ism32k.dll
2016-12-31 14:09 - 2016-12-09 11:29 - 02681200 _____ () C:\Windows\system32\CoreUIComponents.dll
2016-11-17 01:28 - 2016-11-17 01:28 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2016-11-17 01:28 - 2016-11-17 01:28 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 04490808 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-09-25 00:20 - 2016-09-25 00:21 - 00189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2016-12-31 14:26 - 2016-12-14 12:55 - 02259232 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll
2016-12-23 11:03 - 2016-12-11 19:47 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-12-31 14:09 - 2016-12-09 11:29 - 02681200 _____ () C:\Windows\SYSTEM32\CoreUIComponents.dll
2016-10-31 20:45 - 2016-10-31 20:45 - 00592384 _____ () C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll
2016-12-29 14:00 - 2016-12-29 14:00 - 01678560 _____ () C:\Users\Henselmann\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\amd64\ClientTelemetry.dll
2016-12-31 14:08 - 2016-09-07 05:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-01-10 19:17 - 2016-12-21 08:09 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2017-01-10 19:17 - 2016-12-21 07:54 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2017-01-10 19:17 - 2016-12-21 07:48 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-01-10 19:17 - 2016-12-21 07:48 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2017-01-10 19:17 - 2016-12-21 07:48 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2017-01-10 19:17 - 2016-12-21 07:48 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2017-01-10 19:17 - 2016-12-21 07:53 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-12-31 14:39 - 2016-12-31 14:40 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2016-12-31 14:39 - 2016-12-31 14:40 - 00179712 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2016-12-31 14:39 - 2016-12-31 14:40 - 42130432 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2016-12-31 14:39 - 2016-12-31 14:40 - 02216448 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\roottools.dll
2017-01-10 19:17 - 2016-12-21 07:47 - 00114176 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Dss.BackgroundTask.dll
2016-12-31 14:23 - 2013-10-29 13:43 - 00248832 _____ () C:\Program Files (x86)\Drakonia Configurator\hid.exe
2016-12-31 14:23 - 2012-12-11 11:14 - 00240640 _____ () C:\Program Files (x86)\Drakonia Configurator\trayicon.exe
2016-08-19 09:12 - 2016-08-19 09:12 - 00298448 _____ () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
2016-12-23 11:04 - 2017-01-06 02:10 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 03776056 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll
2016-12-23 11:04 - 2017-01-06 02:10 - 00901688 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-01-15 20:17 - 2017-01-17 15:14 - 00619840 _____ () C:\Users\Henselmann\AppData\Local\Temp\0Kraken0502DevProps.dll
2016-12-31 17:35 - 2016-05-20 17:04 - 00065536 _____ () C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\Exeio.dll
2016-12-31 17:35 - 2016-06-03 10:53 - 01744896 _____ () C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\Vender.dll
2016-12-29 14:00 - 2016-12-29 14:00 - 01244376 _____ () C:\Users\Henselmann\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\ClientTelemetry.dll
2016-12-31 14:29 - 2016-12-08 16:13 - 00656160 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2016-12-31 14:29 - 2016-09-01 02:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2016-12-31 14:29 - 2016-12-20 03:25 - 02322720 _____ () C:\Program Files (x86)\Steam\video.dll
2016-12-31 14:29 - 2016-01-27 08:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2016-12-31 14:29 - 2016-01-27 08:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2016-12-31 14:29 - 2016-01-27 08:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2016-12-31 14:29 - 2016-01-27 08:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2016-12-31 14:29 - 2016-01-27 08:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2016-12-31 14:29 - 2016-09-01 02:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2016-12-31 14:29 - 2016-09-01 02:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2016-12-31 14:29 - 2016-12-20 03:25 - 00838944 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-12-31 14:29 - 2016-07-04 23:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2017-01-13 15:27 - 2017-01-04 14:28 - 01958912 _____ () C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\ffmpeg.dll
2017-01-13 15:27 - 2017-01-13 15:27 - 01082880 _____ () \\?\C:\Users\Henselmann\AppData\Roaming\discord\0.0.297\modules\discord_voice\discord_voice.node
2017-01-13 15:27 - 2017-01-13 15:27 - 03750400 _____ () \\?\C:\Users\Henselmann\AppData\Roaming\discord\0.0.297\modules\discord_voice\libdiscord.dll
2017-01-13 15:27 - 2017-01-13 15:27 - 00914432 _____ () \\?\C:\Users\Henselmann\AppData\Roaming\discord\0.0.297\modules\discord_utils\discord_utils.node
2017-01-13 15:27 - 2017-01-13 15:27 - 01127424 _____ () \\?\C:\Users\Henselmann\AppData\Roaming\discord\0.0.297\modules\discord_toaster\discord_toaster.node
2017-01-13 15:27 - 2017-01-04 14:28 - 02278912 _____ () C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\libglesv2.dll
2017-01-13 15:27 - 2017-01-04 14:28 - 00096768 _____ () C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\libegl.dll
2016-12-31 14:29 - 2016-12-05 17:21 - 67304736 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2016-12-31 14:29 - 2015-09-25 00:52 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
2017-01-17 15:14 - 2017-01-17 15:14 - 00148992 _____ () \\?\C:\Users\Henselmann\AppData\Local\Temp\785C.tmp.node
2017-01-13 15:27 - 2017-01-13 15:27 - 02658304 _____ () \\?\C:\Users\Henselmann\AppData\Roaming\discord\0.0.297\modules\discord_rpc\discord_rpc.node
2017-01-13 15:28 - 2017-01-13 15:28 - 02130432 _____ () \\?\C:\Users\Henselmann\AppData\Roaming\discord\0.0.297\modules\discord_contact_import\discord_contact_import.node
2016-04-13 09:38 - 2016-04-13 09:38 - 00482304 _____ () C:\Users\Henselmann\AppData\Local\MEGAsync\libsodium.dll
2016-12-31 14:23 - 2013-01-15 17:06 - 00061952 _____ () C:\Program Files (x86)\Drakonia Configurator\HidDevice.dll
2016-12-31 14:23 - 2011-11-22 14:18 - 00249856 _____ () C:\Program Files (x86)\Drakonia Configurator\language.dll
2016-12-31 14:24 - 2016-10-12 11:59 - 00036864 _____ () C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Lang\Lang_EN.dll
2016-12-31 14:24 - 2016-09-30 17:49 - 00061440 _____ () C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\hiddriver.dll
2016-12-31 18:20 - 2016-12-10 16:24 - 01587592 _____ () C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Electron\bin\InnkeeperUI-win32-ia32\libglesv2.dll
2016-12-31 18:20 - 2016-12-10 16:24 - 00018312 _____ () C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Electron\bin\InnkeeperUI-win32-ia32\libegl.dll
2016-12-01 09:59 - 2016-12-01 09:59 - 00143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2017-01-06 14:54 - 2016-10-08 08:13 - 50656768 _____ () C:\Users\Henselmann\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libcef.dll
2017-01-06 14:54 - 2016-10-08 08:13 - 01874944 _____ () C:\Users\Henselmann\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libglesv2.dll
2017-01-06 14:54 - 2016-10-08 08:13 - 00075264 _____ () C:\Users\Henselmann\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libegl.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

Da befinden sich 7924 mehr Seiten.

IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\123simsen.com -> www.123simsen.com

Da befinden sich 7924 mehr Seiten.


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2016-07-16 12:47 - 2016-07-16 12:45 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => LPort=139
FirewallRules: [{0E47B457-4B1D-4F16-BDC5-912AB44760B7}] => C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{7D081491-E712-482D-81EA-ACAF9C0D1C84}] => C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{311812F6-FFA3-4B11-B582-A88CBF08B84E}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{28957022-8102-4FC4-B93D-DABB32A318DC}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{3068688B-FFF3-43F2-ABB2-7308A5DF785D}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{C085FAE0-02BC-4064-9230-E38642D24846}] => C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{F720E04A-1999-42F9-93A4-CC7BADD43C66}] => C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{735F8F34-814C-400E-B045-F25D9291FA30}] => C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{84933992-693A-4FD3-8B7A-CCAE63645C77}] => C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [TCP Query User{4CCFF972-1BC8-40F1-B076-56BDDE60A32F}C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe] => C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe
FirewallRules: [UDP Query User{38DB372C-5868-4762-A226-58383CA3AB99}C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe] => C:\program files (x86)\battle.net\battle.net.8180\battle.net.exe
FirewallRules: [TCP Query User{E11A29F9-4CAE-4262-80EE-F09C654B12CF}C:\program files (x86)\overwatch\overwatch.exe] => C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [UDP Query User{7137A934-0488-483E-B554-0650C59A9E4E}C:\program files (x86)\overwatch\overwatch.exe] => C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [{2237B37D-A6F3-448C-9CB3-71768559F301}] => C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe
FirewallRules: [{4611E285-EFA0-45E2-A04D-973ED7400488}] => C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe
FirewallRules: [{FABECFE2-ED1C-4AD5-8A5A-C0AA5C8FC0D3}] => C:\Program Files (x86)\Steam\steamapps\common\Metal Gear Solid Ground Zeroes\MgsGroundZeroes.exe
FirewallRules: [{90AECE4F-6400-4E13-8A24-82E399D27D18}] => C:\Program Files (x86)\Steam\steamapps\common\Metal Gear Solid Ground Zeroes\MgsGroundZeroes.exe
FirewallRules: [{08997F7E-BE69-41A8-A3BE-D4702B8D8C33}] => C:\Program Files (x86)\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe
FirewallRules: [{3217F0C9-694B-44B3-9F66-19B9511EDD60}] => C:\Program Files (x86)\Steam\steamapps\common\MGS_TPP\mgsvtpp.exe
FirewallRules: [{A7BEA246-B5A7-4C9A-9316-4CFE6072F920}] => C:\Program Files (x86)\Steam\steamapps\common\GOD EATER 2 Rage Burst\GE2RB.exe
FirewallRules: [{4AB6EB5F-9CBE-474D-A844-91B6EE0AD80D}] => C:\Program Files (x86)\Steam\steamapps\common\GOD EATER 2 Rage Burst\GE2RB.exe
FirewallRules: [{08454A83-18A3-4233-8756-61090E5A1257}] => C:\Program Files (x86)\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{A277378D-5E7C-4428-AA23-E510F8DC2427}] => C:\Program Files (x86)\Steam\steamapps\common\Skullgirls\SkullGirls.exe
FirewallRules: [{E80B4C5C-D8E6-4A59-A712-9203F7673409}] => C:\Program Files (x86)\Steam\steamapps\common\MelodysEscape\MelodysEscape.exe
FirewallRules: [{CBFD1F7C-BBFB-4405-B483-5C4765D42E23}] => C:\Program Files (x86)\Steam\steamapps\common\MelodysEscape\MelodysEscape.exe
FirewallRules: [{3A869815-1212-45D4-9D2D-9AA2F9ABBE5A}] => C:\Program Files (x86)\Steam\steamapps\common\METAL GEAR RISING REVENGEANCE\METAL GEAR RISING REVENGEANCE.exe
FirewallRules: [{AADCC912-B087-45A3-B087-3CD064326216}] => C:\Program Files (x86)\Steam\steamapps\common\METAL GEAR RISING REVENGEANCE\METAL GEAR RISING REVENGEANCE.exe
FirewallRules: [{2B4825F4-408D-4AB6-8B23-33909203FCF4}] => C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{7EB63EB5-1CF5-4881-ACA7-5E2D1D066171}] => C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{A8CD48B4-21D7-4697-A058-4F79BBF963FB}] => C:\Program Files (x86)\Steam\steamapps\common\ArcheBlade\Binaries\Win32\Archeblade.exe
FirewallRules: [{5C14C959-3ED1-4A30-9A59-42C4DD1B717C}] => C:\Program Files (x86)\Steam\steamapps\common\ArcheBlade\Binaries\Win32\Archeblade.exe
FirewallRules: [TCP Query User{3630E24F-E6F8-4CB1-9A59-88AB59965CC0}C:\program files (x86)\hearthstone\hearthstone.exe] => C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{74F39530-9606-4973-B494-966E98F7282E}C:\program files (x86)\hearthstone\hearthstone.exe] => C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [{EC8031FF-0FBA-4356-A349-3721AB753BEC}] => C:\Program Files (x86)\Steam\steamapps\common\firstassault\Shipping\GAME.exe
FirewallRules: [{E4409F3B-2A26-4C8F-86C8-38F1EE625014}] => C:\Program Files (x86)\Steam\steamapps\common\firstassault\Shipping\GAME.exe
FirewallRules: [TCP Query User{561E25DD-1E58-47A4-810B-2A17B5016086}C:\users\henselmann\appdata\local\akamai\netsession_win.exe] => C:\users\henselmann\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{7DB71C7A-EC90-40FF-BF06-E801F77F2F02}C:\users\henselmann\appdata\local\akamai\netsession_win.exe] => C:\users\henselmann\appdata\local\akamai\netsession_win.exe
FirewallRules: [{A9BACE0D-6103-400C-98EE-6AA7A1CF5611}] => C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{530CF341-1046-404E-A902-6F308DE0B8C1}] => C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{721D84BD-1079-4FC3-82D2-2608DC83589B}] => C:\Program Files (x86)\GameforgeLive\gfl_client.exe
FirewallRules: [{27875A94-7829-476F-BC81-CB37A09E0B3E}] => C:\Nexon\Vindictus EU\en-EU\NMService.exe
FirewallRules: [{4F628093-382A-49E0-9E93-A91B0FD7973B}] => C:\Nexon\Vindictus EU\en-EU\NMService.exe
FirewallRules: [{85A4399C-87F0-4834-9594-76143F328980}] => D:\SteamLibrary\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe
FirewallRules: [{8BF46A5A-B075-45EA-95BC-8BB637423A2D}] => D:\SteamLibrary\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe
FirewallRules: [TCP Query User{28D9C26A-55B2-46F2-AE19-AEDDFFE4BE06}C:\users\henselmann\appdata\local\akamai\netsession_win.exe] => C:\users\henselmann\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{4CFE441A-8908-4057-8242-56CE80B6D9F7}C:\users\henselmann\appdata\local\akamai\netsession_win.exe] => C:\users\henselmann\appdata\local\akamai\netsession_win.exe
FirewallRules: [{C121A03C-2844-43E8-A7A5-2D24C43C644A}] => D:\SteamLibrary\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe
FirewallRules: [{4C843A58-92EE-4C2E-8317-EEE255475D23}] => D:\SteamLibrary\steamapps\common\SMITE\Binaries\Win32\HirezBridge.exe
FirewallRules: [{A547D236-CAE0-4BA4-8EE7-DD572F75D6EE}] => C:\Users\Henselmann\Downloads\bin\BlackDesert32.exe
FirewallRules: [{EBAC73D0-7BBD-4950-8F9B-C740E180B60D}] => C:\Users\Henselmann\Downloads\bin64\BlackDesert64.exe
FirewallRules: [{10C7C3EC-1AA0-4C17-9D63-CEB53AB85662}] => C:\Users\Henselmann\Downloads\BlackDesert_Launcher.exe
FirewallRules: [{62940371-2902-4D86-A26F-2B29FE71B751}] => C:\Users\Henselmann\Downloads\BlackDesert_Downloader.exe
FirewallRules: [{8D00E89F-64C2-4842-AA26-D95A0B16DA18}] => %ProgramFiles%\Zune\Zune.exe
FirewallRules: [{1407B8BF-F9B2-4609-8368-A576522B4FA9}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{2B776481-A9E4-4BF1-984E-7CF03F83857A}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{62ABD600-A976-4823-8B7F-E65784B7F4C8}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{93A99CF4-4353-4A9A-A415-4975C776E7E5}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{9BE63206-4F48-43E6-9B41-C87703E1DDC4}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{48484955-A33F-4C22-997A-E5103467B372}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{2373A42C-CE1F-4854-B9F0-10C5BA9FB2C7}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{5A335A4D-D463-44B0-9D14-9301378EE5FC}] => %ProgramFiles%\Zune\ZuneNSS.exe
FirewallRules: [{095367D4-1A5B-4D82-A785-CCA6EE7AAF82}] => D:\Gameforge\DEU_deu\Elsword\data\x2.exe
FirewallRules: [{7666EA8C-6FBD-497B-A4C1-C2641BF02B7B}] => D:\Gameforge\DEU_deu\Elsword\data\x2.exe
FirewallRules: [{10404BD8-04A3-4D38-A8CE-D9290A94537D}] => C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe
FirewallRules: [{A25E264A-7F0F-4DCE-B35E-68841122531E}] => C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe
FirewallRules: [{6CD6C2FD-BEBC-479C-B4C6-5F3E968E5345}] => D:\SteamLibrary\steamapps\common\GOD EATER RESURRECTION\GER.exe
FirewallRules: [{E59D8D82-98C0-4AAC-A2FE-F2FC808DAF1E}] => D:\SteamLibrary\steamapps\common\GOD EATER RESURRECTION\GER.exe
FirewallRules: [TCP Query User{915F5371-B0FD-48D5-B08C-48676C27C85E}D:\gameforge\deu_deu\tera\tera-launcher.exe] => D:\gameforge\deu_deu\tera\tera-launcher.exe
FirewallRules: [UDP Query User{E4192CCA-2536-4E84-8387-02BBD6B34B4F}D:\gameforge\deu_deu\tera\tera-launcher.exe] => D:\gameforge\deu_deu\tera\tera-launcher.exe
FirewallRules: [TCP Query User{5673D191-6E89-47E5-A523-B01E56A12EFE}D:\black desert\bin64\blackdesert64.exe] => D:\black desert\bin64\blackdesert64.exe
FirewallRules: [UDP Query User{A12F0534-44D8-4A4E-B97F-BD680E9B1848}D:\black desert\bin64\blackdesert64.exe] => D:\black desert\bin64\blackdesert64.exe
FirewallRules: [TCP Query User{488FF65C-D5B5-4C52-B31F-8F478CC791A3}D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe] => D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [UDP Query User{4C7B9974-3AC5-4C9F-98F0-07C44EFC37F3}D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe] => D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe
FirewallRules: [{3F456006-F657-48E0-975E-61F64B5E8865}] => D:\SteamLibrary\steamapps\common\Shadowverse\Shadowverse.exe
FirewallRules: [{226993B5-1267-4771-8EF4-C6B3E646D993}] => D:\SteamLibrary\steamapps\common\Shadowverse\Shadowverse.exe
FirewallRules: [{5CCB0AE5-8B3B-4D03-BB53-6CD6395006F5}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{0FC46330-C5DC-4686-9B8D-ABD276748B6C}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{65FBF860-A52D-4AE3-94D5-28AB63C101D1}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{26A3C780-1A16-4FEF-8363-1102E5E0A0D1}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{1487859B-3896-4A73-A4D4-56A58BB2E151}] => D:\SteamLibrary\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{D3F4C190-771B-4275-85FB-6B13E1A3CD31}] => D:\SteamLibrary\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [{6969D4B7-4B62-46F8-9119-5653F7156FDE}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{5539CECA-DF1E-4A1E-834D-763043484F5B}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{391F473C-6125-42D8-AB30-60CFB4A99F8A}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{3629EE8D-AE32-42F0-AB92-B75F5FEB1143}] => D:\SteamLibrary\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{EA750E24-914F-4194-9F5F-2478FA74E74F}] => D:\SteamLibrary\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{04E083C1-5609-4B55-AA74-52F1E77991E4}] => D:\SteamLibrary\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [TCP Query User{3CD26ACF-12EA-4431-908F-B4B7B9B58BCE}D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe] => D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{69BA4474-0A01-4D5C-8F25-9BB0083C0FB1}D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe] => D:\steamlibrary\steamapps\common\smite\binaries\win32\smite.exe
FirewallRules: [{BDAA294F-A5D8-4C9E-A3F2-025136721058}] => D:\SteamLibrary\steamapps\common\AirMech\AirMech.exe
FirewallRules: [{4459E74B-3F02-4411-8AEA-6DAD77F49008}] => D:\SteamLibrary\steamapps\common\AirMech\AirMech.exe
FirewallRules: [{397C14B3-3C45-4BCF-A2B3-C11C8A494EA7}] => D:\SWTOR\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{825EFA01-6B1C-40F0-ABDF-8842711C5E56}] => D:\SWTOR\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{3E21308B-59E3-4114-BCCD-C86EBB10D6F3}] => D:\SWTOR\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{BE34C4EB-ED71-4E2E-ACA7-EF41C57388EB}] => D:\SWTOR\Star Wars-The Old Republic\launcher.exe
FirewallRules: [{D7747FEC-2B93-4428-8261-E7A7846DA098}] => D:\SteamLibrary\steamapps\common\Storm of Spears\Storm of Spears.exe
FirewallRules: [{9CC219F5-1817-4CAE-858C-AE4E95B2044F}] => D:\SteamLibrary\steamapps\common\Storm of Spears\Storm of Spears.exe
FirewallRules: [TCP Query User{DCB81F3C-3596-4BF6-92B1-C270B073DAD9}C:\program files (x86)\roccat\power-grid\roccatpowergrid.exe] => C:\program files (x86)\roccat\power-grid\roccatpowergrid.exe
FirewallRules: [UDP Query User{8C5218B9-42C8-4C44-A374-C7668602744A}C:\program files (x86)\roccat\power-grid\roccatpowergrid.exe] => C:\program files (x86)\roccat\power-grid\roccatpowergrid.exe
FirewallRules: [{FF71E6F7-5EF2-4F98-A6C4-76F6D2B84C4F}] => C:\Program Files (x86)\Steam\steamapps\common\firstassault\Shipping\nxsteam.exe
FirewallRules: [{AE1E05B6-134B-4222-88E3-AFAE78761E63}] => C:\Program Files (x86)\Steam\steamapps\common\firstassault\Shipping\nxsteam.exe
FirewallRules: [{162F50A2-BC1A-4557-B7FD-F6CB367C6B7F}] => C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{E3A28816-EC62-494E-90FF-858E7ADC3AF5}] => C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E031CA45-554A-4094-8BC9-DB6AB2F7FB62}] => C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{91EADB84-6E92-473E-99C3-244A08422808}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{F8CC9070-DCB4-4AAE-A8DF-877B1749960E}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{59F9F9BE-0C78-47E7-BE88-313E7D73D6FC}] => D:\iTunes\iTunes.exe
FirewallRules: [{54FAC5CA-967B-461F-AD89-288D86EE8C1F}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{EE207509-480E-45D8-B28B-16FF71D3609D}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{E87A1080-040C-438C-B219-59016CED824A}] => D:\SteamLibrary\steamapps\common\Path of Exile\PathOfExileSteam.exe
FirewallRules: [{25867A8F-B473-406A-8C60-B47FAB8F5B20}] => D:\SteamLibrary\steamapps\common\Path of Exile\PathOfExileSteam.exe

