Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Webseiten werden umgeleitet - iStartSurf und mehr

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 03.04.2015, 20:45   #1
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



Hallo liebe Trojaner-Boarder,
mein Sohn hat sich offenbar mit einem Download den iStartSurf runtergeladen. Nun haben wir auf dem Rechner ständig Werbung und zig Webseiten öffnen sich ungefragt gleich nach dem PC-Start und auch beim Browsen. Außerdem gibt es unerwünschte Reinigungstools und etliches mehr. Das hängt möglicherweise alles mit dem gestrigen Download zusammen. Ich hoffe, Ihr habt noch eine Idee, denn alle Deinstallationsversuche scheitern (iStartsurf lässt sich nicht deinstallieren sondern bietet nur eigene Installationsroutinen an, wenn man es unter Systemsteuerung probiert).

Anbei die Loggs (Win-Firewall war zumindest bis zur Logg-Erstellung aktiv, hat aber nichts ausgeworfen - vor Logg-Erstellung wurde die Firewall und das Inet deaktiviert):


Hier kommt die defogger_disable.log (heißt nicht .txt wie in Eurer Anleitung erwähnt):
Code:
ATTFilter
defogger_disable by jpshortstuff (23.02.10.1)
Log created at 20:51 on 03/04/2015 (Papa)

Checking for autostart values...
HKCU\~\Run values retrieved.
HKLM\~\Run values retrieved.

Checking for services/drivers...


-=E.O.F=-
         
Leider passt nicht alles in einen Post.
Hier kommt die Addition.txt:
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
Ran by Papa at 2015-04-03 20:57:47
Running from C:\Users\Papa\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3003 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3007 - Acer Incorporated)
Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Brick-Force (HKLM-x32\...\{9853ABB2-6416-4C87-8650-DD8E528FF564}}_is1) (Version: 4.3.383.130.19 - Infernum Productions AG)
Cisco AnyConnect VPN Client (HKLM-x32\...\{E6BF9670-C9E9-461A-9B14-B5ADAC3176CF}) (Version: 2.5.2019 - Cisco Systems, Inc.)
Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft)
Crossbrowse (HKLM-x32\...\Crossbrowse) (Version: 39.4.2171.95 - The Crossbrowse Authors)
Drome Racers (HKLM-x32\...\{EC1DCD6C-3AE0-42CE-8EAA-6886CC4400DC}) (Version:  - )
eFix Pro (HKLM\...\eFix Pro) (Version: 1.8.1.1 - Reimage)
GamesDesktop 014.370 (HKLM-x32\...\gmsd_de_370_is1) (Version:  - GAMESDESKTOP) <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.101 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
I - Cinema (HKLM-x32\...\I - Cinema) (Version: 1.36.01.22 - iCinema)
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3002 - Acer Incorporated)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 17.2 - Intel)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.0.1207 - Intel Corporation)
istartsurf uninstall (HKLM-x32\...\istartsurf uninstall) (Version:  - istartsurf) <==== ATTENTION
Java 8 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3002 - Acer Incorporated)