==================== Wiederherstellungspunkte =========================


==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (01/17/2017 12:24:43 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm mbar.exe, Version 1.9.3.1001 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: e08

Startzeit: 01d2704f720e8dab

Beendigungszeit: 39429

Anwendungspfad: C:\Users\Henselmann\Desktop\mbar\mbar.exe

Berichts-ID: dc89e865-dc42-11e6-9688-1c1b0d61086e

Vollständiger Name des fehlerhaften Pakets: 

Auf das fehlerhafte Paket bezogene Anwendungs-ID:

Error: (01/17/2017 12:21:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SDUpdSvc.exe, Version: 2.5.44.79, Zeitstempel: 0x57e24e33
Name des fehlerhaften Moduls: rtl150.bpl, Version: 15.0.3953.35171, Zeitstempel: 0x4cca139f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000a116
ID des fehlerhaften Prozesses: 0x91c
Startzeit der fehlerhaften Anwendung: 0x01d26f63e52ac21a
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
Pfad des fehlerhaften Moduls: C:\Program Files (x86)\Spybot - Search & Destroy 2\rtl150.bpl
Berichtskennung: 3a9db971-7ad1-43aa-b467-91c4d0fe1bd8
Vollständiger Name des fehlerhaften Pakets: 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (01/16/2017 10:36:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: x2.exe, Version: 0.0.0.0, Zeitstempel: 0x585029de
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.479, Zeitstempel: 0x58256ca0
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0002a5d0
ID des fehlerhaften Prozesses: 0x3078
Startzeit der fehlerhaften Anwendung: 0x01d2702e81db0bdb
Pfad der fehlerhaften Anwendung: d:\gameforge\deu_deu\elsword\data\x2.exe
Pfad des fehlerhaften Moduls: C:\Windows\SYSTEM32\ntdll.dll
Berichtskennung: ab8607a9-d1b4-421c-82d2-1a1be710a1a8
Vollständiger Name des fehlerhaften Pakets: 
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   23 D.F.8.3.9.6.D.2.7.1.C.A.9.1.4.6.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-BPA0M7P.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.114:5353   25 D.F.8.3.9.6.D.2.7.1.C.A.9.1.4.6.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-BPA0M7P-2.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   23 1.4.A.D.5.0.1.A.5.2.F.B.2.3.8.3.3.C.4.D.9.7.C.8.F.6.0.0.3.0.0.2.ip6.arpa. PTR DESKTOP-BPA0M7P.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.114:5353   25 1.4.A.D.5.0.1.A.5.2.F.B.2.3.8.3.3.C.4.D.9.7.C.8.F.6.0.0.3.0.0.2.ip6.arpa. PTR DESKTOP-BPA0M7P-2.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   23 D.F.8.3.9.6.D.2.7.1.C.A.9.1.4.6.3.C.4.D.9.7.C.8.F.6.0.0.3.0.0.2.ip6.arpa. PTR DESKTOP-BPA0M7P.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.2.114:5353   25 D.F.8.3.9.6.D.2.7.1.C.A.9.1.4.6.3.C.4.D.9.7.C.8.F.6.0.0.3.0.0.2.ip6.arpa. PTR DESKTOP-BPA0M7P-2.local.

Error: (01/15/2017 07:14:05 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   23 114.2.168.192.in-addr.arpa. PTR DESKTOP-BPA0M7P.local.


Systemfehler:
=============
Error: (01/17/2017 03:13:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "IOMap" wurde aufgrund folgenden Fehlers nicht gestartet: 
Das System kann die angegebene Datei nicht finden.

Error: (01/17/2017 03:13:06 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 und der APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.

Error: (01/17/2017 03:12:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Malwarebytes Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (01/17/2017 03:12:44 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Modules Installer" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (01/17/2017 03:12:44 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (01/17/2017 03:12:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Steam Client Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (01/17/2017 03:12:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "iPod-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (01/17/2017 03:12:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (01/17/2017 03:12:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Avira Service Host" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (01/17/2017 03:12:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "NVIDIA Display Container LS" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 1000 Millisekunden durchgeführt: Neustart des Diensts.


CodeIntegrity:
===================================
  Date: 2017-01-15 02:20:09.788
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-15 01:27:39.432
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-15 01:27:33.626
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-14 19:40:03.477
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-02 17:21:56.445
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2017-01-01 23:08:43.715
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2016-12-31 14:20:02.290
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

  Date: 2016-12-31 14:20:02.128
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i5-6600K CPU @ 3.50GHz
Prozentuale Nutzung des RAM: 41%
Installierter physikalischer RAM: 8144.44 MB
Verfügbarer physikalischer RAM: 4797.09 MB
Summe virtueller Speicher: 11984.44 MB
Verfügbarer virtueller Speicher: 8027.81 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:237.92 GB) (Free:44.52 GB) NTFS
Drive d: () (Fixed) (Total:1863 GB) (Free:1646.22 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==================== Ende von Addition.txt ============================
         

Alt 18.01.2017, 17:15   #12
burningice
/// Malwareteam
 
Bestehen reste nach trojaner infektion? - Standard

Bestehen reste nach trojaner infektion?



Schritt 1
Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnet Eхplоrer.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.erolpxei.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzilla Firеfox.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzilla Firеfоx.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Мozilla Firеfoх.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\MountPoints2: {9a23862d-c8f4-11e6-966e-806e6f6e6963} - "E:\UI.exe" 
emptytemp:
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.



Schritt: 2

ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Hinweis: Dieser Scan kann schon einmal mehrere Stunden dauern...

Schritt: 3
Bitte starte wieder FRST, setze den Haken bei Addition und bei Shortcut.txt und drücke auf Untersuchen.

Cave: Es steht auch Shortcut.txt, nicht nur Addition.txt


Bitte poste in deiner nächsten Antwort also:
  • Logfile von ESET
  • Shortcut.txt
  • Fixlog.txt
  • Frst.txt
  • Addition.txt
__________________
Mfg,
Rafael

~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~

Unterstütze uns mit einer Spende
......... Lob, Kritik oder Wünsche .........
.......... Folge uns auf Facebook ..........

Alt 18.01.2017, 22:26   #13
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

Bestehen reste nach trojaner infektion?



Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=23bbb5e8e3054242aab1a80e6ea49dab
# end=init
# utc_time=2017-01-18 05:10:11
# local_time=2017-01-18 06:10:11 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=6.2.9200 NT 
Update Init
Update Download
Update Finalize
Updated modules version: 32107
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=23bbb5e8e3054242aab1a80e6ea49dab
# end=updated
# utc_time=2017-01-18 05:14:30
# local_time=2017-01-18 06:14:30 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=6.2.9200 NT 
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=23bbb5e8e3054242aab1a80e6ea49dab
# end=restart
# utc_time=2017-01-18 05:15:25
# local_time=2017-01-18 06:15:25 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=6.2.9200 NT 
# compatibility_mode_1='Avira Antivirus'
# compatibility_mode=1815 16777213 100 96 4680 3726850 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 5086 16090341 0 0
# scanned=4229
# found=1
# cleaned=0
# scan_time=55
sh=D0B3A06175E9A1367C04CD453CD6369787AAF222 ft=1 fh=50a478f397426e16 vn="Variante von MSIL/Adware.InstallBar.A Anwendung" ac=I fn="C:\AdwCleaner\quarantine\files\ewssecmfgvcozamkdxfexyrlqfpbmmxy\Service.dll"
         
Code:
ATTFilter
Untersuchungsergebnis der Verknüpfungen des Benutzers (x64) Version: 15-01-2017
durchgeführt von Henselmann (18-01-2017 19:56:51)
Gestartet von C:\Users\Henselmann\Desktop
Start-Modus: Normal

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)





Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\01 - File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\03 - Documents.lnk -> C:\Users\Henselmann\Documents ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\04 - Downloads.lnk -> C:\Users\Henselmann\Downloads ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk -> C:\Users\Henselmann\Music ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk -> C:\Users\Henselmann\Pictures ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk -> C:\Users\Henselmann\Videos ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\08 - Homegroup.lnk -> Microsoft.Windows.Homegroup
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\09 - Network.lnk -> Microsoft.Windows.Network
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\10 - UserProfile.lnk -> C:\Users\Henselmann ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Black Desert Online.lnk -> D:\Black desert\Black Desert Online Launcher.exe (Daum Games)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Вlaсk Dеsеrt Online.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.rehcnual enilno tresed kcalb.bat (Keine Datei)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{56EC47AA-5813-4FF6-8E75-544026FBEA83}\AppleSoftwareUpdateIco.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiracastView.lnk -> C:\Windows\MiracastView\MiracastView.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrintDialog.lnk -> C:\Windows\PrintDialog\PrintDialog.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zune\Zune.lnk -> C:\Program Files\Zune\Zune.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam.lnk -> C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHARKOON Drakonia\  entfernen.lnk -> C:\Windows\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHARKOON Drakonia\SHARKOON Drakonia Configuration.lnk -> C:\Program Files (x86)\Drakonia Configurator\config.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch\Overwatch.lnk -> C:\Program Files (x86)\Overwatch\Overwatch Launcher.exe (Blizzard Entertainment)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch\Оverwаtсh.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.rehcnual hctawrevo.bat (Keine Datei)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\GeForce Experience.lnk -> C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe (NVIDIA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision Photo Viewer.lnk -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe (NVIDIA Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon\Vindictus EU\Launch Vindictus.lnk -> C:\Nexon\Vindictus EU\en-EU\VindictusLauncher.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon\Vindictus EU\Lаunch Vindictus.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.rehcnualsutcidniv.bat (Keine Datei)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes\Malwarebytes.lnk -> C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes\Uninstall Malwarebytes.lnk -> C:\Program Files\Malwarebytes\Anti-Malware\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\iTunes.lnk -> D:\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes\Über iTunes.lnk -> D:\iTunes\iTunes.Resources\de.lproj\About iTunes.rtf ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel\Intel(R) Rapid Storage Technology.lnk -> C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorUI.exe (Intel Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios\Hi-Rez Diagnostics and Support.lnk -> C:\Program Files (x86)\Hi-Rez Studios\HiRezGamesDiagAndSupport.exe (Hewlett-Packard Company)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm\Heroes of the Storm.lnk -> C:\Program Files (x86)\Heroes of the Storm\Heroes of the Storm.exe (Blizzard Entertainment)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone\Hearthstone.lnk -> C:\Program Files (x86)\Hearthstone\Hearthstone Beta Launcher.exe (Blizzard Entertainment)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone\Нeаrthstonе.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.rehcnual ateb enotshtraeh.bat (Keine Datei)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live\Gameforge Live entfernen.lnk -> C:\Program Files (x86)\GameforgeLive\unins000.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live\Gameforge Live.lnk -> C:\Program Files (x86)\GameforgeLive\GameforgeLive.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESTsoft\ALTools Update.lnk -> C:\Program Files (x86)\ESTsoft\ALUpdate\ALUpdate.exe (ESTsoft Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESTsoft\ALZip\ALZip.lnk -> C:\Program Files (x86)\ESTsoft\ALZip\ALZip.exe (ESTsoft Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESTsoft\ALZip\UnInstall.lnk -> C:\Program Files (x86)\ESTsoft\ALZip\unins000.exe (ESTsoft Corp.)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Desert Online\Black Desert Online.lnk -> D:\Black desert\Black Desert Online Launcher.exe (Daum Games)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Desert Online\Uninstall.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{C1F96C92-7B8C-485F-A9CD-37A0708A2A60}\setup.exe (Daum Games EU)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Desert Online\Вlaсk Dеsеrt Onlinе.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.rehcnual enilno tresed kcalb.bat (Keine Datei)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net\Battle.net.lnk -> C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe (Blizzard Entertainment)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net\Ваttlе.nеt.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.rehcnual ten.elttab.bat (Keine Datei)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Antivirus\Avira Antivirus Hilfe.lnk -> C:\Program Files (x86)\Avira\Antivirus\208\avwin.chm ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Antivirus\Avira Antivirus starten.lnk -> C:\Program Files (x86)\Avira\Antivirus\avcenter.exe (Avira Operations GmbH & Co. KG)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Antivirus\Avira im Internet.lnk -> C:\Program Files (x86)\Avira\Antivirus\weblink.url ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft® Windows® Operating System)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Action Replay PowerSaves 3DS\Action Replay PowerSaves 3DS.lnk -> C:\Program Files (x86)\Action Replay PowerSaves 3DS\PowerSaves3DS.exe ()
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Quick Assist.lnk -> C:\Windows\System32\quickassist.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\Links\Desktop.lnk -> C:\Users\Henselmann\Desktop ()
Shortcut: C:\Users\Henselmann\Links\Downloads.lnk -> C:\Users\Henselmann\Downloads ()
Shortcut: C:\Users\Henselmann\Desktop\Battle.net.lnk -> C:\Program Files (x86)\Battle.net\Battle.net.exe (Blizzard Entertainment)
Shortcut: C:\Users\Henselmann\Desktop\Black Desert Online.lnk -> D:\Black desert\Black Desert Online Launcher.exe (Daum Games)
Shortcut: C:\Users\Henselmann\Desktop\Hearthstone.lnk -> C:\Program Files (x86)\Hearthstone\Hearthstone.exe ()
Shortcut: C:\Users\Henselmann\Desktop\MEGAsync.lnk -> C:\Users\Henselmann\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
Shortcut: C:\Users\Henselmann\Desktop\OpenOffice 4.1.3.lnk -> C:\Program Files (x86)\OpenOffice 4\program\soffice.exe (Apache Software Foundation)
Shortcut: C:\Users\Henselmann\Desktop\osu!.lnk -> C:\Users\Henselmann\AppData\Local\osu!\osu!.exe (ppy)
Shortcut: C:\Users\Henselmann\Desktop\Overwatch.lnk -> C:\Program Files (x86)\Overwatch\Overwatch Launcher.exe (Blizzard Entertainment)
Shortcut: C:\Users\Henselmann\Desktop\S4 League.lnk -> D:\AeriaGames\S4League\patcher_s4.exe ((c) Neowiz Games)
Shortcut: C:\Users\Henselmann\Desktop\SWTOR.lnk -> D:\SWTOR\Star Wars-The Old Republic\launcher.exe (BioWare)
Shortcut: C:\Users\Henselmann\Desktop\TeamSpeak 3 Client.lnk -> C:\Users\Henselmann\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe (TeamSpeak Systems GmbH)
Shortcut: C:\Users\Henselmann\Desktop\Vindictus.lnk -> C:\Nexon\Vindictus EU\en-EU\VindictusLauncher.exe ()
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\Henselmann\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\osu!.lnk -> C:\Users\Henselmann\AppData\Local\osu!\osu!.exe (ppy)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk -> C:\Users\Henselmann\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe (TeamSpeak Systems GmbH)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk -> C:\Users\Henselmann\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3\OpenOffice Base.lnk -> C:\Program Files (x86)\OpenOffice 4\program\sbase.exe (Apache Software Foundation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3\OpenOffice Calc.lnk -> C:\Program Files (x86)\OpenOffice 4\program\scalc.exe (Apache Software Foundation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3\OpenOffice Draw.lnk -> C:\Program Files (x86)\OpenOffice 4\program\sdraw.exe (Apache Software Foundation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3\OpenOffice Impress.lnk -> C:\Program Files (x86)\OpenOffice 4\program\simpress.exe (Apache Software Foundation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3\OpenOffice Math.lnk -> C:\Program Files (x86)\OpenOffice 4\program\smath.exe (Apache Software Foundation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3\OpenOffice Writer.lnk -> C:\Program Files (x86)\OpenOffice 4\program\swriter.exe (Apache Software Foundation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3\OpenOffice.lnk -> C:\Program Files (x86)\OpenOffice 4\program\soffice.exe (Apache Software Foundation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync\MEGA Website.lnk -> C:\Users\Henselmann\AppData\Local\MEGAsync\MEGA Website.url ()
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync\MEGAsync.lnk -> C:\Users\Henselmann\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync\Uninstall.lnk -> C:\Users\Henselmann\AppData\Local\MEGAsync\uninst.exe (MEGA Limited)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\SendTo\Bluetooth-Dateiübertragung.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
Shortcut: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
Shortcut: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
Shortcut: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
Shortcut: C:\Users\Public\Desktop\ALZip.lnk -> C:\Program Files (x86)\ESTsoft\ALZip\ALZip.exe (ESTsoft Corp.)
Shortcut: C:\Users\Public\Desktop\AURA(GRAPHICS CARD).lnk -> C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\AURA(GRAPHICS CARD).exe (TODO: <Company name>)
Shortcut: C:\Users\Public\Desktop\Battle.net.lnk -> C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe (Blizzard Entertainment)
Shortcut: C:\Users\Public\Desktop\Black Desert Online.lnk -> D:\Black desert\Black Desert Online Launcher.exe (Daum Games)
Shortcut: C:\Users\Public\Desktop\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
Shortcut: C:\Users\Public\Desktop\Gameforge Live.lnk -> C:\Program Files (x86)\GameforgeLive\GameforgeLive.exe ()
Shortcut: C:\Users\Public\Desktop\GeForce Experience.lnk -> C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe (NVIDIA Corporation)
Shortcut: C:\Users\Public\Desktop\Hearthstone.lnk -> C:\Program Files (x86)\Hearthstone\Hearthstone Beta Launcher.exe (Blizzard Entertainment)
Shortcut: C:\Users\Public\Desktop\Heroes of the Storm.lnk -> C:\Program Files (x86)\Heroes of the Storm\Heroes of the Storm.exe (Blizzard Entertainment)
Shortcut: C:\Users\Public\Desktop\iTunes.lnk -> D:\iTunes\iTunes.exe (Apple Inc.)
Shortcut: C:\Users\Public\Desktop\League of Legends.lnk -> C:\Riot Games\League of Legends\LeagueClient.exe ()
Shortcut: C:\Users\Public\Desktop\Malwarebytes.lnk -> C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes)
Shortcut: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Shortcut: C:\Users\Public\Desktop\Overwatch.lnk -> C:\Program Files (x86)\Overwatch\Overwatch Launcher.exe (Blizzard Entertainment)
Shortcut: C:\Users\Public\Desktop\Skype.lnk -> C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe ()
Shortcut: C:\Users\Public\Desktop\Star Wars - The Old Republic.lnk -> D:\SWTOR\Star Wars-The Old Republic\launcher.exe (BioWare)
Shortcut: C:\Users\Public\Desktop\Steam.lnk -> C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation)
Shortcut: C:\Users\Public\Desktop\Vindictus EU.lnk -> C:\Nexon\Vindictus EU\en-EU\VindictusLauncher.exe ()
Shortcut: C:\Users\Public\Desktop\Zune.lnk -> C:\Program Files\Zune\Zune.exe (Microsoft Corporation)




ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft® Windows® Operating System) -> /7
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\ACCUSOR Advanced Gaming Keyboard Driver.lnk -> C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Monitor.EXE (SPEEDLINK) -> 1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Uninstall.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{93078AA8-F6A1-4C16-B527-64F08801EAAD}\setup.exe (Macrovision Corporation) -> -runfromtemp -l0x0009
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer\Razer Synapse\Razer Synapse.lnk -> C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Razer Inc.) -> -launch
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision preview pack 1.lnk -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /show
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios\Uninstall All Hi-Rez Games.lnk -> C:\Program Files (x86)\Hi-Rez Studios\HiRezGamesDiagAndSupport.exe (Hewlett-Packard Company) -> uninstall=all
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live\Elsword.lnk -> C:\Program Files (x86)\GameforgeLive\GameforgeLive.exe () -> "D:\Gameforge\DEU_deu\Elsword\Elsword.exe" -start Elsword
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live\TERA.lnk -> C:\Program Files (x86)\GameforgeLive\GameforgeLive.exe () -> "D:\Gameforge\DEU_deu\TERA\tera-launcher.exe" -start TERA
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Connect.lnk -> C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Avira Operations GmbH & Co. KG) -> /showMiniGui
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Default Apps.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsDefaults
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Devices.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemDevices
ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft® Windows® Operating System) -> /0
ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Default Apps.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsDefaults
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Devices.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemDevices
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\SendTo\Faxempfänger.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft® Windows® Operating System) -> /0
ShortcutWithArgument: C:\Users\defaultuser0\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\Henselmann\Desktop\ACCUSOR Advanced Gaming Keyboard Driver.lnk -> C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Monitor.EXE (SPEEDLINK) -> 1
ShortcutWithArgument: C:\Users\Henselmann\Desktop\Discord.lnk -> C:\Users\Henselmann\AppData\Local\Discord\Update.exe (GitHub) -> --processStart Discord.exe
ShortcutWithArgument: C:\Users\Henselmann\Desktop\Innkeeper.lnk -> C:\Users\Henselmann\AppData\Local\Innkeeper\Update.exe (Innkeeper) -> --processStart Innkeeper.exe
ShortcutWithArgument: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Default Apps.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsDefaults
ShortcutWithArgument: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Devices.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemDevices
ShortcutWithArgument: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Innkeeper\Innkeeper.lnk -> C:\Users\Henselmann\AppData\Local\Innkeeper\Update.exe (Innkeeper) -> --processStart Innkeeper.exe
ShortcutWithArgument: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc\Discord.lnk -> C:\Users\Henselmann\AppData\Local\Discord\Update.exe (GitHub) -> --processStart Discord.exe
ShortcutWithArgument: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\SendTo\Faxempfänger.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
ShortcutWithArgument: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\SendTo\Skype.lnk -> C:\Program Files (x86)\Skype\Phone\Skype.exe (Skype Technologies S.A.) -> /sendto:
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\osu!\repair osu!.lnk -> C:\Users\Henselmann\AppData\Local\osu!\osu!.exe (ppy) -> -config
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft® Windows® Operating System) -> /0
ShortcutWithArgument: C:\Users\Henselmann\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
ShortcutWithArgument: C:\Users\Public\Desktop\Avira Connect.lnk -> C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Avira Operations GmbH & Co. KG) -> /showMiniGui
ShortcutWithArgument: C:\Users\Public\Desktop\Elsword.lnk -> C:\Program Files (x86)\GameforgeLive\GameforgeLive.exe () -> "D:\Gameforge\DEU_deu\Elsword\Elsword.exe" -start Elsword
ShortcutWithArgument: C:\Users\Public\Desktop\TERA.lnk -> C:\Program Files (x86)\GameforgeLive\GameforgeLive.exe () -> "D:\Gameforge\DEU_deu\TERA\tera-launcher.exe" -start TERA


InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam\Steam Support Center.url -> URL: hxxp://support.steampowered.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon\Vindictus EU\Go to Vindictus Website.url -> URL: hxxp://vindictus.nexoneu.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live\Gameforge Live Webseite.url -> URL: hxxp://gfl.gameforge.com/
InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> URL: hxxp://www.piriform.com/ccleaner
InternetURL: C:\Users\Henselmann\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142

InternetURL: C:\Users\Henselmann\AppData\Local\MEGAsync\MEGA Website.url -> URL: hxxp://www.mega.nz

==================== Ende von Shortcut.txt =============================
         
Code:
ATTFilter
Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 15-01-2017
durchgeführt von Henselmann (18-01-2017 17:46:08) Run:1
Gestartet von C:\Users\Henselmann\Desktop
Geladene Profile: defaultuser0 & Henselmann &  (Verfügbare Profile: defaultuser0 & Henselmann)
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnet Eхplоrer.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.erolpxei.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzilla Firеfox.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzilla Firеfоx.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic
Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Мozilla Firеfoх.lnk -> C:\Users\Henselmann\AppData\Roaming\Browsers\exe.xoferif.bat (Keine Datei) <===== Cyrillic
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\MountPoints2: {9a23862d-c8f4-11e6-966e-806e6f6e6963} - "E:\UI.exe" 
emptytemp:
         
*****************

C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnet Eхplоrer.lnk => erfolgreich verschoben
C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzilla Firеfox.lnk => erfolgreich verschoben
C:\Users\Henselmann\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Моzilla Firеfоx.lnk => erfolgreich verschoben
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Мozilla Firеfoх.lnk => erfolgreich verschoben
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Wert erfolgreich entfernt
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9a23862d-c8f4-11e6-966e-806e6f6e6963} => Schlüssel erfolgreich entfernt
HKCR\CLSID\{9a23862d-c8f4-11e6-966e-806e6f6e6963} => Schlüssel nicht gefunden. 

=========== EmptyTemp: ==========

BITS transfer queue => 2534537 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 59515966 B
Java, Flash, Steam htmlcache => 237031621 B
Windows/system/drivers => 5633651 B
Edge => 9863509 B
Chrome => 0 B
Firefox => 385042729 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 28538 B
NetworkService => 82118 B
defaultuser0 => 128 B
Henselmann => 422663543 B

RecycleBin => 296153558 B
EmptyTemp: => 1.3 GB temporäre Dateien entfernt.

================================


Das System musste neu gestartet werden.

==== Ende von Fixlog 17:46:23 ====
         

Alt 18.01.2017, 22:29   #14
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

Bestehen reste nach trojaner infektion?



Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 15-01-2017
durchgeführt von Henselmann (Administrator) auf DESKTOP-BPA0M7P (18-01-2017 19:54:33)
Gestartet von C:\Users\Henselmann\Desktop
Geladene Profile: Henselmann &  (Verfügbare Profile: defaultuser0 & Henselmann)
Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ASLED.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.145.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(TODO: <Company name>) C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ledcontrolservice.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Microsoft Corporation) C:\Program Files\Zune\ZuneLauncher.exe
(Apple Inc.) D:\iTunes\iTunesHelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Hammer & Chisel, Inc.) C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hammer & Chisel, Inc.) C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Innkeeper) C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Innkeeper.exe
(Akamai Technologies, Inc.) C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe
(Hammer & Chisel, Inc.) C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe
(Mega Limited) C:\Users\Henselmann\AppData\Local\MEGAsync\MEGAsync.exe
() C:\Program Files (x86)\Drakonia Configurator\hid.exe
(Curse Inc.) C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Electron\bin\InnkeeperUI-win32-ia32\InnkeeperUI.exe
() C:\Program Files (x86)\Drakonia Configurator\trayicon.exe
(Curse Inc.) C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Electron\bin\InnkeeperUI-win32-ia32\InnkeeperUI.exe
(Curse Inc.) C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Electron\bin\InnkeeperUI-win32-ia32\InnkeeperUI.exe
(SPEEDLINK) C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Monitor.EXE
(Curse Inc.) C:\Users\Henselmann\AppData\Local\Innkeeper\app-0.3.4\Electron\bin\InnkeeperUI-win32-ia32\InnkeeperUI.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
() C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
(Razer, Inc.) C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe
(Razer, Inc.) C:\Users\Henselmann\AppData\Local\Razer\InGameEngine\cache\RzStats.Manager\rzcefrenderprocess.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8844032 2016-01-27] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [323056 2015-11-04] (Intel Corporation)
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2776528 2016-12-14] (Malwarebytes)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-09-07] (Microsoft Corporation)
HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM\...\Run: [iTunesHelper] => D:\iTunes\iTunesHelper.exe [176440 2016-12-06] (Apple Inc.)
HKLM-x32\...\Run: [GamingMouse] => C:\Program Files (x86)\Drakonia Configurator\hid.exe [248832 2013-10-29] ()
HKLM-x32\...\Run: [ACCUSOR Advanced Gaming Keyboard Driver] => C:\Program Files (x86)\SPEEDLINK\ACCUSOR Advanced Gaming Keyboard\Monitor.exe [1972736 2016-10-10] (SPEEDLINK)
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2016-11-04] (Razer Inc.)
HKLM-x32\...\Run: [Kraken0502Launcher] => C:\Program Files (x86)\Razer\Razer_Kraken0502_Driver\Drivers\SysAudio\Kraken0502Helper.exe [1599808 2015-08-14] (Razer Inc)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60408 2016-12-16] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [917576 2016-12-06] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181323428\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ledcontrolservice.exe [2111488 2016-06-06] (TODO: <Company name>)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181448700\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ledcontrolservice.exe [2111488 2016-06-06] (TODO: <Company name>)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2876704 2016-12-20] (Valve Corporation)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Discord] => C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe [64290304 2017-01-04] (Hammer & Chisel, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Innkeeper] => C:\Users\Henselmann\AppData\Local\Innkeeper\Update.exe --processStart Innkeeper.exe --process-start-args="-startup"
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181323637\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2876704 2016-12-20] (Valve Corporation)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181323637\...\Run: [Discord] => C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe [64290304 2017-01-04] (Hammer & Chisel, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181323637\...\Run: [Innkeeper] => C:\Users\Henselmann\AppData\Local\Innkeeper\Update.exe --processStart Innkeeper.exe --process-start-args="-startup"
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181323637\...\Run: [Akamai NetSession Interface] => C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181323637\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181449446\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2876704 2016-12-20] (Valve Corporation)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181449446\...\Run: [Discord] => C:\Users\Henselmann\AppData\Local\Discord\app-0.0.297\Discord.exe [64290304 2017-01-04] (Hammer & Chisel, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181449446\...\Run: [Innkeeper] => C:\Users\Henselmann\AppData\Local\Innkeeper\Update.exe --processStart Innkeeper.exe --process-start-args="-startup"
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181449446\...\Run: [Akamai NetSession Interface] => C:\Users\Henselmann\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181449446\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ledcontrolservice.exe [2111488 2016-06-06] (TODO: <Company name>)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX64.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Henselmann\AppData\Local\MEGAsync\ShellExtX32.dll [2016-10-31] ()
Startup: C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2017-01-15]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Henselmann\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
BootExecute: autocheck autochk * sdnclean64.exe

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{98d075b7-ca2a-46d0-8d3d-d8c044d944b5}: [DhcpNameServer] 192.168.2.1
ManualProxies: 

Internet Explorer:
==================
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001\Software\Microsoft\Internet Explorer\Main,Start Page = 
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181323637\Software\Microsoft\Internet Explorer\Main,Start Page = 
HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181449446\Software\Microsoft\Internet Explorer\Main,Start Page = 
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181323637 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2565043127-2691430490-4239563169-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01182017181449446 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 

FireFox:
========
FF DefaultProfile: wm3io0bs.default
FF ProfilePath: C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default [2017-01-18]
FF Homepage: Mozilla\Firefox\Profiles\wm3io0bs.default -> hxxp://www.google.de/
FF Extension: (Kein Name) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\abs@avira.com [2017-01-01]
FF Extension: (AdBlocker Ultimate) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\adblockultimate@adblockultimate.net.xpi [2017-01-15]
FF Extension: (anonymoX) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\client@anonymox.net.xpi [2016-12-31]
FF Extension: (Ghostery) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\firefox@ghostery.com.xpi [2016-12-31]
FF Extension: (MEGA) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\firefox@mega.co.nz.xpi [2017-01-17]
FF Extension: (uMatrix) - C:\Users\Henselmann\AppData\Roaming\Mozilla\Firefox\Profiles\wm3io0bs.default\Extensions\uMatrix@raymondhill.net.xpi [2017-01-14]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-01-11] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-01-11] ()
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2017-01-02] (Nexon)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-11] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-11] (NVIDIA Corporation)