LiveUpdateWPP (HKLM-x32\...\LiveUpdateWPP) (Version:  - Anti-phishing database updater for Web Protector Plus. This service keeps your computer updated with the newest database of known Internet threats.)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.328 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.328 - LogMeIn, Inc.) Hidden
MediaPlayRS3 (HKLM-x32\...\MediaPlayRS3) (Version: 1.36.01.22 - NewPlayerVid) <==== ATTENTION
Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
MixVideoPlayer (HKLM-x32\...\MixVideoPlayer) (Version: v1.0.0.10 - SoftForce LLC)
MyPC Backup  (HKLM\...\MyPC Backup) (Version:  - JDi Backup Ltd) <==== ATTENTION
Nero 12 Essentials OEM.a01 (HKLM-x32\...\{9BF0D9FE-9893-4647-81B9-17B7BEA4E6FD}) (Version: 12.5.00000 - Nero AG)
NVIDIA 3D Vision Controller-Treiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 331.82 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.82 - NVIDIA Corporation)
NVIDIA Grafiktreiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.82 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation)
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.01.3102 - Acer)
Optimizer Pro v3.2 (HKLM-x32\...\Optimizer Pro_is1) (Version: 3.3.1.7 - PCUtilities Software Limited) <==== ATTENTION
Origin (HKLM-x32\...\Origin) (Version: 9.5.2.2829 - Electronic Arts, Inc.)
PepperZip 2.0 (HKLM-x32\...\PepperZip) (Version: 2.0 - PepperWare Co.Ltd.) <==== ATTENTION
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Prerequisite installer (x32 Version: 12.0.0002 - Nero AG) Hidden
PVZ Garden Warfare (HKLM-x32\...\{A5AC7D7B-C1D5-4AF9-8829-993DA335BE1B}) (Version: 1.0.3.0 - Electronic Arts)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6680 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.2.8400.30137 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
SpeedChecker (HKLM-x32\...\3B71EF8B-D845-EF45-42CB-143396F76CAF) (Version:  - SpeedChecker-software) <==== ATTENTION
Star Stable (HKLM-x32\...\{2B03B553-4983-4005-99C4-31DFC25B4BB9}) (Version: 1.00.0000 - Star Stable Entertainment AB)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Super Optimizer v3.2 (HKLM-x32\...\Super Optimizer_is1) (Version: 3.2.0.1 - Super PC Tools ltd) <==== ATTENTION
System NotifierV02.04 (HKLM-x32\...\System NotifierV02.04) (Version: 1.36.01.22 - System NotifierV02.04)
Unico Browser (HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\UnicoBrowser) (Version: 39.0.2132.8 - Unico Browser)
Unity Web Player (HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
Web Protector IE (HKLM-x32\...\WebProtector) (Version: 1.0.0.2 - WebProtector)
Web Protector Plus (uninstall only) (HKLM\...\WebProtectorPlus) (Version:  - )
WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version:  - Wargaming.net)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)
Zombie Invasion (HKLM-x32\...\ZombieInvasion) (Version: 2.7.59 - Time Lapse Solutions) <==== ATTENTION