Chrome: 
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1089592 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [476736 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [476736 2016-12-06] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1490296 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.)
R2 ASLED; C:\Program Files (x86)\ASUS\AURA(GRAPHICS CARD)\ASLED.exe [49664 2016-06-14] (TODO: <Company name>) [Datei ist nicht signiert]
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [372272 2016-12-16] (Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1445384 2016-10-22] ()
S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2017-01-10] (BitRaider, LLC)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2016-12-09] (Hi-Rez Studios) [Datei ist nicht signiert]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [19440 2015-11-04] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4317648 2016-12-14] (Malwarebytes)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [7847256 2016-10-18] (INCA Internet Co., Ltd.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [464440 2017-01-06] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [464440 2017-01-06] (NVIDIA Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [459832 2016-12-11] (NVIDIA Corporation)
R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [427064 2017-01-06] (NVIDIA Corporation)
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation)
S2 NVIDIA Wireless Controller Service; "C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe" [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [151352 2016-12-06] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [153904 2016-12-06] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2016-12-06] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [78208 2016-12-06] (Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\Windows\System32\Drivers\avusbflt.sys [28272 2016-12-06] (Avira Operations GmbH & Co. KG)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77416 2016-12-14] ()
S3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [102856 2017-01-14] (Malwarebytes)
S3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [43968 2017-01-14] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [250816 2017-01-18] (Malwarebytes)
S3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [91584 2017-01-14] (Malwarebytes)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3f929cc119e3b994\nvlddmkm.sys [14200880 2016-12-12] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [29240 2017-01-06] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47672 2017-01-06] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [59448 2017-01-06] (NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [935168 2015-10-10] (Realtek                                            )
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [137840 2016-09-07] (Razer, Inc.)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation)
S3 xhunter1; C:\Windows\xhunter1.sys [36808 2017-01-16] (Wellbia.com Co., Ltd.)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
S3 IOMap; \??\C:\Windows\system32\drivers\IOMap64.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-01-18 19:54 - 2017-01-18 19:54 - 00022502 _____ C:\Users\Henselmann\Desktop\FRST.txt
2017-01-18 18:10 - 2017-01-18 18:10 - 02870984 _____ (ESET) C:\Users\Henselmann\Desktop\esetsmartinstaller_deu.exe
2017-01-18 18:10 - 2017-01-18 18:10 - 00000000 ____D C:\Program Files (x86)\ESET
2017-01-18 17:46 - 2017-01-18 17:46 - 00003099 _____ C:\Users\Henselmann\Desktop\Fixlog.txt
2017-01-17 14:34 - 2017-01-17 15:12 - 00000000 ____D C:\AdwCleaner
2017-01-17 14:15 - 2017-01-17 14:34 - 03988944 _____ C:\Users\Henselmann\Desktop\AdwCleaner_6.042.exe
2017-01-17 00:25 - 2017-01-17 00:39 - 00000000 ____D C:\Users\Henselmann\Downloads\mbar
2017-01-17 00:24 - 2017-01-17 00:40 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2017-01-17 00:22 - 2017-01-17 00:22 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Henselmann\Downloads\mbar-1.09.3.1001.exe
2017-01-17 00:22 - 2017-01-17 00:22 - 00000000 ____D C:\Users\Henselmann\Desktop\mbar
2017-01-17 00:21 - 2017-01-17 00:21 - 00000085 _____ C:\Windows\wininit.ini
2017-01-15 16:41 - 2017-01-15 16:41 - 00054680 _____ C:\Users\Henselmann\Desktop\FRST&ADDITION.zip
2017-01-15 16:41 - 2017-01-15 16:41 - 00000000 ____D C:\ProgramData\Estsoft
2017-01-15 16:26 - 2017-01-18 19:54 - 00000000 ____D C:\FRST
2017-01-15 16:25 - 2017-01-15 16:25 - 02419200 _____ (Farbar) C:\Users\Henselmann\Desktop\FRST64.exe
2017-01-15 14:48 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-144851.backup
2017-01-15 14:34 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-143431.backup
2017-01-15 12:09 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-120900.backup
2017-01-15 04:13 - 2016-07-16 12:45 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20170115-041311.backup
2017-01-15 02:32 - 2017-01-15 02:32 - 00001144 _____ C:\Users\Henselmann\Desktop\MEGAsync.lnk
2017-01-15 02:32 - 2017-01-15 02:32 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2017-01-15 02:23 - 2017-01-15 02:23 - 00000000 ____D C:\Program Files\Common Files\AV
2017-01-15 02:18 - 2017-01-15 02:18 - 09204168 _____ (Piriform Ltd) C:\Users\Henselmann\Downloads\ccsetup_525.exe
2017-01-15 02:18 - 2017-01-15 02:18 - 00002880 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2017-01-15 02:18 - 2017-01-15 02:18 - 00000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2017-01-15 02:18 - 2017-01-15 02:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-01-15 02:18 - 2017-01-15 02:18 - 00000000 ____D C:\Program Files\CCleaner
2017-01-15 02:17 - 2017-01-17 15:13 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2017-01-15 02:17 - 2017-01-17 00:21 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2017-01-15 02:17 - 2017-01-15 02:17 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2017-01-15 01:28 - 2017-01-15 01:28 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2017-01-15 01:28 - 2017-01-15 01:28 - 00001220 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2017-01-15 01:28 - 2017-01-15 01:28 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-01-15 01:28 - 2017-01-15 01:28 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2017-01-15 01:27 - 2017-01-15 01:27 - 00243720 _____ C:\Users\Henselmann\Downloads\Firefox Setup Stub 50.1.0.exe
2017-01-15 01:19 - 2017-01-15 01:19 - 00001500 _____ C:\Users\Henselmann\Desktop\Overwatch.lnk
2017-01-15 01:19 - 2017-01-15 01:19 - 00001455 _____ C:\Users\Henselmann\Desktop\Hearthstone.lnk
2017-01-15 01:19 - 2017-01-15 01:19 - 00001256 _____ C:\Users\Henselmann\Desktop\SWTOR.lnk
2017-01-15 01:18 - 2017-01-15 01:18 - 00001461 _____ C:\Users\Henselmann\Desktop\Battle.net.lnk
2017-01-15 01:17 - 2017-01-15 01:17 - 00000872 _____ C:\Users\Henselmann\Desktop\Vindictus.lnk
2017-01-15 01:16 - 2017-01-15 01:16 - 00001194 _____ C:\Users\Henselmann\Desktop\Black Desert Online.lnk
2017-01-15 00:54 - 2017-01-15 00:55 - 00000000 ____D C:\Windows\system32\SSL
2017-01-15 00:54 - 2017-01-15 00:54 - 00001410 ___RS C:\ProgramData\Microsoft\Windows\Start Menu\Вlaсk Dеsеrt Online.lnk
2017-01-15 00:54 - 2017-01-15 00:54 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\SPI
2017-01-14 20:47 - 2017-01-14 20:47 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\JAM Software
2017-01-14 19:56 - 2017-01-14 19:57 - 00000000 ____D C:\Users\Henselmann\Desktop\musik i tunes packover
2017-01-14 19:45 - 2017-01-14 19:45 - 00000000 ____D C:\Users\Henselmann\Desktop\HeavyLoad
2017-01-14 19:41 - 2017-01-14 19:41 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2017-01-14 19:38 - 2017-01-18 17:46 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Temp
2017-01-14 19:21 - 2017-01-14 19:21 - 00000000 ___RD C:\Users\Henselmann\3D Objects
2017-01-14 19:20 - 2017-01-14 19:20 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Apps\2.0
2017-01-14 18:52 - 2017-01-14 19:42 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Apple Computer
2017-01-14 18:52 - 2017-01-14 18:52 - 00001477 _____ C:\Users\Public\Desktop\iTunes.lnk
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Apple Computer
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\ProgramData\Apple Computer
2017-01-14 18:52 - 2017-01-14 18:52 - 00000000 ____D C:\Program Files\iPod
2017-01-14 18:37 - 2017-01-14 18:52 - 00000000 ____D C:\Program Files\Common Files\Apple
2017-01-14 18:37 - 2017-01-14 18:37 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Windows\System32\Tasks\Apple
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Apple
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Program Files\Bonjour
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Program Files (x86)\Bonjour
2017-01-14 18:37 - 2017-01-14 18:37 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2017-01-14 18:36 - 2017-01-14 18:37 - 00000000 ____D C:\ProgramData\Apple
2017-01-14 14:40 - 2017-01-14 18:36 - 177044296 _____ (Apple Inc.) C:\Users\Henselmann\Downloads\iTunes6464Setup.exe
2017-01-14 14:39 - 2017-01-14 14:39 - 00000000 ____D C:\Users\Henselmann\Downloads\Gameforge Live
2017-01-13 20:34 - 2017-01-13 20:34 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SWTOR
2017-01-13 20:27 - 2017-01-13 20:27 - 00002642 _____ C:\Users\Public\Desktop\Skype.lnk
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ____D C:\Users\Henselmann\Tracing
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ____D C:\ProgramData\Skype
2017-01-13 20:27 - 2017-01-13 20:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-01-13 20:25 - 2017-01-13 20:26 - 01629664 _____ (Skype Technologies S.A.) C:\Users\Henselmann\Downloads\SkypeSetup.exe
2017-01-13 02:03 - 2017-01-13 02:03 - 00605564 _____ C:\Windows\Minidump\011317-5968-01.dmp
2017-01-13 00:01 - 2017-01-13 00:01 - 15032408 _____ (Adobe Systems, Inc.) C:\Users\Henselmann\Downloads\flashplayer_24_sa.exe
2017-01-11 17:36 - 2017-01-11 17:36 - 00000000 ____D C:\Windows\LastGood.Tmp
2017-01-11 17:36 - 2017-01-06 02:10 - 00158264 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2017-01-11 17:36 - 2017-01-06 02:10 - 00126008 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2017-01-11 17:36 - 2017-01-06 02:10 - 00059448 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys
2017-01-10 19:44 - 2017-01-10 19:44 - 00000000 ____D C:\Users\Public\Documents\BitRaider
2017-01-10 19:44 - 2017-01-10 19:44 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SWTORPerf
2017-01-10 19:44 - 2017-01-10 19:44 - 00000000 ____D C:\ProgramData\BitRaider
2017-01-10 19:41 - 2017-01-10 19:41 - 00000787 ____H C:\Users\Public\Desktop\Star Wars - The Old Republic.lnk
2017-01-10 19:40 - 2017-01-10 19:40 - 29719936 _____ C:\Users\Henselmann\Downloads\SWTOR_setup.exe
2017-01-10 19:18 - 2016-12-21 09:08 - 00245600 _____ (Microsoft Corporation) C:\Windows\system32\offlinesam.dll
2017-01-10 19:18 - 2016-12-21 09:08 - 00136032 _____ (Microsoft Corporation) C:\Windows\system32\ImplatSetup.dll
2017-01-10 19:18 - 2016-12-21 08:46 - 00624048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2017-01-10 19:18 - 2016-12-21 08:43 - 04130440 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2017-01-10 19:18 - 2016-12-21 08:43 - 01454504 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2017-01-10 19:18 - 2016-12-21 08:43 - 01071736 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 22224480 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 01988560 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 01702392 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2017-01-10 19:18 - 2016-12-21 08:42 - 01300600 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2017-01-10 19:18 - 2016-12-21 08:41 - 01600632 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2017-01-10 19:18 - 2016-12-21 08:08 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2017-01-10 19:18 - 2016-12-21 08:06 - 06285312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2017-01-10 19:18 - 2016-12-21 07:59 - 00883712 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2017-01-10 19:18 - 2016-12-21 07:56 - 00936960 _____ (Microsoft Corporation) C:\Windows\system32\MCRecvSrc.dll
2017-01-10 19:18 - 2016-12-21 07:53 - 04474368 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2017-01-10 19:18 - 2016-12-21 07:51 - 08075776 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2017-01-10 19:18 - 2016-12-21 07:51 - 05611008 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2017-01-10 19:18 - 2016-12-21 07:50 - 01490432 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2017-01-10 19:18 - 2016-12-21 06:59 - 00218976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offlinesam.dll
2017-01-10 19:18 - 2016-12-21 06:09 - 00263472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2017-01-10 19:18 - 2016-12-21 06:01 - 20969928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2017-01-10 19:18 - 2016-12-21 05:43 - 00285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BlockedShutdown.dll
2017-01-10 19:18 - 2016-12-21 05:41 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.BioFeedback.dll
2017-01-10 19:18 - 2016-12-21 05:40 - 00557568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll
2017-01-10 19:18 - 2016-12-21 05:40 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe
2017-01-10 19:18 - 2016-12-21 05:39 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgentUserBroker.exe
2017-01-10 19:18 - 2016-12-21 05:38 - 00866816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Cred.dll
2017-01-10 19:18 - 2016-12-21 05:30 - 05398016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2017-01-10 19:18 - 2016-12-21 05:26 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVP9DEC.dll
2017-01-10 19:18 - 2016-12-21 05:22 - 01883648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Logon.dll
2017-01-10 19:18 - 2016-12-14 06:41 - 01235296 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2017-01-10 19:18 - 2016-12-14 06:23 - 00404832 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2017-01-10 19:18 - 2016-12-14 06:21 - 02206496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2017-01-10 19:18 - 2016-12-14 05:48 - 01631232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll
2017-01-10 19:18 - 2016-12-14 05:38 - 17188864 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2017-01-10 19:18 - 2016-12-14 05:38 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.CredDialogController.dll
2017-01-10 19:18 - 2016-12-14 05:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
2017-01-10 19:18 - 2016-12-14 05:35 - 00755712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2017-01-10 19:18 - 2016-12-14 05:26 - 00932864 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2017-01-10 19:18 - 2016-12-14 05:26 - 00869888 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2017-01-10 19:18 - 2016-12-14 05:24 - 01005568 _____ (Microsoft Corporation) C:\Windows\system32\D3D12.dll
2017-01-10 19:18 - 2016-12-14 05:24 - 00673792 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2017-01-10 19:18 - 2016-12-14 05:23 - 03134976 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2017-01-10 19:18 - 2016-12-14 05:22 - 02317824 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2017-01-10 19:17 - 2016-12-21 09:04 - 07816032 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2017-01-10 19:17 - 2016-12-21 08:49 - 00328008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2017-01-10 19:17 - 2016-12-21 08:43 - 00092512 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2017-01-10 19:17 - 2016-12-21 08:42 - 00241504 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll
2017-01-10 19:17 - 2016-12-21 08:37 - 00455520 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2017-01-10 19:17 - 2016-12-21 08:15 - 22563840 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2017-01-10 19:17 - 2016-12-21 08:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\LaunchWinApp.exe
2017-01-10 19:17 - 2016-12-21 08:13 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCsp.dll
2017-01-10 19:17 - 2016-12-21 08:12 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\ProvPluginEng.dll
2017-01-10 19:17 - 2016-12-21 08:10 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\KnobsCore.dll
2017-01-10 19:17 - 2016-12-21 08:09 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\OneBackupHandler.dll
2017-01-10 19:17 - 2016-12-21 08:09 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BioFeedback.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 01292288 _____ (Microsoft Corporation) C:\Windows\system32\MSVPXENC.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.BlockedShutdown.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\DeveloperOptionsSettingsHandlers.dll
2017-01-10 19:17 - 2016-12-21 08:08 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe
2017-01-10 19:17 - 2016-12-21 08:07 - 00748544 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll
2017-01-10 19:17 - 2016-12-21 08:06 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\SyncSettings.dll
2017-01-10 19:17 - 2016-12-21 08:06 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe
2017-01-10 19:17 - 2016-12-21 08:06 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2017-01-10 19:17 - 2016-12-21 08:05 - 00425984 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll
2017-01-10 19:17 - 2016-12-21 08:05 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\indexeddbserver.dll
2017-01-10 19:17 - 2016-12-21 08:05 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Shell.dll
2017-01-10 19:17 - 2016-12-21 08:01 - 09131008 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2017-01-10 19:17 - 2016-12-21 08:00 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2017-01-10 19:17 - 2016-12-21 07:59 - 01908224 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll
2017-01-10 19:17 - 2016-12-21 07:58 - 23678464 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2017-01-10 19:17 - 2016-12-21 07:57 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\fhsettingsprovider.dll
2017-01-10 19:17 - 2016-12-21 07:56 - 00947712 _____ (Microsoft Corporation) C:\Windows\system32\MSVP9DEC.dll
2017-01-10 19:17 - 2016-12-21 07:55 - 08129536 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2017-01-10 19:17 - 2016-12-21 07:55 - 04749312 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_nt.dll
2017-01-10 19:17 - 2016-12-21 07:54 - 05511680 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2017-01-10 19:17 - 2016-12-21 07:53 - 06664192 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2017-01-10 19:17 - 2016-12-21 07:53 - 01692672 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2017-01-10 19:17 - 2016-12-21 07:51 - 02275840 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2017-01-10 19:17 - 2016-12-21 07:49 - 04149248 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2017-01-10 19:17 - 2016-12-21 07:49 - 02691072 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll
2017-01-10 19:17 - 2016-12-21 07:49 - 01062912 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2017-01-10 19:17 - 2016-12-21 07:47 - 01121280 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 03892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01852720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01360464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01277344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 01201872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2017-01-10 19:17 - 2016-12-21 06:02 - 00980832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2017-01-10 19:17 - 2016-12-21 05:46 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchWinApp.exe
2017-01-10 19:17 - 2016-12-21 05:41 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2017-01-10 19:17 - 2016-12-21 05:40 - 00318976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2017-01-10 19:17 - 2016-12-21 05:40 - 00237056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncSettings.dll
2017-01-10 19:17 - 2016-12-21 05:39 - 01300480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll
2017-01-10 19:17 - 2016-12-21 05:35 - 04612608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2017-01-10 19:17 - 2016-12-21 05:35 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\indexeddbserver.dll
2017-01-10 19:17 - 2016-12-21 05:34 - 07626752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2017-01-10 19:17 - 2016-12-21 05:33 - 19413504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2017-01-10 19:17 - 2016-12-21 05:32 - 19417600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2017-01-10 19:17 - 2016-12-21 05:30 - 01255936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll
2017-01-10 19:17 - 2016-12-21 05:27 - 00640000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCRecvSrc.dll
2017-01-10 19:17 - 2016-12-21 05:25 - 07469056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2017-01-10 19:17 - 2016-12-21 05:25 - 06474752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe
2017-01-10 19:17 - 2016-12-21 05:24 - 06044160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2017-01-10 19:17 - 2016-12-21 05:24 - 05061120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2017-01-10 19:17 - 2016-12-21 05:24 - 03733504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2017-01-10 19:17 - 2016-12-21 05:24 - 00886272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
2017-01-10 19:17 - 2016-12-21 05:22 - 00860672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2017-01-10 19:17 - 2016-12-14 06:41 - 00590960 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2017-01-10 19:17 - 2016-12-14 06:34 - 02482280 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2017-01-10 19:17 - 2016-12-14 06:33 - 01356864 _____ (Microsoft Corporation) C:\Windows\system32\ClipUp.exe
2017-01-10 19:17 - 2016-12-14 06:19 - 00584544 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2017-01-10 19:17 - 2016-12-14 06:18 - 00715104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2017-01-10 19:17 - 2016-12-14 06:18 - 00335712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2017-01-10 19:17 - 2016-12-14 06:17 - 00319288 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2017-01-10 19:17 - 2016-12-14 06:14 - 01694712 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2017-01-10 19:17 - 2016-12-14 06:14 - 00418952 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2017-01-10 19:17 - 2016-12-14 06:14 - 00089416 _____ (Microsoft Corporation) C:\Windows\system32\remoteaudioendpoint.dll
2017-01-10 19:17 - 2016-12-14 06:08 - 00341344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2017-01-10 19:17 - 2016-12-14 06:06 - 00509792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2017-01-10 19:17 - 2016-12-14 06:01 - 01557808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2017-01-10 19:17 - 2016-12-14 06:01 - 00382784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2017-01-10 19:17 - 2016-12-14 06:01 - 00076984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remoteaudioendpoint.dll
2017-01-10 19:17 - 2016-12-14 05:46 - 01631232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll
2017-01-10 19:17 - 2016-12-14 05:46 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2017-01-10 19:17 - 2016-12-14 05:45 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32k.sys
2017-01-10 19:17 - 2016-12-14 05:43 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\cloudAP.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-10 19:17 - 2016-12-14 05:42 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2017-01-10 19:17 - 2016-12-14 05:41 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2017-01-10 19:17 - 2016-12-14 05:40 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\ConsoleLogon.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudBackupSettings.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2017-01-10 19:17 - 2016-12-14 05:40 - 00104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.UI.Logon.ProxyStub.dll
2017-01-10 19:17 - 2016-12-14 05:39 - 00837632 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2017-01-10 19:17 - 2016-12-14 05:39 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2017-01-10 19:17 - 2016-12-14 05:39 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.CredDialogController.dll
2017-01-10 19:17 - 2016-12-14 05:38 - 13869056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2017-01-10 19:17 - 2016-12-14 05:38 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\CloudBackupSettings.dll
2017-01-10 19:17 - 2016-12-14 05:36 - 01002496 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2017-01-10 19:17 - 2016-12-14 05:36 - 00539648 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2017-01-10 19:17 - 2016-12-14 05:36 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
2017-01-10 19:17 - 2016-12-14 05:35 - 00712192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2017-01-10 19:17 - 2016-12-14 05:35 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2017-01-10 19:17 - 2016-12-14 05:35 - 00553984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2017-01-10 19:17 - 2016-12-14 05:32 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3D12.dll
2017-01-10 19:17 - 2016-12-14 05:32 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LogonController.dll
2017-01-10 19:17 - 2016-12-14 05:25 - 02009600 _____ (Microsoft Corporation) C:\Windows\system32\SRHInproc.dll
2017-01-10 19:17 - 2016-12-14 05:23 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2017-01-10 19:17 - 2016-12-14 05:22 - 02998272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2017-01-10 19:17 - 2016-12-14 05:22 - 02748416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2017-01-10 19:17 - 2016-12-14 05:22 - 01513472 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2017-01-10 19:17 - 2016-12-14 05:22 - 00707584 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll
2017-01-10 19:17 - 2016-12-14 05:22 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2017-01-10 19:17 - 2016-12-14 05:21 - 03616768 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2017-01-10 19:17 - 2016-11-02 13:01 - 00484584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2017-01-10 19:17 - 2016-11-02 12:00 - 00534096 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2017-01-10 19:17 - 2016-11-02 11:28 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.LockScreen.dll
2017-01-10 19:17 - 2016-11-02 11:22 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2017-01-10 19:17 - 2016-11-02 11:21 - 00942080 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2017-01-10 19:17 - 2016-08-02 05:30 - 00822784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakradiag.dll
2017-01-09 18:49 - 2017-01-09 18:49 - 00000718 _____ C:\Users\Henselmann\Desktop\S4 League.lnk
2017-01-09 18:35 - 2017-01-09 18:35 - 00578584 _____ (Aeria Games & Entertainment) C:\Users\Henselmann\Downloads\s4league_us_downloader.exe
2017-01-09 18:35 - 2017-01-09 18:35 - 00000000 ____D C:\AeriaGames
2017-01-08 04:12 - 2017-01-14 20:47 - 00007597 _____ C:\Users\Henselmann\AppData\Local\Resmon.ResmonCfg
2017-01-07 23:26 - 2017-01-07 23:26 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Carbon
2017-01-07 18:12 - 2017-01-18 17:46 - 00000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2017-01-07 18:12 - 2017-01-07 18:16 - 00000000 ____D C:\ProgramData\Hi-Rez Studios
2017-01-07 18:12 - 2017-01-07 18:12 - 00000000 ____D C:\Users\Henselmann\AppData\Local\HirezLauncherUI
2017-01-07 18:12 - 2017-01-07 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios
2017-01-07 17:50 - 2017-01-07 18:11 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Warframe
2017-01-07 15:27 - 2017-01-10 19:33 - 00000000 ___RD C:\Users\Henselmann\Podcasts
2017-01-07 15:00 - 2017-01-07 15:00 - 13049800 _____ (MEGA Limited) C:\Users\Henselmann\Downloads\MEGAsyncSetup.exe
2017-01-07 13:42 - 2017-01-07 21:04 - 00001036 _____ C:\Users\Henselmann\Desktop\osu!.lnk
2017-01-07 13:42 - 2017-01-07 13:42 - 00001028 _____ C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\osu!.lnk
2017-01-07 13:41 - 2017-01-07 21:10 - 00000000 ____D C:\Users\Henselmann\AppData\Local\osu!
2017-01-07 13:41 - 2017-01-07 13:41 - 04470976 _____ (ppy) C:\Users\Henselmann\Downloads\osu!install.exe
2017-01-07 12:35 - 2017-01-07 12:35 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Ndemic Creations
2017-01-06 13:27 - 2017-01-06 13:27 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Cygames
2017-01-06 01:29 - 2017-01-06 01:32 - 00000000 ____D C:\Users\Henselmann\Powersaves3DS
2017-01-06 01:29 - 2017-01-06 01:29 - 04599725 _____ C:\Users\Henselmann\Downloads\powersaves3ds-software-145.zip
2017-01-06 01:29 - 2017-01-06 01:29 - 00000000 ____D C:\Users\Henselmann\Desktop\powersaves3ds-software-145
2017-01-06 01:29 - 2017-01-06 01:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Action Replay PowerSaves 3DS
2017-01-06 01:29 - 2017-01-06 01:29 - 00000000 ____D C:\Program Files (x86)\Action Replay PowerSaves 3DS
2017-01-06 01:28 - 2017-01-06 01:28 - 00049498 _____ C:\Users\Henselmann\Downloads\myuninst.zip
2017-01-06 01:28 - 2017-01-06 01:28 - 00000000 ____D C:\Users\Henselmann\Desktop\myuninst
2017-01-06 01:22 - 2017-01-06 01:22 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Sony Online Entertainment
2017-01-06 00:39 - 2017-01-06 00:43 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Daybreak Game Company
2017-01-06 00:39 - 2017-01-06 00:39 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SCE
2017-01-06 00:39 - 2017-01-06 00:39 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Daybreak Game Company
2017-01-05 00:36 - 2017-01-07 15:26 - 00000000 ____D C:\Users\Henselmann\Documents\MEGAsync Downloads
2017-01-05 00:34 - 2017-01-05 00:34 - 00000000 ____D C:\Users\Henselmann\Documents\MEGAsync
2017-01-05 00:33 - 2017-01-15 02:32 - 00000000 ____D C:\Users\Henselmann\AppData\Local\MEGAsync
2017-01-05 00:33 - 2017-01-05 00:33 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Mega Limited
2017-01-05 00:29 - 2017-01-05 00:29 - 00250816 _____ (Malwarebytes) C:\Windows\system32\Drivers\3CC91E54.sys
2017-01-04 19:28 - 2017-01-16 18:22 - 00036808 _____ (Wellbia.com Co., Ltd.) C:\Windows\xhunter1.sys
2017-01-04 14:15 - 2017-01-04 14:15 - 00001068 _____ C:\Users\Public\Desktop\TERA.lnk
2017-01-04 14:15 - 2017-01-04 14:15 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\TERA
2017-01-04 14:15 - 2017-01-04 14:15 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Solid State Networks
2017-01-04 12:52 - 2017-01-04 12:52 - 00000000 ____D C:\Users\Henselmann\AppData\Local\BANDAI NAMCO GAMES
2017-01-04 03:59 - 2017-01-13 02:03 - 1407543786 _____ C:\Windows\MEMORY.DMP
2017-01-04 03:59 - 2017-01-13 02:03 - 00000000 ____D C:\Windows\Minidump
2017-01-04 03:59 - 2017-01-04 03:59 - 00611220 _____ C:\Windows\Minidump\010417-4578-01.dmp
2017-01-04 02:51 - 2017-01-04 02:51 - 00000000 ____D C:\Users\Henselmann\Desktop\saveedit_r256
2017-01-04 02:45 - 2017-01-04 02:51 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\ESTsoft
2017-01-04 02:45 - 2017-01-04 02:45 - 00001156 _____ C:\Users\Public\Desktop\ALZip.lnk
2017-01-04 02:45 - 2017-01-04 02:45 - 00000000 ____D C:\Users\Henselmann\AppData\Local\ECRSC
2017-01-04 02:45 - 2017-01-04 02:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESTsoft
2017-01-04 02:45 - 2017-01-04 02:45 - 00000000 ____D C:\Program Files (x86)\ESTsoft
2017-01-04 02:44 - 2017-01-04 02:44 - 00000000 ____D C:\Program Files\Common Files\INCA Shared
2017-01-04 02:44 - 2016-10-18 11:13 - 07847256 _____ (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\GameMon.des
2017-01-04 02:44 - 2004-12-30 13:43 - 00004682 _____ (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\npptNT2.sys
2017-01-04 02:44 - 2003-07-15 22:17 - 00005174 _____ C:\Windows\SysWOW64\nppt9x.vxd
2017-01-04 02:10 - 2017-01-16 20:26 - 00001062 _____ C:\Users\Public\Desktop\Elsword.lnk
2017-01-03 19:00 - 2017-01-03 19:01 - 00000000 ____D C:\Program Files\Zune
2017-01-03 19:00 - 2017-01-03 19:00 - 00000996 _____ C:\Users\Public\Desktop\Zune.lnk
2017-01-03 19:00 - 2017-01-03 19:00 - 00000000 ____D C:\Windows\PCHEALTH
2017-01-03 19:00 - 2017-01-03 19:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zune
2017-01-03 18:32 - 2017-01-03 18:39 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\MelodyEscape
2017-01-03 18:32 - 2017-01-03 18:32 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA
2017-01-03 17:54 - 2017-01-16 18:50 - 00000000 ____D C:\Users\Henselmann\Documents\Black Desert
2017-01-03 17:53 - 2017-01-16 17:56 - 00000000 ____D C:\Users\Henselmann\AppData\Local\BlackDesertOnline
2017-01-03 17:16 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Black Desert Online
2017-01-03 17:16 - 2017-01-03 17:16 - 00000717 ____H C:\Users\Public\Desktop\Black Desert Online.lnk
2017-01-03 17:16 - 2017-01-03 17:16 - 00000717 ____H C:\ProgramData\Microsoft\Windows\Start Menu\Black Desert Online.lnk
2017-01-02 20:10 - 2017-01-18 17:40 - 00004182 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{564F6E84-C00A-4C0A-BC99-D7AB81F118FD}
2017-01-02 18:25 - 2017-01-02 18:25 - 00000000 ____D C:\ProgramData\Nexon
2017-01-02 18:24 - 2017-01-02 18:45 - 00000000 ____D C:\Users\Henselmann\Documents\Vindictus EU
2017-01-02 18:24 - 2017-01-02 18:24 - 00000000 ____D C:\Users\Henselmann\AppData\Local\NXEPassportClient
2017-01-02 18:23 - 2017-01-02 18:23 - 00001824 ____H C:\Users\Public\Desktop\Vindictus EU.lnk
2017-01-02 18:23 - 2017-01-02 18:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon
2017-01-02 14:54 - 2017-01-02 14:54 - 00000000 ____D C:\Users\Henselmann\Documents\Skullgirls
2017-01-02 14:39 - 2017-01-02 14:48 - 00021019 _____ C:\Users\Henselmann\Desktop\eigenes lehmbruck.odt
2017-01-02 14:39 - 2017-01-02 14:39 - 00000000 ____D C:\Users\Henselmann\AppData\Local\HP
2017-01-02 14:26 - 2017-01-02 14:38 - 00019777 _____ C:\Users\Henselmann\Desktop\handout lehmbruck.odt
2017-01-02 13:37 - 2017-01-02 13:37 - 00002355 _____ C:\Users\Henselmann\Desktop\ACCUSOR Advanced Gaming Keyboard Driver.lnk
2017-01-02 13:12 - 2017-01-13 01:45 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2017-01-02 13:12 - 2017-01-11 19:30 - 00003870 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2017-01-02 13:12 - 2017-01-02 13:12 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Macromedia
2017-01-02 13:12 - 2017-01-02 13:12 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Adobe
2017-01-02 12:57 - 2017-01-02 12:57 - 00001204 _____ C:\Users\Henselmann\Desktop\OpenOffice 4.1.3.lnk
2017-01-02 12:57 - 2017-01-02 12:57 - 00000000 ___SD C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3
2017-01-02 12:57 - 2017-01-02 12:57 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\OpenOffice
2017-01-02 12:57 - 2017-01-02 12:57 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2017-01-01 23:04 - 2017-01-02 18:21 - 00000000 ____D C:\Nexon
2017-01-01 19:07 - 2017-01-01 19:07 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Avira
2017-01-01 19:04 - 2017-01-01 19:14 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nexon
2017-01-01 18:07 - 2017-01-16 20:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live
2017-01-01 18:07 - 2017-01-01 18:07 - 00001140 _____ C:\Users\Public\Desktop\Gameforge Live.lnk
2017-01-01 18:07 - 2017-01-01 18:07 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Gameforge4d
2017-01-01 18:07 - 2017-01-01 18:07 - 00000000 ____D C:\Program Files (x86)\GameforgeLive
2017-01-01 17:51 - 2017-01-01 17:51 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Crashpad
2017-01-01 16:53 - 2017-01-02 18:26 - 00000000 ____D C:\ProgramData\NexonEU
2017-01-01 15:00 - 2017-01-01 15:01 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Akamai
2017-01-01 14:03 - 2017-01-01 14:03 - 00000016 _____ C:\ProgramData\mntemp
2017-01-01 14:02 - 2017-01-01 14:02 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Macromedia
2017-01-01 13:44 - 2017-01-01 13:44 - 00000992 _____ C:\Users\Public\Desktop\Heroes of the Storm.lnk
2017-01-01 13:44 - 2017-01-01 13:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of the Storm
2017-01-01 13:41 - 2017-01-07 18:11 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\NVIDIA
2017-01-01 13:33 - 2017-01-01 13:33 - 00000000 ____D C:\Users\Henselmann\Documents\League of Legends
2017-01-01 13:30 - 2017-01-17 20:25 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm
2017-01-01 13:30 - 2017-01-01 13:30 - 00000000 ____D C:\Users\Henselmann\Documents\Heroes of the Storm
2017-01-01 13:30 - 2017-01-01 13:30 - 00000000 ____D C:\Users\Henselmann\AppData\Local\AviraSpeedup
2017-01-01 13:25 - 2017-01-01 13:25 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf
2017-01-01 13:25 - 2016-12-06 16:01 - 00153904 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00151352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00078208 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00035488 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2017-01-01 13:25 - 2016-12-06 16:01 - 00028272 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avusbflt.sys
2017-01-01 13:23 - 2017-01-02 10:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-01-01 13:23 - 2017-01-02 10:05 - 00000000 ____D C:\ProgramData\Avira
2017-01-01 13:23 - 2017-01-02 10:05 - 00000000 ____D C:\Program Files (x86)\Avira
2017-01-01 13:23 - 2017-01-01 13:23 - 00001285 _____ C:\Users\Public\Desktop\Avira Connect.lnk
2017-01-01 13:23 - 2017-01-01 13:23 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Avira
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\.mono
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Blizzard Entertainment
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Blizzard
2017-01-01 05:10 - 2017-01-01 05:10 - 00000000 ____D C:\ProgramData\.mono
2017-01-01 03:33 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2017-01-01 03:33 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2017-01-01 03:33 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2017-01-01 03:33 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2017-01-01 03:32 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2017-01-01 03:32 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2017-01-01 03:32 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2017-01-01 03:32 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2017-01-01 03:32 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2017-01-01 03:32 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2017-01-01 03:32 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2017-01-01 03:32 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2017-01-01 03:32 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2017-01-01 03:32 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2017-01-01 03:32 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2017-01-01 03:32 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2017-01-01 03:32 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2017-01-01 03:32 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2017-01-01 03:32 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2017-01-01 03:32 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2017-01-01 03:32 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2017-01-01 03:32 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2017-01-01 03:32 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2017-01-01 03:32 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2017-01-01 03:32 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2017-01-01 03:32 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2017-01-01 03:32 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2017-01-01 03:32 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2017-01-01 03:32 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2017-01-01 03:32 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2017-01-01 03:32 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2017-01-01 03:32 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2017-01-01 03:32 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2017-01-01 03:32 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2017-01-01 03:32 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2017-01-01 03:32 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2017-01-01 03:32 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2017-01-01 03:32 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2017-01-01 03:32 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2017-01-01 03:32 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2017-01-01 03:32 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2017-01-01 03:32 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2017-01-01 03:32 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2017-01-01 03:32 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2017-01-01 03:32 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2017-01-01 03:32 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2017-01-01 03:32 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2017-01-01 03:32 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2017-01-01 03:32 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2017-01-01 03:32 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2017-01-01 03:32 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2017-01-01 03:32 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2017-01-01 03:32 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2017-01-01 03:32 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2017-01-01 03:32 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2017-01-01 03:32 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2017-01-01 03:32 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2017-01-01 03:32 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2017-01-01 03:32 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2017-01-01 03:32 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2017-01-01 03:32 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2017-01-01 03:32 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2017-01-01 03:32 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2017-01-01 03:32 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2017-01-01 03:32 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2017-01-01 03:32 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2017-01-01 03:32 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2017-01-01 03:32 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2017-01-01 03:32 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2017-01-01 03:32 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2017-01-01 03:32 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2017-01-01 03:32 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2017-01-01 03:32 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2017-01-01 03:32 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2017-01-01 03:32 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2017-01-01 03:32 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2017-01-01 03:32 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2017-01-01 03:32 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2017-01-01 03:32 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2017-01-01 03:32 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2017-01-01 03:32 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2017-01-01 03:32 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2017-01-01 03:32 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2017-01-01 03:32 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2017-01-01 03:32 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2017-01-01 03:32 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2017-01-01 03:32 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2017-01-01 03:32 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2017-01-01 03:32 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2017-01-01 03:32 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2017-01-01 03:32 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2017-01-01 03:32 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2017-01-01 03:32 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2017-01-01 03:32 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2017-01-01 03:32 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2017-01-01 03:32 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2017-01-01 03:32 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2017-01-01 03:32 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2017-01-01 02:15 - 2017-01-01 02:15 - 00000000 ____D C:\ProgramData\Riot Games
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Windows\SysWOW64\XPSViewer
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files\Reference Assemblies
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files\MSBuild
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-01-01 02:14 - 2017-01-01 02:14 - 00000000 ____D C:\Program Files (x86)\MSBuild
2017-01-01 02:13 - 2017-01-01 13:34 - 00001749 _____ C:\Users\Public\Desktop\League of Legends.lnk
2017-01-01 02:13 - 2017-01-01 02:13 - 00000000 ____D C:\Riot Games
2017-01-01 02:13 - 2016-05-25 14:31 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 14:31 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 14:31 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2017-01-01 02:13 - 2016-05-25 11:03 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 11:03 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-01-01 02:13 - 2016-05-25 11:03 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2017-01-01 02:13 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2017-01-01 02:13 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2017-01-01 02:13 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2017-01-01 02:13 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2017-01-01 02:13 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2017-01-01 02:12 - 2017-01-01 02:14 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Riot Games
2016-12-31 22:06 - 2016-12-31 22:06 - 00000000 ____D C:\Users\Henselmann\Documents\MGR
2016-12-31 18:20 - 2017-01-14 19:02 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\InnkeeperUI
2016-12-31 18:20 - 2017-01-01 13:06 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Innkeeper
2016-12-31 18:20 - 2016-12-31 18:20 - 00002290 _____ C:\Users\Henselmann\Desktop\Innkeeper.lnk
2016-12-31 18:20 - 2016-12-31 18:20 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Innkeeper
2016-12-31 18:14 - 2017-01-11 17:36 - 00007609 _____ C:\ProgramData\NvTelemetryContainer.log
2016-12-31 18:14 - 2017-01-11 17:36 - 00004308 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2016-12-31 18:14 - 2017-01-11 17:36 - 00001489 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2016-12-31 18:14 - 2017-01-10 19:32 - 00010108 _____ C:\ProgramData\NvTelemetryContainer.log_backup1
2016-12-31 18:14 - 2017-01-06 01:09 - 00001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat
2016-12-31 17:35 - 2016-12-31 17:35 - 00000938 _____ C:\Users\Public\Desktop\AURA(GRAPHICS CARD).lnk
2016-12-31 17:35 - 2016-12-31 17:35 - 00000000 ____D C:\Program Files (x86)\ASUS
2016-12-31 17:29 - 2017-01-07 18:15 - 00000000 ____D C:\Users\Henselmann\Documents\My games
2016-12-31 16:04 - 2016-12-31 16:04 - 00000000 ____D C:\Users\Henselmann\Documents\Overwatch
2016-12-31 16:00 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch
2016-12-31 16:00 - 2016-12-31 16:00 - 00000898 ____H C:\Users\Public\Desktop\Overwatch.lnk
2016-12-31 15:58 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2016-12-31 15:58 - 2016-12-31 15:58 - 00000952 ____H C:\Users\Public\Desktop\Hearthstone.lnk
2016-12-31 15:50 - 2016-12-31 15:51 - 04121824 _____ (Husdawg, LLC) C:\Users\Henselmann\Downloads\Detection.exe
2016-12-31 15:49 - 2016-12-31 15:49 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Diagnostics
2016-12-31 15:47 - 2016-12-31 15:47 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-12-31 15:47 - 2016-12-11 19:23 - 00134712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2016-12-31 15:47 - 2016-09-09 19:25 - 00269600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2016-12-31 15:47 - 2016-09-09 19:25 - 00261920 _____ C:\Windows\system32\vulkan-1.dll
2016-12-31 15:47 - 2016-09-09 19:25 - 00110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2016-12-31 15:47 - 2016-09-09 19:24 - 00125216 _____ C:\Windows\system32\vulkaninfo.exe
2016-12-31 15:45 - 2016-12-12 04:03 - 40125496 _____ C:\Windows\system32\nvcompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 35222976 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 34710584 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 28201408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 10912744 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 10803880 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 10353960 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 09158616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 08913328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 08761560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 02950200 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 02587704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 01953336 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437633.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 01586744 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437633.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 01038392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00974784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00942528 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00894400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00802768 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00801560 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFThevc.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00683640 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00643928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00642392 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFThevc.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00617696 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00572888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00438208 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00394888 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00388544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00386104 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00347072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2016-12-31 15:45 - 2016-12-12 04:03 - 00327408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2016-12-31 15:12 - 2017-01-15 01:19 - 00000000 ____D C:\Program Files (x86)\Overwatch
2016-12-31 15:12 - 2017-01-15 01:19 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2016-12-31 15:11 - 2016-12-31 15:11 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Blizzard Entertainment
2016-12-31 15:10 - 2017-01-18 17:37 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Battle.net
2016-12-31 15:10 - 2017-01-17 16:36 - 00000000 ____D C:\Program Files (x86)\Battle.net
2016-12-31 15:10 - 2017-01-15 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2016-12-31 15:10 - 2016-12-31 15:10 - 00000914 ____H C:\Users\Public\Desktop\Battle.net.lnk
2016-12-31 15:10 - 2016-12-31 15:10 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2016-12-31 15:09 - 2016-12-31 15:11 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Battle.net
2016-12-31 15:09 - 2016-12-31 15:09 - 00000000 ____D C:\ProgramData\Battle.net
2016-12-31 14:57 - 2016-12-31 14:57 - 00000000 ____D C:\Users\Henselmann\AppData\Local\RzStats
2016-12-31 14:51 - 2016-09-17 02:12 - 00044144 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpmgrk.sys
2016-12-31 14:51 - 2016-09-07 22:27 - 00137840 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpnk.sys
2016-12-31 14:50 - 2017-01-01 13:21 - 00000000 ____D C:\Program Files (x86)\Razer
2016-12-31 14:50 - 2016-12-31 14:52 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Razer
2016-12-31 14:50 - 2016-12-31 14:51 - 00000000 ____D C:\ProgramData\Razer
2016-12-31 14:50 - 2016-12-31 14:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2016-12-31 14:47 - 2017-01-17 19:20 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\TS3Client
2016-12-31 14:44 - 2016-12-31 14:44 - 00001299 _____ C:\Users\Henselmann\Desktop\TeamSpeak 3 Client.lnk
2016-12-31 14:44 - 2016-12-31 14:44 - 00001257 _____ C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2016-12-31 14:44 - 2016-12-31 14:44 - 00000000 ____D C:\Users\Henselmann\AppData\Local\TeamSpeak 3 Client
2016-12-31 14:43 - 2017-01-13 15:27 - 00002262 _____ C:\Users\Henselmann\Desktop\Discord.lnk
2016-12-31 14:43 - 2017-01-13 15:27 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2016-12-31 14:43 - 2017-01-13 15:27 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\discord
2016-12-31 14:43 - 2017-01-13 15:27 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Discord
2016-12-31 14:43 - 2016-12-31 18:20 - 00000000 ____D C:\Users\Henselmann\AppData\Local\SquirrelTemp
2016-12-31 14:30 - 2017-01-06 00:45 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Steam
2016-12-31 14:30 - 2016-12-31 14:30 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Chromium
2016-12-31 14:28 - 2017-01-18 19:44 - 00000000 ____D C:\Program Files (x86)\Steam
2016-12-31 14:28 - 2016-12-31 14:28 - 00001036 _____ C:\Users\Public\Desktop\Steam.lnk
2016-12-31 14:28 - 2016-12-31 14:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-12-31 14:26 - 2017-01-18 17:47 - 00250816 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-12-31 14:26 - 2017-01-17 00:31 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-12-31 14:26 - 2017-01-17 00:25 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys
2016-12-31 14:26 - 2017-01-14 18:33 - 00091584 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2016-12-31 14:26 - 2017-01-14 13:56 - 00102856 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2016-12-31 14:26 - 2017-01-14 13:56 - 00043968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-12-31 14:26 - 2016-12-31 14:26 - 00001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2016-12-31 14:26 - 2016-12-31 14:26 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\SPEEDLINK
2016-12-31 14:26 - 2016-12-31 14:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2016-12-31 14:26 - 2016-12-31 14:26 - 00000000 ____D C:\Program Files\Malwarebytes
2016-12-31 14:26 - 2016-12-14 12:55 - 00077416 _____ C:\Windows\system32\Drivers\mbae64.sys
2016-12-31 14:25 - 2016-12-31 14:25 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Programs
2016-12-31 14:24 - 2016-12-31 14:24 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\InstallShield
2016-12-31 14:24 - 2016-12-31 14:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPEEDLINK
2016-12-31 14:24 - 2016-12-31 14:24 - 00000000 ____D C:\Program Files (x86)\SPEEDLINK
2016-12-31 14:23 - 2016-12-31 14:23 - 00018130 _____ C:\Windows\unins000.dat
2016-12-31 14:23 - 2016-12-31 14:23 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\MingGuan
2016-12-31 14:23 - 2016-12-31 14:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHARKOON Drakonia
2016-12-31 14:23 - 2016-12-31 14:23 - 00000000 ____D C:\Program Files (x86)\Drakonia Configurator
2016-12-31 14:23 - 2016-12-31 14:22 - 01192533 _____ C:\Windows\unins000.exe
2016-12-31 14:21 - 2017-01-18 17:58 - 00000000 ____D C:\Users\Henselmann\AppData\LocalLow\Mozilla
2016-12-31 14:21 - 2016-12-31 14:27 - 00000000 ____D C:\Users\Henselmann\AppData\Local\Mozilla
2016-12-31 14:21 - 2016-12-31 14:21 - 00000000 ____D C:\Users\Henselmann\AppData\Roaming\Mozilla
2016-12-31 14:20 - 2017-01-16 22:36 - 00000000 ____D C:\Users\Henselmann\AppData\Local\CrashDumps
2016-12-31 14:20 - 2016-12-31 14:20 - 00000000 ____D C:\Users\Henselmann\AppData\Local\MicrosoftEdge
2016-12-31 14:09 - 2017-01-10 19:22 - 00000000 ____D C:\Windows\system32\MRT
2016-12-31 14:09 - 2017-01-10 19:21 - 135657872 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-12-31 14:09 - 2016-12-09 11:42 - 01637728 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-12-31 14:09 - 2016-12-09 11:42 - 00137568 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-12-31 14:09 - 2016-12-09 11:34 - 01051112 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-12-31 14:09 - 2016-12-09 11:34 - 00894096 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-12-31 14:09 - 2016-12-09 11:33 - 01354320 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-12-31 14:09 - 2016-12-09 11:33 - 01173496 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-12-31 14:09 - 2016-12-09 11:30 - 00377184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2016-12-31 14:09 - 2016-12-09 11:29 - 02681200 _____ C:\Windows\system32\CoreUIComponents.dll
2016-12-31 14:09 - 2016-12-09 11:28 - 00764392 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2016-12-31 14:09 - 2016-12-09 11:19 - 01293152 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll
2016-12-31 14:09 - 2016-12-09 11:19 - 00168424 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2016-12-31 14:09 - 2016-12-09 11:18 - 02913144 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2016-12-31 14:09 - 2016-12-09 11:18 - 01100128 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2016-12-31 14:09 - 2016-12-09 11:18 - 00989024 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2016-12-31 14:09 - 2016-12-09 11:18 - 00947552 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.efi
2016-12-31 14:09 - 2016-12-09 11:18 - 00811872 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.exe
2016-12-31 14:09 - 2016-12-09 11:15 - 08168000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2016-12-31 14:09 - 2016-12-09 11:14 - 01274712 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2016-12-31 14:09 - 2016-12-09 11:10 - 01572768 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2016-12-31 14:09 - 2016-12-09 11:10 - 01461200 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2016-12-31 14:09 - 2016-12-09 11:01 - 02323728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-12-31 14:09 - 2016-12-09 11:01 - 01503544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-12-31 14:09 - 2016-12-09 11:01 - 00861024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll
2016-12-31 14:09 - 2016-12-09 11:00 - 00106896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2016-12-31 14:09 - 2016-12-09 10:59 - 02166752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2016-12-31 14:09 - 2016-12-09 10:59 - 00846560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2016-12-31 14:09 - 2016-12-09 10:57 - 06668040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-31 14:09 - 2016-12-09 10:52 - 01435896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2016-12-31 14:09 - 2016-12-09 10:52 - 01415752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2016-12-31 14:09 - 2016-12-09 10:51 - 00117240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-12-31 14:09 - 2016-12-09 10:45 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\WordBreakers.dll
2016-12-31 14:09 - 2016-12-09 10:41 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WordBreakers.dll
2016-12-31 14:09 - 2016-12-09 10:37 - 00411136 _____ (Microsoft Corporation) C:\Windows\system32\facecredentialprovider.dll
2016-12-31 14:09 - 2016-12-09 10:36 - 03059200 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-12-31 14:09 - 2016-12-09 10:36 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2016-12-31 14:09 - 2016-12-09 10:33 - 03777536 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2016-12-31 14:09 - 2016-12-09 10:33 - 01589760 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2016-12-31 14:09 - 2016-12-09 10:31 - 03689984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-12-31 14:09 - 2016-12-09 10:31 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2016-12-31 14:09 - 2016-12-09 10:28 - 03306496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2016-12-31 14:09 - 2016-12-09 10:28 - 01004544 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2016-12-31 14:09 - 2016-12-09 10:27 - 13084160 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-12-31 14:09 - 2016-12-09 10:27 - 05114368 _____ (Microsoft Corporation) C:\Windows\system32\cdp.dll
2016-12-31 14:09 - 2016-12-09 10:27 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2016-12-31 14:09 - 2016-12-09 10:23 - 12177920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-12-31 14:09 - 2016-12-09 10:22 - 02820096 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2016-12-31 14:09 - 2016-12-09 10:21 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll
2016-12-31 14:09 - 2016-12-09 10:20 - 03198464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdp.dll
2016-12-31 14:09 - 2016-12-09 10:20 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEnroller.exe
2016-12-31 14:09 - 2016-12-09 10:19 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\TextInputFramework.dll
2016-12-31 14:09 - 2016-12-09 10:19 - 00261120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll
2016-12-31 14:09 - 2016-12-09 10:19 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2016-12-31 14:09 - 2016-12-09 10:19 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\EditBufferTestHook.dll
2016-12-31 14:09 - 2016-12-09 10:18 - 02138112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2016-12-31 14:09 - 2016-12-09 10:17 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll
2016-12-31 14:09 - 2016-12-09 10:16 - 00353280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TextInputFramework.dll
2016-12-31 14:09 - 2016-12-09 10:15 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Core.TextInput.dll
2016-12-31 14:09 - 2016-12-09 10:15 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputLocaleManager.dll
2016-12-31 14:09 - 2016-12-09 10:15 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EditBufferTestHook.dll
2016-12-31 14:09 - 2016-12-09 09:54 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2016-12-31 14:09 - 2016-11-11 11:15 - 00101216 _____ (Microsoft Corporation) C:\Windows\system32\DeviceReactivation.dll
         