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

12-03-2015 20:09:38 Windows Update
22-03-2015 20:40:45 Geplanter Prüfpunkt
01-04-2015 21:10:35 Geplanter Prüfpunkt

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-07-26 07:26 - 2014-05-01 19:46 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {02E3D064-9B43-4196-9A4C-66CFDE386CB8} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-04-03] (globalUpdate) <==== ATTENTION
Task: {06FBC029-5FDF-4E4A-9353-EE438DA6A2A9} - System32\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5 => C:\Program Files (x86)\System NotifierV02.04\da51e4e2-f70f-47a0-870d-5256737b2942-5.exe [2015-04-03] (System NotifierV02.04) <==== ATTENTION
Task: {142D7A5E-8103-404A-AD1B-A29D611B4D53} - System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-7 => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-7.exe [2015-04-03] (NewPlayerVid) <==== ATTENTION
Task: {169E7D4C-9B62-471E-A6E0-1896DA8F5C67} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-10] (Google Inc.)
Task: {245FB1D4-A0EA-497D-8E27-E0FCDD35AEF3} - System32\Tasks\Super Optimizer Schedule => C:\Program Files (x86)\Super Optimizer\SupOptLauncher.exe [2015-04-02] (SUPER PC TOOLS LIMITED) <==== ATTENTION
Task: {28EC96E9-B005-4FB0-9121-D8DFD3246FEC} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-03-12] (Microsoft Corporation)
Task: {306E0C83-4D15-4626-A0AF-861A47279737} - System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-10_user => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-10.exe [2015-04-03] (NewPlayerVid) <==== ATTENTION
Task: {37744F27-BF87-4A41-ABD2-35EED455C5BB} - System32\Tasks\NetEngine => C:\ProgramData\NetEngine\bin\D4\netengine.exe [2015-04-03] ()
Task: {394C784B-ED31-4761-B2FC-5387A03DB33B} - System32\Tasks\Web Protector Plus Server => C:\Program Files (x86)\WebProtectorPlus\server64\WebProtectorPlusServer.exe [2015-02-24] ()
Task: {3E5B6A16-AF5C-44DE-AEAA-B91FDB345547} - System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5 => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-5.exe [2015-04-03] (NewPlayerVid) <==== ATTENTION
Task: {4081421B-20CD-46E8-A633-39AC1BBD02C2} - System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-7 => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-7.exe [2015-04-03] (iCinema) <==== ATTENTION
Task: {46B2027E-78D1-4885-8911-3594FDE86892} - System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-3 => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-3.exe [2015-04-03] (NewPlayerVid) <==== ATTENTION
Task: {4AFE903B-6CA8-4D35-A1BD-877C3C1ABE72} - System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-3 => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-3.exe [2015-04-03] (iCinema) <==== ATTENTION
Task: {4E7A230B-FA3D-4122-9ABE-F7374E18B78E} - System32\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5_user => C:\Program Files (x86)\System NotifierV02.04\da51e4e2-f70f-47a0-870d-5256737b2942-5.exe [2015-04-03] (System NotifierV02.04) <==== ATTENTION
Task: {531B5D33-A9C7-4428-91DD-1BC4F2F4A7D2} - System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5 => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5.exe [2015-04-03] (iCinema) <==== ATTENTION
Task: {610FA622-E130-4EC4-B3AB-F68AA26D29EF} - System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5_user => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5.exe [2015-04-03] (iCinema) <==== ATTENTION
Task: {73D6427C-20AE-47BF-A559-2698DE196476} - System32\Tasks\Run_Browser => C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe [2015-03-18] (The Unico Browser Authors)
Task: {766EC406-87A9-4CFF-8259-E3813CB885CD} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2012-06-22] ()
Task: {782E6D78-28D2-4092-899A-CD0C8951C896} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe [2014-11-25] (MyPC Backup) <==== ATTENTION
Task: {80BE2999-ABCF-400B-BE7F-603350A0A608} - System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-7 => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-1-7.exe [2015-04-03] (NewPlayerVid) <==== ATTENTION
Task: {828E473F-4965-4ACC-B47B-345037C6097C} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2015-04-03] (globalUpdate) <==== ATTENTION
Task: {9069BB25-6919-43AA-9D8D-7D9FC061097E} - System32\Tasks\{1E51FD01-A2ED-4A70-88D4-C3CDDC890D40} => pcalua.exe -a C:\Users\Papa\AppData\Roaming\istartsurf\UninstallManager.exe -c  -ptid=tugs
Task: {94DB02D7-B75E-4A59-B532-4CCE68DAD0FC} - System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-7 => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-7.exe [2015-04-03] (iCinema) <==== ATTENTION
Task: {98F41E2A-A648-4C06-8273-A2066F7186E9} - System32\Tasks\PostPoneInstall => C:\Users\Papa\AppData\Local\Temp\ce98ac2e-20c0-4a93-86f6-bdb3e61caf55.exe <==== ATTENTION
Task: {999CFA49-CCD8-47F8-9183-5E414AACC4AF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {9AAE1503-6F9D-46EC-886D-3E9E92D61EBB} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2012-07-13] ()
Task: {A3641BA5-9B59-4BAD-B2E1-F49D64A4C6BA} - System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6 => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6.exe [2015-04-03] (iCinema) <==== ATTENTION
Task: {A7DA5C19-623E-4313-8454-D1210DEE48FC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-10] (Google Inc.)
Task: {AE008422-61DE-4A50-BEC2-FA19A81772EC} - System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-6 => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-1-6.exe [2015-04-03] (NewPlayerVid) <==== ATTENTION
Task: {B27A272A-7627-4A15-982B-D6B6B400D20F} - System32\Tasks\SpeedChecker Update => C:\Program Files (x86)\version91SpeedChecker\x2SpeedCheckerU19.exe [2015-04-03] () <==== ATTENTION
Task: {B2A74869-CF0B-4D9D-80EF-F95F24E024AD} - System32\Tasks\UKMQ => C:\Users\Papa\AppData\Roaming\UKMQ.exe [2015-04-03] (System NotifierV02.04) <==== ATTENTION
Task: {B5692917-591D-405B-BCDC-741ECC664B87} - System32\Tasks\Crossbrowse => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe [2015-04-03] ()
Task: {B5CA629E-6C04-4819-8836-D7F85BECECEC} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-08-01] (Acer Incorporated)
Task: {DA0D0C99-D246-47A8-A9AE-6E2FC8F05E12} - System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6 => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6.exe [2015-04-03] (iCinema) <==== ATTENTION
Task: {DD610AB0-527C-4B77-B93E-2A15FC977034} - System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5_user => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-5.exe [2015-04-03] (NewPlayerVid) <==== ATTENTION
Task: {E287C31F-7CC1-48B0-9807-FEBE2B29E763} - System32\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-10_user => C:\Program Files (x86)\System NotifierV02.04\da51e4e2-f70f-47a0-870d-5256737b2942-10.exe [2015-04-03] (System NotifierV02.04) <==== ATTENTION
Task: {E5655637-D471-4DC0-B560-9DCCCD0C05A7} - System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-6 => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-6.exe [2015-04-03] (NewPlayerVid) <==== ATTENTION
Task: {E861CCC1-D464-4FDE-BC26-8ED8102695D6} - \DSite No Task File <==== ATTENTION
Task: {ED08D371-680A-489E-9A2A-8E4CABEE099E} - System32\Tasks\Web Protector Plus => C:\Program Files (x86)\WebProtectorPlus\WebProtectorPlus.exe [2015-02-19] ()
Task: {F0F128AD-D5CD-471B-99C7-D5CD96704918} - System32\Tasks\FQZJTD => C:\Users\Papa\AppData\Roaming\FQZJTD.exe [2015-04-03] (NewPlayerVid) <==== ATTENTION
Task: {F9EFE137-344A-476E-A38B-02A4113CEF29} - System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-10_user => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-10.exe [2015-04-03] (iCinema) <==== ATTENTION
Task: {FB126D5F-95E2-481E-B150-FFDEF1F2017F} - System32\Tasks\ReimageUpdater => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [2015-01-14] (Reimage®) <==== ATTENTION
Task: {FF0B0E96-1DCE-44DD-93D2-D1DFD2A668E4} - System32\Tasks\Optimizer Pro Schedule => C:\Program Files (x86)\Optimizer Pro 3.75\OptProLauncher.exe [2015-03-31] () <==== ATTENTION
Task: C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6.job => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-7.job => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-7.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-10_user.job => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-10.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-3.job => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-3.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5.job => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5_user.job => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6.job => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-7.job => C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-7.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\Crossbrowse.job => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe
Task: C:\WINDOWS\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-10_user.job => C:\Program Files (x86)\System NotifierV02.04\da51e4e2-f70f-47a0-870d-5256737b2942-10.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5.job => C:\Program Files (x86)\System NotifierV02.04\da51e4e2-f70f-47a0-870d-5256737b2942-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5_user.job => C:\Program Files (x86)\System NotifierV02.04\da51e4e2-f70f-47a0-870d-5256737b2942-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-6.job => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-1-6.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-7.job => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-1-7.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-10_user.job => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-10.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-3.job => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-3.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5.job => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5_user.job => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-5.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-6.job => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-6.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-7.job => C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-7.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\FQZJTD.job => C:\Users\Papa\AppData\Roaming\FQZJTD.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\SpeedChecker Update.job => C:\Program Files (x86)\version91SpeedChecker\x2SpeedCheckerU19.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\UKMQ.job => C:\Users\Papa\AppData\Roaming\UKMQ.exe <==== ATTENTION