Alt 18.01.2017, 22:30   #15
Glaringsoul
 
Bestehen reste nach trojaner infektion? - Standard

Bestehen reste nach trojaner infektion?



Code:
ATTFilter
2016-12-31 14:09 - 2016-11-11 11:14 - 02186896 _____ (Microsoft Corporation) C:\Windows\system32\hevcdecoder.dll
2016-12-31 14:09 - 2016-11-11 11:14 - 00603488 _____ (Microsoft Corporation) C:\Windows\system32\ContentDeliveryManager.Utilities.dll
2016-12-31 14:09 - 2016-11-11 11:13 - 02213760 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-12-31 14:09 - 2016-11-11 11:13 - 01886344 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-12-31 14:09 - 2016-11-11 11:13 - 00352096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2016-12-31 14:09 - 2016-11-11 11:12 - 00128352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2016-12-31 14:09 - 2016-11-11 11:03 - 01069720 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2016-12-31 14:09 - 2016-11-11 11:02 - 00360040 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2016-12-31 14:09 - 2016-11-11 11:01 - 01859264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2016-12-31 14:09 - 2016-11-11 11:00 - 00223584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-12-31 14:09 - 2016-11-11 11:00 - 00219488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2016-12-31 14:09 - 2016-11-11 10:59 - 00433504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2016-12-31 14:09 - 2016-11-11 10:57 - 01473048 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2016-12-31 14:09 - 2016-11-11 10:56 - 04673304 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-12-31 14:09 - 2016-11-11 10:56 - 01062480 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2016-12-31 14:09 - 2016-11-11 10:56 - 00424616 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2016-12-31 14:09 - 2016-11-11 10:56 - 00187520 _____ (Microsoft Corporation) C:\Windows\system32\CloudStorageWizard.exe
2016-12-31 14:09 - 2016-11-11 10:56 - 00126568 _____ (Microsoft Corporation) C:\Windows\system32\mfaudiocnv.dll
2016-12-31 14:09 - 2016-11-11 10:55 - 00882680 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeManagerObj.dll
2016-12-31 14:09 - 2016-11-11 10:55 - 00743224 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2016-12-31 14:09 - 2016-11-11 10:54 - 01418312 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2016-12-31 14:09 - 2016-11-11 10:51 - 00454592 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2016-12-31 14:09 - 2016-11-11 10:31 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\RDXTaskFactory.dll
2016-12-31 14:09 - 2016-11-11 10:28 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\CbtBackgroundManagerPolicy.dll
2016-12-31 14:09 - 2016-11-11 10:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2016-12-31 14:09 - 2016-11-11 10:26 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys
2016-12-31 14:09 - 2016-11-11 10:25 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\BcastDVRHelper.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\DisplayManager.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvc.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\MosStorage.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\HttpsDataSource.dll
2016-12-31 14:09 - 2016-11-11 10:25 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryBroker.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\AppCapture.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\ACPBackgroundManagerPolicy.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\VEStoreEventHandlers.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepositoryClient.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\VPNv2CSP.dll
2016-12-31 14:09 - 2016-11-11 10:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2016-12-31 14:09 - 2016-11-11 10:23 - 00567296 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2016-12-31 14:09 - 2016-11-11 10:23 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\NgcCtnr.dll
2016-12-31 14:09 - 2016-11-11 10:23 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2016-12-31 14:09 - 2016-11-11 10:22 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\moshost.dll
2016-12-31 14:09 - 2016-11-11 10:21 - 00313856 _____ (Microsoft Corporation) C:\Windows\system32\moshostcore.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\MapConfiguration.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\cdpusersvc.dll
2016-12-31 14:09 - 2016-11-11 10:20 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00620544 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvr.exe
2016-12-31 14:09 - 2016-11-11 10:19 - 00495104 _____ (Microsoft Corporation) C:\Windows\system32\DataSenseHandlers.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\cdpsvc.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00388096 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2016-12-31 14:09 - 2016-11-11 10:19 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-31 14:09 - 2016-11-11 10:17 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\ProvSysprep.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 01477632 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 00560128 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\EditionUpgradeHelper.dll
2016-12-31 14:09 - 2016-11-11 10:16 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\RjvMDMConfig.dll
2016-12-31 14:09 - 2016-11-11 10:14 - 07654400 _____ (Microsoft Corporation) C:\Windows\system32\mos.dll
2016-12-31 14:09 - 2016-11-11 10:14 - 02104320 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2016-12-31 14:09 - 2016-11-11 10:14 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-12-31 14:09 - 2016-11-11 10:13 - 07812096 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll
2016-12-31 14:09 - 2016-11-11 10:13 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2016-12-31 14:09 - 2016-11-11 10:12 - 00870912 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll
2016-12-31 14:09 - 2016-11-11 10:11 - 00870400 _____ (Microsoft Corporation) C:\Windows\system32\mfmkvsrcsnk.dll
2016-12-31 14:09 - 2016-11-11 10:09 - 01366016 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2016-12-31 14:09 - 2016-11-11 10:09 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\dialserver.dll
2016-12-31 14:09 - 2016-11-11 10:08 - 00539136 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 03441152 _____ (Microsoft Corporation) C:\Windows\system32\MapRouter.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 02953216 _____ (Microsoft Corporation) C:\Windows\system32\MapGeocoder.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 01060864 _____ (Microsoft Corporation) C:\Windows\system32\JpMapControl.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2016-12-31 14:09 - 2016-11-11 10:07 - 00347648 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2016-12-31 14:09 - 2016-11-11 10:06 - 03400192 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2016-12-31 14:09 - 2016-11-11 10:06 - 00960000 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2016-12-31 14:09 - 2016-11-11 10:06 - 00650752 _____ (Microsoft Corporation) C:\Windows\system32\RDXService.dll
2016-12-31 14:09 - 2016-11-11 10:05 - 04136448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.StateRepository.dll
2016-12-31 14:09 - 2016-11-11 10:05 - 02852864 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-12-31 14:09 - 2016-11-11 10:05 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll
2016-12-31 14:09 - 2016-11-11 10:04 - 02611200 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2016-12-31 14:09 - 2016-11-11 10:04 - 00909312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2016-12-31 14:09 - 2016-11-11 10:04 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2016-12-31 14:09 - 2016-11-11 10:03 - 02287616 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2016-12-31 14:09 - 2016-11-11 10:03 - 00905216 _____ (Microsoft Corporation) C:\Windows\system32\MapControlCore.dll
2016-12-31 14:09 - 2016-11-11 10:03 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2016-12-31 14:09 - 2016-11-11 10:02 - 03542016 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2016-12-31 14:09 - 2016-11-11 10:02 - 01726976 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2016-12-31 14:09 - 2016-11-11 10:02 - 00936448 _____ (Microsoft Corporation) C:\Windows\system32\NMAA.dll
2016-12-31 14:09 - 2016-11-11 09:01 - 01969912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hevcdecoder.dll
2016-12-31 14:09 - 2016-11-11 09:01 - 00167848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2016-12-31 14:09 - 2016-11-11 09:00 - 01706488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-12-31 14:09 - 2016-11-11 08:59 - 01572768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-12-31 14:09 - 2016-11-11 08:54 - 00122208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\migisol.dll
2016-12-31 14:09 - 2016-11-11 08:49 - 00869848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2016-12-31 14:09 - 2016-11-11 08:48 - 02277248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2016-12-31 14:09 - 2016-11-11 08:47 - 05722832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2016-12-31 14:09 - 2016-11-11 08:47 - 01430720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2016-12-31 14:09 - 2016-11-11 08:47 - 00527880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-12-31 14:09 - 2016-11-11 08:42 - 01123912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2016-12-31 14:09 - 2016-11-11 08:42 - 00952416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2016-12-31 14:09 - 2016-11-11 08:42 - 00091936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfaudiocnv.dll
2016-12-31 14:09 - 2016-11-11 08:41 - 04311736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-12-31 14:09 - 2016-11-11 08:41 - 00157536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudStorageWizard.exe
2016-12-31 14:09 - 2016-11-11 08:38 - 01263856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2016-12-31 14:09 - 2016-11-11 08:25 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapsBtSvc.dll
2016-12-31 14:09 - 2016-11-11 08:25 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosStorage.dll
2016-12-31 14:09 - 2016-11-11 08:24 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BcastDVRHelper.dll
2016-12-31 14:09 - 2016-11-11 08:24 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplayManager.dll
2016-12-31 14:09 - 2016-11-11 08:24 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-12-31 14:09 - 2016-11-11 08:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppCapture.dll
2016-12-31 14:09 - 2016-11-11 08:23 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepositoryClient.dll
2016-12-31 14:09 - 2016-11-11 08:22 - 00505856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcastdvr.exe
2016-12-31 14:09 - 2016-11-11 08:22 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll
2016-12-31 14:09 - 2016-11-11 08:21 - 00332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapConfiguration.dll
2016-12-31 14:09 - 2016-11-11 08:19 - 01755136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceFlows.DataModel.dll
2016-12-31 14:09 - 2016-11-11 08:19 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2016-12-31 14:09 - 2016-11-11 08:19 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
2016-12-31 14:09 - 2016-11-11 08:18 - 02333184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2016-12-31 14:09 - 2016-11-11 08:18 - 01336320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2016-12-31 14:09 - 2016-11-11 08:18 - 01196544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2016-12-31 14:09 - 2016-11-11 08:18 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2016-12-31 14:09 - 2016-11-11 08:18 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscinterop.dll
2016-12-31 14:09 - 2016-11-11 08:17 - 00333312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll
2016-12-31 14:09 - 2016-11-11 08:17 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2016-12-31 14:09 - 2016-11-11 08:15 - 01357824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2016-12-31 14:09 - 2016-11-11 08:15 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JpMapControl.dll
2016-12-31 14:09 - 2016-11-11 08:15 - 00348672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2016-12-31 14:09 - 2016-11-11 08:12 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcuiu.dll
2016-12-31 14:09 - 2016-11-11 08:10 - 06109184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mos.dll
2016-12-31 14:09 - 2016-11-11 08:10 - 00746496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcprx.dll
2016-12-31 14:09 - 2016-11-11 08:09 - 05380608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll
2016-12-31 14:09 - 2016-11-11 08:09 - 00545280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmkvsrcsnk.dll
2016-12-31 14:09 - 2016-11-11 08:08 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xolehlp.dll
2016-12-31 14:09 - 2016-11-11 08:06 - 02362880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapRouter.dll
2016-12-31 14:09 - 2016-11-11 08:06 - 02109952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapGeocoder.dll
2016-12-31 14:09 - 2016-11-11 08:06 - 00359936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll
2016-12-31 14:09 - 2016-11-11 08:05 - 04423680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-12-31 14:09 - 2016-11-11 08:05 - 03370496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.StateRepository.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 02682880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 01992704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 00912896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 00715264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlCore.dll
2016-12-31 14:09 - 2016-11-11 08:04 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 02484736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 01576448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 01556480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 00760832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NMAA.dll
2016-12-31 14:09 - 2016-11-11 08:03 - 00565248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2016-12-31 14:09 - 2016-11-11 08:02 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2016-12-31 14:09 - 2016-11-02 13:01 - 00315744 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-12-31 14:09 - 2016-11-02 12:22 - 00601712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-12-31 14:09 - 2016-11-02 12:20 - 00378720 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-12-31 14:09 - 2016-11-02 12:13 - 00773720 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-12-31 14:09 - 2016-11-02 12:12 - 02255712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-12-31 14:09 - 2016-11-02 12:09 - 02257104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-12-31 14:09 - 2016-11-02 12:08 - 00602464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupEngine.dll
2016-12-31 14:09 - 2016-11-02 12:01 - 01425000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2016-12-31 14:09 - 2016-11-02 12:01 - 00545936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe
2016-12-31 14:09 - 2016-11-02 11:56 - 01609920 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2016-12-31 14:09 - 2016-11-02 11:56 - 00628552 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe
2016-12-31 14:09 - 2016-11-02 11:56 - 00322912 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2016-12-31 14:09 - 2016-11-02 11:55 - 00048992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\iorate.sys
2016-12-31 14:09 - 2016-11-02 11:49 - 00037376 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-12-31 14:09 - 2016-11-02 11:45 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsensorgroup.dll
2016-12-31 14:09 - 2016-11-02 11:44 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthExt.dll
2016-12-31 14:09 - 2016-11-02 11:43 - 00731136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8.dll
2016-12-31 14:09 - 2016-11-02 11:43 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FSClient.dll
2016-12-31 14:09 - 2016-11-02 11:42 - 00632832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2016-12-31 14:09 - 2016-11-02 11:42 - 00549376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll
2016-12-31 14:09 - 2016-11-02 11:42 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2016-12-31 14:09 - 2016-11-02 11:40 - 00896512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2016-12-31 14:09 - 2016-11-02 11:40 - 00548352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddraw.dll
2016-12-31 14:09 - 2016-11-02 11:39 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppBroker.dll
2016-12-31 14:09 - 2016-11-02 11:39 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2016-12-31 14:09 - 2016-11-02 11:38 - 00760832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2016-12-31 14:09 - 2016-11-02 11:34 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2016-12-31 14:09 - 2016-11-02 11:33 - 12349952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-12-31 14:09 - 2016-11-02 11:32 - 00045056 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-12-31 14:09 - 2016-11-02 11:32 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\efsext.dll
2016-12-31 14:09 - 2016-11-02 11:31 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\WpcTok.exe
2016-12-31 14:09 - 2016-11-02 11:31 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2016-12-31 14:09 - 2016-11-02 11:30 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\FlightSettings.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 01247232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 00336896 _____ (Microsoft Corporation) C:\Windows\system32\NetworkBindingEngineMigPlugin.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\FSClient.dll
2016-12-31 14:09 - 2016-11-02 11:29 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\mfsensorgroup.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00807424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\WpAXHolder.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00411136 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\NetworkUXBroker.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\NetworkDesktopSettings.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chartv.dll
2016-12-31 14:09 - 2016-11-02 11:28 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 02458112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 01388544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Cred.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\WlanMediaManager.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll
2016-12-31 14:09 - 2016-11-02 11:27 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2016-12-31 14:09 - 2016-11-02 11:27 - 00422400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2016-12-31 14:09 - 2016-11-02 11:26 - 00579072 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll
2016-12-31 14:09 - 2016-11-02 11:26 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2016-12-31 14:09 - 2016-11-02 11:25 - 00956416 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2016-12-31 14:09 - 2016-11-02 11:25 - 00655872 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2016-12-31 14:09 - 2016-11-02 11:25 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.UserAccountsHandlers.dll
2016-12-31 14:09 - 2016-11-02 11:24 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2016-12-31 14:09 - 2016-11-02 11:23 - 03106304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2016-12-31 14:09 - 2016-11-02 11:23 - 02356736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2016-12-31 14:09 - 2016-11-02 11:23 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2016-12-31 14:09 - 2016-11-02 11:23 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetailsUpdate.dll
2016-12-31 14:09 - 2016-11-02 11:22 - 13441024 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-12-31 14:09 - 2016-11-02 11:22 - 00369664 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2016-12-31 14:09 - 2016-11-02 11:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\ErrorDetails.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 01586176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\FrameServer.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\NPSM.dll
2016-12-31 14:09 - 2016-11-02 11:19 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-12-31 14:09 - 2016-11-02 11:18 - 00836608 _____ (Microsoft Corporation) C:\Windows\system32\WpcRefreshTask.dll
2016-12-31 14:09 - 2016-11-02 11:17 - 01282048 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2016-12-31 14:09 - 2016-11-02 11:17 - 00982528 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-12-31 14:09 - 2016-11-02 11:17 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2016-12-31 14:09 - 2016-11-02 11:16 - 02512384 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00881664 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00770560 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00629248 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2016-12-31 14:09 - 2016-11-02 11:16 - 00579072 _____ (Microsoft Corporation) C:\Windows\system32\LockAppBroker.dll
2016-12-31 14:09 - 2016-11-02 11:15 - 01348608 _____ (Microsoft Corporation) C:\Windows\system32\wifinetworkmanager.dll
2016-12-31 14:09 - 2016-11-02 11:15 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2016-12-31 14:09 - 2016-11-02 11:13 - 03496960 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2016-12-31 14:09 - 2016-11-02 11:13 - 03299840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-12-31 14:09 - 2016-11-02 11:13 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2016-12-31 14:09 - 2016-11-02 10:11 - 00788624 _____ C:\Windows\SysWOW64\locale.nls
2016-12-31 14:09 - 2016-11-02 10:11 - 00788624 _____ C:\Windows\system32\locale.nls
2016-12-31 14:09 - 2016-11-02 09:20 - 00446896 _____ C:\Windows\system32\ApnDatabase.xml
2016-12-31 14:09 - 2016-10-15 05:51 - 00595296 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00584032 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00322912 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00283488 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCensus.exe
2016-12-31 14:09 - 2016-10-15 05:51 - 00232800 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-12-31 14:09 - 2016-10-15 05:51 - 00078688 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-12-31 14:09 - 2016-10-15 05:48 - 00498952 _____ (Microsoft Corporation) C:\Windows\system32\DolbyDecMFT.dll
2016-12-31 14:09 - 2016-10-15 05:41 - 05622088 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2016-12-31 14:09 - 2016-10-15 05:38 - 00409952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-12-31 14:09 - 2016-10-15 05:37 - 00063328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2016-12-31 14:09 - 2016-10-15 05:33 - 00455040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DolbyDecMFT.dll
2016-12-31 14:09 - 2016-10-15 05:30 - 01851696 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-12-31 14:09 - 2016-10-15 05:26 - 00811416 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2016-12-31 14:09 - 2016-10-15 05:26 - 00691080 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2016-12-31 14:09 - 2016-10-15 05:26 - 00160096 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostBroker.dll
2016-12-31 14:09 - 2016-10-15 05:21 - 02537824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-12-31 14:09 - 2016-10-15 05:21 - 01100128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2016-12-31 14:09 - 2016-10-15 05:21 - 00292872 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2016-12-31 14:09 - 2016-10-15 05:19 - 00272720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-12-31 14:09 - 2016-10-15 05:18 - 01556712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-12-31 14:09 - 2016-10-15 05:15 - 00687936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2016-12-31 14:09 - 2016-10-15 05:10 - 00254656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll
2016-12-31 14:09 - 2016-10-15 05:06 - 05685760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2016-12-31 14:09 - 2016-10-15 05:05 - 07216640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2016-12-31 14:09 - 2016-10-15 05:00 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll
2016-12-31 14:09 - 2016-10-15 05:00 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stdole2.tlb
2016-12-31 14:09 - 2016-10-15 04:59 - 00272384 _____ (Microsoft Corporation) C:\Windows\system32\mfksproxy.dll
2016-12-31 14:09 - 2016-10-15 04:59 - 00187904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfksproxy.dll
2016-12-31 14:09 - 2016-10-15 04:59 - 00130560 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2016-12-31 14:09 - 2016-10-15 04:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\stdole2.tlb
2016-12-31 14:09 - 2016-10-15 04:57 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2016-12-31 14:09 - 2016-10-15 04:57 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2016-12-31 14:09 - 2016-10-15 04:57 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll
2016-12-31 14:09 - 2016-10-15 04:57 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2016-12-31 14:09 - 2016-10-15 04:56 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00306688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentutl.exe
2016-12-31 14:09 - 2016-10-15 04:56 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\AudioSrvPolicyManager.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFi.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2016-12-31 14:09 - 2016-10-15 04:56 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00329216 _____ (Microsoft Corporation) C:\Windows\system32\wc_storage.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Flights.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2016-12-31 14:09 - 2016-10-15 04:55 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFi.dll
2016-12-31 14:09 - 2016-10-15 04:55 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00410112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll
2016-12-31 14:09 - 2016-10-15 04:54 - 00102912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll
2016-12-31 14:09 - 2016-10-15 04:52 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2016-12-31 14:09 - 2016-10-15 04:52 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2016-12-31 14:09 - 2016-10-15 04:52 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2016-12-31 14:09 - 2016-10-15 04:51 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2016-12-31 14:09 - 2016-10-15 04:51 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2016-12-31 14:09 - 2016-10-15 04:50 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Bluetooth.dll
2016-12-31 14:09 - 2016-10-15 04:50 - 00438784 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2016-12-31 14:09 - 2016-10-15 04:49 - 01913344 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2016-12-31 14:09 - 2016-10-15 04:49 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAppInstaller.exe
2016-12-31 14:09 - 2016-10-15 04:48 - 01554944 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2016-12-31 14:09 - 2016-10-15 04:48 - 01323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2016-12-31 14:09 - 2016-10-15 04:47 - 01113600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2016-12-31 14:09 - 2016-10-15 04:47 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.BackgroundMediaPlayback.dll
2016-12-31 14:09 - 2016-10-15 04:46 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:46 - 00471552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll
2016-12-31 14:09 - 2016-10-15 04:45 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Playback.MediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00747008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoteNaturalLanguage.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00636928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00470016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:44 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.exe
2016-12-31 14:09 - 2016-10-15 04:43 - 02748928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2016-12-31 14:09 - 2016-10-15 04:43 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\energy.dll
2016-12-31 14:09 - 2016-10-15 04:42 - 00459776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Playback.MediaPlayer.dll
2016-12-31 14:09 - 2016-10-15 04:41 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsiwmi.dll
2016-12-31 14:09 - 2016-10-15 04:39 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-12-31 14:09 - 2016-10-15 04:39 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\NotificationController.dll
2016-12-31 14:09 - 2016-10-15 04:37 - 01980416 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2016-12-31 14:09 - 2016-10-15 04:37 - 00709120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Speech.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 00983040 _____ (Microsoft Corporation) C:\Windows\system32\RemoteNaturalLanguage.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 00792064 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2016-12-31 14:09 - 2016-10-15 04:36 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2016-12-31 14:09 - 2016-10-15 04:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll
2016-12-31 14:09 - 2016-10-15 04:35 - 02708992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2016-12-31 14:09 - 2016-10-15 04:35 - 02005504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2016-12-31 14:09 - 2016-10-15 04:32 - 00886784 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-12-31 14:09 - 2016-10-15 04:31 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2016-12-31 14:09 - 2016-10-05 11:35 - 00279904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2016-12-31 14:09 - 2016-10-05 11:33 - 00128864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys
2016-12-31 14:09 - 2016-10-05 11:16 - 00187232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2016-12-31 14:09 - 2016-10-05 11:13 - 00146784 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostCommon.dll
2016-12-31 14:09 - 2016-10-05 11:12 - 01112928 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2016-12-31 14:09 - 2016-10-05 11:09 - 00064352 _____ (Avago Technologies) C:\Windows\system32\Drivers\MegaSas2i.sys
2016-12-31 14:09 - 2016-10-05 10:50 - 00116576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostCommon.dll
2016-12-31 14:09 - 2016-10-05 10:49 - 01980768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2016-12-31 14:09 - 2016-10-05 10:48 - 01022304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2016-12-31 14:09 - 2016-10-05 10:36 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-31 14:09 - 2016-10-05 10:35 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.dll
2016-12-31 14:09 - 2016-10-05 10:35 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\UserDeviceRegistration.Ngc.dll
2016-12-31 14:09 - 2016-10-05 10:34 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2016-12-31 14:09 - 2016-10-05 10:33 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.AllJoyn.dll
2016-12-31 14:09 - 2016-10-05 10:33 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\credprovs.dll
2016-12-31 14:09 - 2016-10-05 10:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2016-12-31 14:09 - 2016-10-05 10:31 - 00480768 _____ (Microsoft Corporation) C:\Windows\system32\dsreg.dll
2016-12-31 14:09 - 2016-10-05 10:31 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll
2016-12-31 14:09 - 2016-10-05 10:29 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\EmailApis.dll
2016-12-31 14:09 - 2016-10-05 10:28 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe
2016-12-31 14:09 - 2016-10-05 10:28 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.dll
2016-12-31 14:09 - 2016-10-05 10:27 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll
2016-12-31 14:09 - 2016-10-05 10:27 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.ServiceDiscovery.Dnssd.dll
2016-12-31 14:09 - 2016-10-05 10:26 - 00184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserMgrProxy.dll
2016-12-31 14:09 - 2016-10-05 10:26 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovs.dll
2016-12-31 14:09 - 2016-10-05 10:26 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDeviceRegistration.Ngc.dll
2016-12-31 14:09 - 2016-10-05 10:25 - 00404992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsreg.dll
2016-12-31 14:09 - 2016-10-05 10:25 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccountApis.dll
2016-12-31 14:09 - 2016-10-05 10:25 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2016-12-31 14:09 - 2016-10-05 10:24 - 00483840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.AllJoyn.dll
2016-12-31 14:09 - 2016-10-05 10:24 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
2016-12-31 14:09 - 2016-10-05 10:23 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-12-31 14:09 - 2016-10-05 10:23 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\dialclient.dll
2016-12-31 14:09 - 2016-10-05 10:21 - 00567808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ChatApis.dll
2016-12-31 14:09 - 2016-10-05 10:20 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll
2016-12-31 14:09 - 2016-10-05 10:19 - 02390016 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe
2016-12-31 14:09 - 2016-10-05 10:18 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2016-12-31 14:09 - 2016-10-05 10:18 - 00983040 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2016-12-31 14:09 - 2016-10-05 10:18 - 00858112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EmailApis.dll
2016-12-31 14:09 - 2016-10-05 10:18 - 00759296 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-12-31 14:09 - 2016-10-05 10:16 - 00771072 _____ (Microsoft Corporation) C:\Windows\system32\AppointmentApis.dll
2016-12-31 14:09 - 2016-10-05 10:16 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2016-12-31 14:09 - 2016-10-05 10:16 - 00508416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-12-31 14:09 - 2016-10-05 10:15 - 00833024 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-12-31 14:09 - 2016-10-05 10:14 - 01456640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2016-12-31 14:09 - 2016-10-05 10:14 - 01013760 _____ (Microsoft Corporation) C:\Windows\system32\ContactApis.dll
2016-12-31 14:09 - 2016-10-05 10:12 - 00998912 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2016-12-31 14:09 - 2016-10-05 10:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentApis.dll
2016-12-31 14:09 - 2016-10-05 10:09 - 00691712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-12-31 14:09 - 2016-10-05 10:07 - 02646016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2016-12-31 14:09 - 2016-10-05 10:06 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactApis.dll
2016-12-31 14:09 - 2016-09-15 18:40 - 00965472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2016-12-31 14:09 - 2016-09-15 18:37 - 00496872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2016-12-31 14:09 - 2016-09-15 18:37 - 00402352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-12-31 14:09 - 2016-09-15 18:33 - 00083120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 01117024 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 00512416 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 00218008 _____ (Microsoft Corporation) C:\Windows\system32\LsaIso.exe
2016-12-31 14:09 - 2016-09-15 18:29 - 00169056 _____ (Microsoft Corporation) C:\Windows\system32\skci.dll
2016-12-31 14:09 - 2016-09-15 18:29 - 00081760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2016-12-31 14:09 - 2016-09-15 18:29 - 00023392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cmimcext.sys
2016-12-31 14:09 - 2016-09-15 18:27 - 00434528 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2016-12-31 14:09 - 2016-09-15 18:26 - 00090400 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2016-12-31 14:09 - 2016-09-15 18:23 - 00170960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-12-31 14:09 - 2016-09-15 18:22 - 00975744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2016-12-31 14:09 - 2016-09-15 18:22 - 00433832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2016-12-31 14:09 - 2016-09-15 18:20 - 00634944 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2016-12-31 14:09 - 2016-09-15 18:18 - 00856872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2016-12-31 14:09 - 2016-09-15 18:16 - 00527808 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2016-12-31 14:09 - 2016-09-15 18:15 - 00130912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys
2016-12-31 14:09 - 2016-09-15 18:14 - 00119648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wcifs.sys
2016-12-31 14:09 - 2016-09-15 18:13 - 00113504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2016-12-31 14:09 - 2016-09-15 18:11 - 00862064 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2016-12-31 14:09 - 2016-09-15 18:11 - 00725664 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2016-12-31 14:09 - 2016-09-15 18:07 - 00128864 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2016-12-31 14:09 - 2016-09-15 18:06 - 00387872 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2016-12-31 14:09 - 2016-09-15 18:06 - 00372440 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2016-12-31 14:09 - 2016-09-15 18:03 - 00094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll
2016-12-31 14:09 - 2016-09-15 18:03 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TempSignedLicenseExchangeTask.dll
2016-12-31 14:09 - 2016-09-15 18:01 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2016-12-31 14:09 - 2016-09-15 18:00 - 00554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2016-12-31 14:09 - 2016-09-15 17:59 - 00255488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2016-12-31 14:09 - 2016-09-15 17:59 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinRtTracing.dll
2016-12-31 14:09 - 2016-09-15 17:58 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-12-31 14:09 - 2016-09-15 17:58 - 00129024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SerialCommunication.dll
2016-12-31 14:09 - 2016-09-15 17:58 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.UserDeviceAssociation.dll
2016-12-31 14:09 - 2016-09-15 17:57 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.LowLevel.dll
2016-12-31 14:09 - 2016-09-15 17:57 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Gaming.XboxLive.Storage.dll
2016-12-31 14:09 - 2016-09-15 17:57 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ClipboardServer.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00265728 _____ C:\Windows\SysWOW64\Windows.Perception.Stub.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00257536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DataExchange.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Core.dll
2016-12-31 14:09 - 2016-09-15 17:56 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManagerApi.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 01243136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.FaceAnalysis.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetworkCollectionAgent.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00386048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00218624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2016-12-31 14:09 - 2016-09-15 17:55 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\biwinrt.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00431104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredProvDataModel.dll
2016-12-31 14:09 - 2016-09-15 17:54 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Picker.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00819200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppContracts.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2016-12-31 14:09 - 2016-09-15 17:53 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00525824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00445952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll
2016-12-31 14:09 - 2016-09-15 17:52 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2016-12-31 14:09 - 2016-09-15 17:52 - 00238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AboveLockAppHost.dll
2016-12-31 14:09 - 2016-09-15 17:51 - 00762368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2016-12-31 14:09 - 2016-09-15 17:51 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll
2016-12-31 14:09 - 2016-09-15 17:49 - 00901120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:49 - 00653312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.AccountsControl.dll
2016-12-31 14:09 - 2016-09-15 17:49 - 00468992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.InkControls.dll
2016-12-31 14:09 - 2016-09-15 17:47 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Editing.dll
2016-12-31 14:09 - 2016-09-15 17:47 - 00355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTMediaFrame.dll
2016-12-31 14:09 - 2016-09-15 17:47 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Energy.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MiracastReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00713216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00558080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2016-12-31 14:09 - 2016-09-15 17:46 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\ffbroker.dll
2016-12-31 14:09 - 2016-09-15 17:45 - 02642944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2016-12-31 14:09 - 2016-09-15 17:44 - 02153984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2016-12-31 14:09 - 2016-09-15 17:44 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL
2016-12-31 14:09 - 2016-09-15 17:43 - 03520512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
2016-12-31 14:09 - 2016-09-15 17:43 - 00433664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
2016-12-31 14:09 - 2016-09-15 17:43 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2016-12-31 14:09 - 2016-09-15 17:43 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\cmintegrator.dll
2016-12-31 14:09 - 2016-09-15 17:42 - 01220608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Audio.dll
2016-12-31 14:09 - 2016-09-15 17:42 - 00719872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_sr.dll
2016-12-31 14:09 - 2016-09-15 17:42 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2016-12-31 14:09 - 2016-09-15 17:41 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\Family.SyncEngine.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\Family.Client.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\Family.Authentication.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Printers.dll
2016-12-31 14:09 - 2016-09-15 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\NfcRadioMedia.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 02026496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-12-31 14:09 - 2016-09-15 17:40 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 01656320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Perception.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.XboxLive.Storage.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2016-12-31 14:09 - 2016-09-15 17:40 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.UserDeviceAssociation.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 02740224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 01232384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Maps.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 01004544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00827904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Gaming.Input.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00418304 _____ C:\Windows\system32\Windows.Perception.Stub.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2016-12-31 14:09 - 2016-09-15 17:39 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Radios.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00773120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2016-12-31 14:09 - 2016-09-15 17:38 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00691200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TokenBroker.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00671232 _____ (Microsoft Corporation) C:\Windows\system32\NetworkCollectionAgent.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00620544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\vmrdvcore.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\credprovhost.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2016-12-31 14:09 - 2016-09-15 17:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SerialCommunication.dll
2016-12-31 14:09 - 2016-09-15 17:38 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\PrintWSDAHost.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 01507840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.FaceAnalysis.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00912384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00568320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.LowLevel.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\Search.ProtocolHandler.MAPI2.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\wlancfg.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2016-12-31 14:09 - 2016-09-15 17:37 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\biwinrt.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00852480 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Import.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00719360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdiWiFi.sys
2016-12-31 14:09 - 2016-09-15 17:36 - 00686592 _____ (Microsoft Corporation) C:\Windows\system32\dsregcmd.exe
2016-12-31 14:09 - 2016-09-15 17:36 - 00387584 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00358912 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
2016-12-31 14:09 - 2016-09-15 17:36 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2016-12-31 14:09 - 2016-09-15 17:36 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\credprovslegacy.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 01060352 _____ (Microsoft Corporation) C:\Windows\system32\AppContracts.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 01013248 _____ (Microsoft Corporation) C:\Windows\system32\XblAuthManager.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00949248 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\sppcext.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00496128 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00472064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00431616 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Cortana.Desktop.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\SensorService.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Picker.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\icsvc.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\DataExchange.dll
2016-12-31 14:09 - 2016-09-15 17:35 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00671744 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.InkControls.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00560640 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-12-31 14:09 - 2016-09-15 17:34 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\AccountsRt.dll
2016-12-31 14:09 - 2016-09-15 17:33 - 03753984 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll
2016-12-31 14:09 - 2016-09-15 17:33 - 00966144 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2016-12-31 14:09 - 2016-09-15 17:33 - 00896512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.AccountsControl.dll
2016-12-31 14:09 - 2016-09-15 17:32 - 01037312 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2016-12-31 14:09 - 2016-09-15 17:32 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 01639424 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 01403392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Editing.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\RTMediaFrame.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Energy.dll
2016-12-31 14:09 - 2016-09-15 17:30 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\CastLaunch.dll
2016-12-31 14:09 - 2016-09-15 17:29 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\MiracastReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:29 - 00715264 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2016-12-31 14:09 - 2016-09-15 17:29 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2016-12-31 14:09 - 2016-09-15 17:28 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2016-12-31 14:09 - 2016-09-15 17:28 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 01078784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll
2016-12-31 14:09 - 2016-09-15 17:27 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2016-12-31 14:09 - 2016-09-15 17:27 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2016-12-31 14:09 - 2016-09-15 17:27 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\fvenotify.exe
2016-12-31 14:09 - 2016-09-15 17:27 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\Sens.dll
2016-12-31 14:09 - 2016-09-15 17:26 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\PlayToReceiver.dll
2016-12-31 14:09 - 2016-09-15 17:26 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerDeviceEncryption.exe
2016-12-31 14:09 - 2016-09-15 17:26 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\bdeui.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Audio.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 00947200 _____ (Microsoft Corporation) C:\Windows\system32\wsp_sr.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2016-12-31 14:09 - 2016-09-15 17:25 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\SpaceAgent.exe
2016-12-31 14:09 - 2016-09-15 17:25 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundMediaPolicy.dll
2016-12-31 14:09 - 2016-09-15 17:24 - 04596224 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2016-12-31 14:09 - 2016-09-15 17:24 - 01080320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Ocr.dll
2016-12-31 14:09 - 2016-09-15 17:24 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Web.Core.dll
2016-12-31 14:09 - 2016-09-15 17:23 - 03405824 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2016-12-31 14:09 - 2016-09-15 17:23 - 01361408 _____ (Microsoft Corporation) C:\Windows\system32\SharedStartModel.dll
2016-12-31 14:09 - 2016-09-15 17:23 - 01040896 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2016-12-31 14:09 - 2016-09-15 17:22 - 00857600 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 02538496 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 02208768 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.3D.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2016-12-31 14:09 - 2016-09-15 17:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 02424320 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Perception.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 02095616 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-12-31 14:09 - 2016-09-15 17:20 - 01535488 _____ (Microsoft Corporation) C:\Windows\system32\SpeechPal.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 01275392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 01266176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 00875520 _____ (Microsoft Corporation) C:\Windows\system32\TokenBroker.dll
2016-12-31 14:09 - 2016-09-15 17:20 - 00845824 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2016-12-31 14:09 - 2016-09-15 17:19 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Maps.dll
2016-12-31 14:09 - 2016-09-15 17:19 - 01130496 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-12-31 14:09 - 2016-09-15 17:19 - 00903680 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2016-12-31 14:09 - 2016-09-15 17:18 - 01369088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Phone.dll
2016-12-31 14:09 - 2016-09-15 17:16 - 00387072 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2016-12-31 14:09 - 2016-09-10 14:21 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\capimg.sys
2016-12-31 14:09 - 2016-09-07 06:48 - 00379744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2016-12-31 14:09 - 2016-09-07 06:34 - 00178528 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHostUser.dll
2016-12-31 14:09 - 2016-09-07 06:33 - 00450392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-12-31 14:09 - 2016-09-07 06:29 - 00755656 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2016-12-31 14:09 - 2016-09-07 06:29 - 00523712 _____ (Microsoft Corporation) C:\Windows\system32\DMRServer.dll
2016-12-31 14:09 - 2016-09-07 06:29 - 00382272 _____ (Microsoft Corporation) C:\Windows\system32\LockAppHost.exe
2016-12-31 14:09 - 2016-09-07 06:29 - 00118112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\EhStorTcgDrv.sys
2016-12-31 14:09 - 2016-09-07 06:17 - 00782176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2016-12-31 14:09 - 2016-09-07 06:12 - 00321792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LockAppHost.exe
2016-12-31 14:09 - 2016-09-07 06:04 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosHost.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\MosResource.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MapControls.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\MapsCSP.dll
2016-12-31 14:09 - 2016-09-07 06:03 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft-Windows-MosTrace.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\MosHostClient.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\nativemap.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\MapsBtSvcProxy.dll
2016-12-31 14:09 - 2016-09-07 06:02 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\MapControlStringsRes.dll
2016-12-31 14:09 - 2016-09-07 06:00 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\mapstoasttask.dll
2016-12-31 14:09 - 2016-09-07 06:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-12-31 14:09 - 2016-09-07 06:00 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MosHost.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00409088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosResource.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00110080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft-Windows-MapControls.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\tzautoupdate.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\mapsupdatetask.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExtrasXmlParser.dll
2016-12-31 14:09 - 2016-09-07 05:59 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapControlStringsRes.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MosHostClient.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\POSyncServices.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AddressParser.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTypeHelperUtil.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataLanguageUtil.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataAccessRes.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhoneutilRes.dll
2016-12-31 14:09 - 2016-09-07 05:58 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2016-12-31 14:09 - 2016-09-07 05:57 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExSMime.dll
2016-12-31 14:09 - 2016-09-07 05:56 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\XamlTileRender.dll
2016-12-31 14:09 - 2016-09-07 05:56 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ContactActivation.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 00820736 _____ (Microsoft Corporation) C:\Windows\system32\BingOnlineServices.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 00781824 _____ (Microsoft Corporation) C:\Windows\system32\PhoneService.dll
2016-12-31 14:09 - 2016-09-07 05:55 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VCardParser.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00678912 _____ (Microsoft Corporation) C:\Windows\system32\PhoneProviders.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\CredProvDataModel.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\NmaDirect.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2016-12-31 14:09 - 2016-09-07 05:54 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataPlatformHelperUtil.dll
2016-12-31 14:09 - 2016-09-07 05:53 - 00526848 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll
2016-12-31 14:09 - 2016-09-07 05:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppointmentActivation.dll
2016-12-31 14:09 - 2016-09-07 05:53 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2016-12-31 14:09 - 2016-09-07 05:52 - 00536576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingOnlineServices.dll
2016-12-31 14:09 - 2016-09-07 05:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NmaDirect.dll
2016-12-31 14:09 - 2016-09-07 05:52 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2016-12-31 14:09 - 2016-09-07 05:50 - 00426496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll
2016-12-31 14:09 - 2016-09-07 05:50 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2016-12-31 14:09 - 2016-09-07 05:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Phoneutil.dll
2016-12-31 14:09 - 2016-09-07 05:47 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2016-12-31 14:09 - 2016-09-07 05:46 - 00575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2016-12-31 14:09 - 2016-09-07 05:45 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-12-31 14:09 - 2016-09-07 05:43 - 00484352 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2016-12-31 14:09 - 2016-09-07 05:39 - 03116544 _____ (Microsoft Corporation) C:\Windows\system32\MSAJApi.dll
2016-12-31 14:09 - 2016-09-07 05:39 - 00895488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2016-12-31 14:09 - 2016-09-07 05:37 - 02370048 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2016-12-31 14:09 - 2016-09-07 05:37 - 00540160 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2016-12-31 14:09 - 2016-09-07 05:36 - 02423296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAJApi.dll
2016-12-31 14:09 - 2016-09-07 05:34 - 04557824 _____ (Microsoft) C:\Windows\SysWOW64\dbgeng.dll
2016-12-31 14:09 - 2016-09-07 05:34 - 00444416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2016-12-31 14:09 - 2016-09-07 05:33 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-12-31 14:09 - 2016-09-07 05:31 - 00461312 _____ (Microsoft) C:\Windows\SysWOW64\DbgModel.dll
2016-12-31 14:09 - 2016-08-27 06:12 - 00244816 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2016-12-31 14:09 - 2016-08-27 05:58 - 00121368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2016-12-31 14:09 - 2016-08-27 05:44 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\encapi.dll
2016-12-31 14:09 - 2016-08-27 05:43 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\encapi.dll
2016-12-31 14:09 - 2016-08-20 06:34 - 00136032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudExperienceHostUser.dll
2016-12-31 14:09 - 2016-08-20 06:20 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2016-12-31 14:09 - 2016-08-20 06:17 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManagerSvc.dll
2016-12-31 14:09 - 2016-08-20 06:12 - 00476672 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-12-31 14:09 - 2016-08-20 06:07 - 00203776 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2016-12-31 14:09 - 2016-08-20 06:04 - 00592384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GamePanel.exe
2016-12-31 14:09 - 2016-08-20 05:58 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi_passthru.dll
2016-12-31 14:09 - 2016-08-20 05:56 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\delegatorprovider.dll
2016-12-31 14:09 - 2016-08-06 05:17 - 00790760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-12-31 14:09 - 2016-08-06 05:16 - 00073568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2016-12-31 14:09 - 2016-08-06 05:16 - 00020320 _____ (Microsoft Corporation) C:\Windows\system32\kdhvcom.dll
2016-12-31 14:09 - 2016-08-06 05:13 - 01847048 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2016-12-31 14:09 - 2016-08-06 05:03 - 01343928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2016-12-31 14:09 - 2016-08-06 04:48 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-12-31 14:09 - 2016-08-06 04:48 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-12-31 14:09 - 2016-08-06 04:48 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-12-31 14:09 - 2016-08-06 04:48 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2016-12-31 14:09 - 2016-08-06 04:47 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2016-12-31 14:09 - 2016-08-06 04:47 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-12-31 14:09 - 2016-08-06 04:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-12-31 14:09 - 2016-08-06 04:47 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-12-31 14:09 - 2016-08-06 04:46 - 09260032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-12-31 14:09 - 2016-08-06 04:46 - 09260032 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-12-31 14:09 - 2016-08-06 04:46 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\dasHost.exe
2016-12-31 14:09 - 2016-08-06 04:46 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2016-12-31 14:09 - 2016-08-06 04:45 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-12-31 14:09 - 2016-08-06 04:45 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\StorageUsage.dll
2016-12-31 14:09 - 2016-08-06 04:45 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-12-31 14:09 - 2016-08-06 04:44 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-12-31 14:09 - 2016-08-06 04:44 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll
2016-12-31 14:09 - 2016-08-06 04:43 - 00280064 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_WorkAccess.dll
2016-12-31 14:09 - 2016-08-06 04:43 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\ClipboardServer.dll
2016-12-31 14:09 - 2016-08-06 04:41 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncPolicy.dll
2016-12-31 14:09 - 2016-08-06 04:40 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\dafpos.dll
2016-12-31 14:09 - 2016-08-06 04:40 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncPolicy.dll
2016-12-31 14:09 - 2016-08-06 04:36 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\das.dll
2016-12-31 14:09 - 2016-08-06 04:35 - 00471552 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2016-12-31 14:09 - 2016-08-06 04:33 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smphost.dll
2016-12-31 14:09 - 2016-08-06 04:31 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\wpninprc.dll
2016-12-31 14:09 - 2016-08-05 10:14 - 01066328 _____ (Microsoft Corporation) C:\Windows\system32\pidgenx.dll
2016-12-31 14:09 - 2016-08-05 10:10 - 00939872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pidgenx.dll
2016-12-31 14:09 - 2016-08-05 10:05 - 00665768 _____ (Microsoft Corporation) C:\Windows\system32\GenValObj.exe
2016-12-31 14:09 - 2016-08-05 09:28 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\slcext.dll
2016-12-31 14:09 - 2016-08-05 09:23 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2016-12-31 14:09 - 2016-08-05 09:22 - 00138240 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2016-12-31 14:09 - 2016-08-05 09:18 - 00118272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2016-12-31 14:09 - 2016-08-05 09:08 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2016-12-31 14:09 - 2016-08-02 09:44 - 00114192 _____ (Microsoft Corporation) C:\Windows\system32\win32u.dll
2016-12-31 14:09 - 2016-08-02 09:15 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\shutdownux.dll
2016-12-31 14:09 - 2016-08-02 05:47 - 00079536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32u.dll
2016-12-31 14:09 - 2016-07-22 02:18 - 00297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtapi.dll
2016-12-31 14:08 - 2016-12-09 11:27 - 00172528 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-12-31 14:08 - 2016-12-09 11:20 - 02677544 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-12-31 14:08 - 2016-12-09 11:20 - 02189664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-12-31 14:08 - 2016-12-09 11:20 - 01738560 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-12-31 14:08 - 2016-12-09 11:20 - 00658784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2016-12-31 14:08 - 2016-12-09 11:20 - 00402272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-12-31 14:08 - 2016-12-09 11:18 - 01267512 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2016-12-31 14:08 - 2016-12-09 11:11 - 02048496 _____ C:\Windows\SysWOW64\CoreUIComponents.dll
2016-12-31 14:08 - 2016-12-09 10:56 - 00959112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2016-12-31 14:08 - 2016-12-09 10:42 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-12-31 14:08 - 2016-12-09 10:41 - 00380928 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2016-12-31 14:08 - 2016-12-09 10:34 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2016-12-31 14:08 - 2016-12-09 10:32 - 00635904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-12-31 14:08 - 2016-12-09 10:25 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll
2016-12-31 14:08 - 2016-12-09 10:21 - 04746752 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-12-31 14:08 - 2016-12-09 10:20 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2016-12-31 14:08 - 2016-12-09 10:20 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2016-12-31 14:08 - 2016-12-09 10:18 - 03666432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-12-31 14:08 - 2016-12-09 10:18 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2016-12-31 14:08 - 2016-11-11 11:15 - 00198856 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2016-12-31 14:08 - 2016-11-11 11:08 - 00142176 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll
2016-12-31 14:08 - 2016-11-11 11:03 - 00266544 _____ (Microsoft Corporation) C:\Windows\system32\policymanager.dll
2016-12-31 14:08 - 2016-11-11 11:02 - 02828376 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-12-31 14:08 - 2016-11-11 11:01 - 07219672 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2016-12-31 14:08 - 2016-11-11 11:01 - 00637400 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-12-31 14:08 - 2016-11-11 10:56 - 00163752 _____ (Microsoft Corporation) C:\Windows\system32\RTWorkQ.dll
2016-12-31 14:08 - 2016-11-11 10:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\NetCfgNotifyObjectHost.exe
2016-12-31 14:08 - 2016-11-11 10:26 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xboxgip.sys
2016-12-31 14:08 - 2016-11-11 10:26 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseModernAppMgmtCSP.dll
2016-12-31 14:08 - 2016-11-11 10:26 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\ReportingCSP.dll
2016-12-31 14:08 - 2016-11-11 10:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2016-12-31 14:08 - 2016-11-11 10:25 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\dmcertinst.exe
2016-12-31 14:08 - 2016-11-11 10:24 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-31 14:08 - 2016-11-11 10:23 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\EAMProgressHandler.dll
2016-12-31 14:08 - 2016-11-11 10:22 - 00489472 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupShim.dll
2016-12-31 14:08 - 2016-11-11 10:22 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\EDPCleanup.exe
2016-12-31 14:08 - 2016-11-11 10:21 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2016-12-31 14:08 - 2016-11-11 10:21 - 00587776 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2016-12-31 14:08 - 2016-11-11 10:21 - 00379392 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00574464 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_StorageSense.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\cryptngc.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2016-12-31 14:08 - 2016-11-11 10:20 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2016-12-31 14:08 - 2016-11-11 10:19 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2016-12-31 14:08 - 2016-11-11 10:19 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAppMgmtSvc.dll
2016-12-31 14:08 - 2016-11-11 10:19 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2016-12-31 14:08 - 2016-11-11 10:18 - 02084352 _____ (Microsoft Corporation) C:\Windows\system32\DeviceFlows.DataModel.dll
2016-12-31 14:08 - 2016-11-11 10:18 - 00278016 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2016-12-31 14:08 - 2016-11-11 10:17 - 01220096 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2016-12-31 14:08 - 2016-11-11 10:16 - 02716672 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-12-31 14:08 - 2016-11-11 10:16 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2016-12-31 14:08 - 2016-11-11 10:15 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-12-31 14:08 - 2016-11-11 10:15 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll
2016-12-31 14:08 - 2016-11-11 10:15 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2016-12-31 14:08 - 2016-11-11 10:14 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2016-12-31 14:08 - 2016-11-11 10:14 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2016-12-31 14:08 - 2016-11-11 10:13 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll
2016-12-31 14:08 - 2016-11-11 10:11 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\umpoext.dll
2016-12-31 14:08 - 2016-11-11 10:07 - 02510848 _____ (Microsoft Corporation) C:\Windows\system32\NetworkMobileSettings.dll
2016-12-31 14:08 - 2016-11-11 10:07 - 01691136 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2016-12-31 14:08 - 2016-11-11 10:05 - 01779712 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 02800128 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 01709056 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 00691712 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2016-12-31 14:08 - 2016-11-11 10:04 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\dmenrollengine.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 04708864 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 02669056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2016-12-31 14:08 - 2016-11-11 10:03 - 00632320 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2016-12-31 14:08 - 2016-11-11 08:49 - 00248480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\policymanager.dll
2016-12-31 14:08 - 2016-11-11 08:42 - 00374448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2016-12-31 14:08 - 2016-11-11 08:42 - 00152416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTWorkQ.dll
2016-12-31 14:08 - 2016-11-11 08:27 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetCfgNotifyObjectHost.exe
2016-12-31 14:08 - 2016-11-11 08:26 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe
2016-12-31 14:08 - 2016-11-11 08:24 - 00519168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ngccredprov.dll
2016-12-31 14:08 - 2016-11-11 08:21 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.BackgroundManagerPolicy.dll
2016-12-31 14:08 - 2016-11-11 08:20 - 00306176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupShim.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00298496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Internal.Management.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2016-12-31 14:08 - 2016-11-11 08:19 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2016-12-31 14:08 - 2016-11-11 08:18 - 00431616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2016-12-31 14:08 - 2016-11-11 08:16 - 00253952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-12-31 14:08 - 2016-11-11 08:15 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptngc.dll
2016-12-31 14:08 - 2016-11-11 08:14 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmenrollengine.dll
2016-12-31 14:08 - 2016-11-11 08:06 - 01228288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2016-12-31 14:08 - 2016-11-11 08:06 - 00400384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2016-12-31 14:08 - 2016-11-11 08:04 - 01595392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-12-31 14:08 - 2016-11-11 08:03 - 02256384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-12-31 14:08 - 2016-11-11 08:03 - 00772608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2016-12-31 14:08 - 2016-11-02 12:13 - 00423776 _____ (Microsoft Corporation) C:\Windows\system32\wifitask.exe
2016-12-31 14:08 - 2016-11-02 12:08 - 00576408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2016-12-31 14:08 - 2016-11-02 12:08 - 00186424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\weretw.dll
2016-12-31 14:08 - 2016-11-02 12:08 - 00111968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NetSetupApi.dll
2016-12-31 14:08 - 2016-11-02 12:04 - 00596832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2016-12-31 14:08 - 2016-11-02 12:03 - 02750936 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00848736 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupEngine.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00682816 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00238056 _____ (Microsoft Corporation) C:\Windows\system32\weretw.dll
2016-12-31 14:08 - 2016-11-02 12:02 - 00148832 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2016-12-31 14:08 - 2016-11-02 12:01 - 00276832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2016-12-31 14:08 - 2016-11-02 11:48 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-12-31 14:08 - 2016-11-02 11:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-12-31 14:08 - 2016-11-02 11:48 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsext.dll
2016-12-31 14:08 - 2016-11-02 11:46 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininetlui.dll
2016-12-31 14:08 - 2016-11-02 11:43 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-12-31 14:08 - 2016-11-02 11:43 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-12-31 14:08 - 2016-11-02 11:36 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetailsUpdate.dll
2016-12-31 14:08 - 2016-11-02 11:35 - 00336896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2016-12-31 14:08 - 2016-11-02 11:31 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-12-31 14:08 - 2016-11-02 11:31 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\wininetlui.dll
2016-12-31 14:08 - 2016-11-02 11:30 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2016-12-31 14:08 - 2016-11-02 11:30 - 00134144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ErrorDetails.dll
2016-12-31 14:08 - 2016-11-02 11:30 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00884224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-12-31 14:08 - 2016-11-02 11:29 - 00122368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSM.dll
2016-12-31 14:08 - 2016-11-02 11:28 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2016-12-31 14:08 - 2016-11-02 11:28 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2016-12-31 14:08 - 2016-11-02 11:28 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-12-31 14:08 - 2016-11-02 11:26 - 01509376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-12-31 14:08 - 2016-11-02 11:26 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-12-31 14:08 - 2016-11-02 11:25 - 00541696 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2016-12-31 14:08 - 2016-11-02 11:23 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2016-12-31 14:08 - 2016-11-02 11:19 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\chartv.dll
2016-12-31 14:08 - 2016-11-02 11:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2016-12-31 14:08 - 2016-11-02 11:16 - 01637888 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-12-31 14:08 - 2016-11-02 11:16 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2016-12-31 14:08 - 2016-11-02 11:16 - 00265728 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupSvc.dll
2016-12-31 14:08 - 2016-10-15 05:38 - 00500064 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2016-12-31 14:08 - 2016-10-15 05:30 - 00557408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2016-12-31 14:08 - 2016-10-15 05:30 - 00509280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2016-12-31 14:08 - 2016-10-15 05:30 - 00341936 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-12-31 14:08 - 2016-10-15 05:29 - 00908640 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2016-12-31 14:08 - 2016-10-15 05:29 - 00079200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2016-12-31 14:08 - 2016-10-15 05:21 - 00584032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-12-31 14:08 - 2016-10-15 05:18 - 00749920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll
2016-12-31 14:08 - 2016-10-15 05:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-12-31 14:08 - 2016-10-15 04:56 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe
2016-12-31 14:08 - 2016-10-15 04:56 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2016-12-31 14:08 - 2016-10-15 04:56 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\OnDemandConnRouteHelper.dll
2016-12-31 14:08 - 2016-10-15 04:55 - 00265728 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2016-12-31 14:08 - 2016-10-15 04:54 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2016-12-31 14:08 - 2016-10-15 04:48 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2016-12-31 14:08 - 2016-10-15 04:46 - 03287552 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2016-12-31 14:08 - 2016-10-15 04:45 - 01790464 _____ (Microsoft Corporation) C:\Windows\system32\LocationFramework.dll
2016-12-31 14:08 - 2016-10-15 04:43 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmi.dll
2016-12-31 14:08 - 2016-10-15 04:42 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\Geolocation.dll
2016-12-31 14:08 - 2016-10-15 04:42 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.exe
2016-12-31 14:08 - 2016-10-15 04:41 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2016-12-31 14:08 - 2016-10-15 04:39 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Geolocation.dll
2016-12-31 14:08 - 2016-10-15 04:38 - 00913920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2016-12-31 14:08 - 2016-10-15 04:38 - 00675840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2016-12-31 14:08 - 2016-10-15 04:37 - 01643008 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Speech.dll
2016-12-31 14:08 - 2016-10-15 04:37 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\cmifw.dll
2016-12-31 14:08 - 2016-10-15 04:36 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2016-12-31 14:08 - 2016-10-15 04:36 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmifw.dll
2016-12-31 14:08 - 2016-10-15 04:35 - 03054080 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2016-12-31 14:08 - 2016-10-15 04:35 - 00701952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2016-12-31 14:08 - 2016-10-15 04:34 - 02476544 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-12-31 14:08 - 2016-10-15 04:34 - 01840640 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-12-31 14:08 - 2016-10-05 11:22 - 01181536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-12-31 14:08 - 2016-10-05 11:17 - 01322848 _____ (Microsoft Corporation) C:\Windows\system32\wpx.dll
2016-12-31 14:08 - 2016-10-05 11:12 - 02446696 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2016-12-31 14:08 - 2016-10-05 10:38 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2016-12-31 14:08 - 2016-10-05 10:38 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Diagnostics.dll
2016-12-31 14:08 - 2016-10-05 10:33 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\UserMgrProxy.dll
2016-12-31 14:08 - 2016-10-05 10:32 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.HostName.dll
2016-12-31 14:08 - 2016-10-05 10:31 - 00748544 _____ (Microsoft Corporation) C:\Windows\system32\ChatApis.dll
2016-12-31 14:08 - 2016-10-05 10:31 - 00561664 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Wallet.dll
2016-12-31 14:08 - 2016-10-05 10:31 - 00425472 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2016-12-31 14:08 - 2016-10-05 10:30 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2016-12-31 14:08 - 2016-10-05 10:29 - 00368640 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2016-12-31 14:08 - 2016-10-05 10:28 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2016-12-31 14:08 - 2016-10-05 10:28 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.HostName.dll
2016-12-31 14:08 - 2016-10-05 10:26 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-12-31 14:08 - 2016-10-05 10:22 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2016-12-31 14:08 - 2016-10-05 10:20 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2016-12-31 14:08 - 2016-10-05 10:17 - 02914304 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2016-12-31 14:08 - 2016-10-05 10:17 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll
2016-12-31 14:08 - 2016-10-05 10:15 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
2016-12-31 14:08 - 2016-10-05 10:15 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dialclient.dll
2016-12-31 14:08 - 2016-10-05 10:13 - 01328128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2016-12-31 14:08 - 2016-10-05 10:13 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2016-12-31 14:08 - 2016-10-05 10:12 - 00924672 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2016-12-31 14:08 - 2016-10-05 10:08 - 00598528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2016-12-31 14:08 - 2016-10-05 10:07 - 00589312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2016-12-31 14:08 - 2016-10-05 10:06 - 01013248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2016-12-31 14:08 - 2016-10-05 10:05 - 00751104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-12-31 14:08 - 2016-09-15 18:30 - 00646136 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2016-12-31 14:08 - 2016-09-15 18:30 - 00354264 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2016-12-31 14:08 - 2016-09-15 18:29 - 00424640 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-12-31 14:08 - 2016-09-15 18:29 - 00074080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys
2016-12-31 14:08 - 2016-09-15 18:25 - 00280472 _____ (Microsoft Corporation) C:\Windows\system32\bdeunlock.exe
2016-12-31 14:08 - 2016-09-15 18:21 - 01000288 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2016-12-31 14:08 - 2016-09-15 18:19 - 00361104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2016-12-31 14:08 - 2016-09-15 18:16 - 01157000 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2016-12-31 14:08 - 2016-09-15 18:16 - 00206096 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-12-31 14:08 - 2016-09-15 18:15 - 00649568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-12-31 14:08 - 2016-09-15 18:03 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2016-12-31 14:08 - 2016-09-15 18:01 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Radios.dll
2016-12-31 14:08 - 2016-09-15 17:59 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovslegacy.dll
2016-12-31 14:08 - 2016-09-15 17:58 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlancfg.dll
2016-12-31 14:08 - 2016-09-15 17:58 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credprovhost.dll
2016-12-31 14:08 - 2016-09-15 17:58 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2016-12-31 14:08 - 2016-09-15 17:57 - 00392192 _____ (Microsoft Corporation)
         

Antwort

Themen zu Bestehen reste nach trojaner infektion?
aktuelle, andere, anderen, avira, bereits, beseitigen, blockiert, dateien, entferne, entfernen, erwischt, festplatte, geschlossen, gestern, infektion, neustarten, nicht mehr, nichts, platte, quelle, scan, scanne, scannen, troja, trojaner




Ähnliche Themen: Bestehen reste nach trojaner infektion?


  1. Unsicher, ob nach Entfernung von Spyhunter4 noch Reste oder Adware vorhanden ist
    Plagegeister aller Art und deren Bekämpfung - 23.05.2016 (16)
  2. Doch noch Reste nach Erfolgreicher Bekämpfung Re-Infekt Malaha.net?
    Plagegeister aller Art und deren Bekämpfung - 13.06.2015 (7)
  3. Windows 7 - Evtl. Highjacking/ Trojaner-Infektion nach unvorsichtigem Download
    Log-Analyse und Auswertung - 20.04.2015 (16)
  4. Windows 7 Trojaner infektion nach Plugin installation
    Log-Analyse und Auswertung - 15.04.2014 (15)
  5. Nach dem Scan mit GMER hat er Festgestellt dass System Modifikationen bestehen
    Log-Analyse und Auswertung - 12.02.2014 (11)
  6. Reste von Delta Search nach Problemen mit Quicktime unter Win XP Home
    Plagegeister aller Art und deren Bekämpfung - 12.08.2013 (30)
  7. sauberer PC nach Polizei Trojaner Infektion?
    Log-Analyse und Auswertung - 20.02.2013 (16)
  8. Keylogger/Trojaner nach GVU Infektion
    Log-Analyse und Auswertung - 21.12.2012 (22)
  9. BKA - Trojaner Reste nach Kaspersky Rescue CD ?
    Log-Analyse und Auswertung - 19.07.2012 (5)
  10. Datenverschlüsselung nach Infektion mit dem Trojaner tr-dldr-agent-17383
    Plagegeister aller Art und deren Bekämpfung - 16.06.2012 (9)
  11. Datenentschlüsselung nach Infektion mit Windows-Verschlüsselungs-Trojaner
    Plagegeister aller Art und deren Bekämpfung - 16.06.2012 (2)
  12. Nach Trojaner Infektion ist der Desktop schwarz
    Plagegeister aller Art und deren Bekämpfung - 23.12.2011 (1)
  13. Nach Entfernung von Windows Recovery Virus noch Reste in der Registry
    Plagegeister aller Art und deren Bekämpfung - 09.07.2011 (9)
  14. Noch thinkpoint Reste nach Systemwiederherstellung
    Alles rund um Windows - 09.04.2011 (3)
  15. Nach Antivirus 2008 Infektion, Reste von Tdssserv.sys
    Plagegeister aller Art und deren Bekämpfung - 09.08.2009 (18)
  16. Logfile nach Trojaner Infektion...Bitte um Hilfe!
    Log-Analyse und Auswertung - 17.07.2009 (15)
  17. Reste (mailbot o.ä.) nach "rootkit.bagle" infektion
    Plagegeister aller Art und deren Bekämpfung - 12.05.2009 (5)

Zum Thema Bestehen reste nach trojaner infektion? - Ich hatte gestern als ich eine alte Festplatte von mir wiedergefunden habe, sie angeschlossen um zu sehen was darauf ist. Stellt sich also kurz darauf fest da waren Trojaner drauf - Bestehen reste nach trojaner infektion?...
Archiv
Du betrachtest: Bestehen reste nach trojaner infektion? auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.