==================== Loaded Modules (whitelisted) ==============

2015-04-03 08:47 - 2014-11-25 21:29 - 00299008 _____ () C:\Program Files (x86)\MyPC Backup\AlphaFS.dll
2015-03-26 14:12 - 2015-03-26 14:12 - 00011776 _____ () C:\Program Files (x86)\MixVideoPlayer\MixVideoPlayerUpdaterService.exe
2015-04-03 08:47 - 2015-03-12 08:40 - 04687360 _____ () C:\WINDOWS\rcore.exe
2015-01-14 12:07 - 2015-01-14 12:07 - 06757728 _____ () C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe
2015-04-03 20:21 - 2015-04-03 20:21 - 00076288 _____ () C:\ProgramData\NetEngine\bin\D4\netengine.exe
2014-05-12 23:46 - 2013-11-11 17:02 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-02-24 15:54 - 2015-02-24 15:54 - 00361472 _____ () C:\Program Files (x86)\WebProtectorPlus\server64\WebProtectorPlusServer.exe
2013-06-11 03:39 - 2013-06-11 03:39 - 00105984 _____ () C:\Program Files (x86)\WebProtectorPlus\server64\libgcc_s_sjlj-1.dll
2013-06-11 03:39 - 2013-06-11 03:39 - 01129984 _____ () C:\Program Files (x86)\WebProtectorPlus\server64\libstdc++-6.dll
2015-02-19 17:27 - 2015-02-19 17:27 - 00253440 _____ () C:\Program Files (x86)\WebProtectorPlus\WebProtectorPlus.exe
2014-12-25 13:49 - 2014-12-25 13:49 - 00121344 _____ () C:\Program Files (x86)\PepperZip\shell\PPZShellExtension_x64.dll
2015-04-03 08:48 - 2015-04-01 12:12 - 03307664 _____ () C:\Users\Papa\AppData\Local\gmsd_de_370\upgmsd_de_370.exe
2015-04-03 08:56 - 2015-04-03 08:56 - 00512512 _____ () C:\Program Files (x86)\version91SpeedChecker\x2SpeedCheckerU19.exe
2015-04-03 08:56 - 2015-04-03 08:56 - 00745984 _____ () C:\Program Files (x86)\version91SpeedChecker\SpeedChecker.exe
2015-04-03 08:55 - 2015-03-31 16:40 - 00892968 _____ () C:\Program Files (x86)\Optimizer Pro 3.75\OptProReminder.exe
2015-02-24 15:51 - 2015-02-24 15:51 - 00320000 _____ () C:\Program Files (x86)\WebProtectorPlus\WebProtectorPlusUI.exe
2015-04-03 08:48 - 2015-04-01 12:12 - 03986576 _____ () C:\Program Files (x86)\gmsd_de_370\gmsd_de_370.exe
2015-04-03 08:55 - 2015-04-03 08:55 - 02292264 _____ () c:\Program Files (x86)\Optimizer Pro 3.75\OptProMon.dll
2015-04-03 08:48 - 2015-04-03 08:48 - 02320432 _____ () c:\Program Files (x86)\Super Optimizer\SupOptStats.dll
2012-09-14 20:48 - 2012-07-18 05:55 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2011-06-08 09:32 - 2011-06-08 09:32 - 00011362 _____ () C:\Program Files (x86)\WebProtectorPlus\mingwm10.dll
2011-06-08 09:32 - 2011-06-08 09:32 - 00043008 _____ () C:\Program Files (x86)\WebProtectorPlus\libgcc_s_dw2-1.dll
2015-04-03 08:48 - 2015-03-18 15:27 - 01037448 _____ () C:\Users\Papa\AppData\Local\UnicoBrowser\Application\39.0.2132.8\libglesv2.dll
2015-04-03 08:48 - 2015-03-18 15:27 - 00210568 _____ () C:\Users\Papa\AppData\Local\UnicoBrowser\Application\39.0.2132.8\libegl.dll
2015-04-03 08:48 - 2015-03-18 15:27 - 08875144 _____ () C:\Users\Papa\AppData\Local\UnicoBrowser\Application\39.0.2132.8\pdf.dll
2015-04-03 08:48 - 2015-03-18 15:27 - 01679496 _____ () C:\Users\Papa\AppData\Local\UnicoBrowser\Application\39.0.2132.8\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\Papa\OneDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-768443793-1239807132-3807941381-1002\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: Media is not connected to internet.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run32: => "Norton Online Backup"
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\StartupApproved\Run: => "BrowserChoice"
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_3EE152C3A41C14EFE84949DBE7D94868"

==================== Accounts: =============================

Administrator (S-1-5-21-768443793-1239807132-3807941381-500 - Administrator - Disabled)
Gast (S-1-5-21-768443793-1239807132-3807941381-501 - Limited - Disabled)
Papa (S-1-5-21-768443793-1239807132-3807941381-1002 - Administrator - Enabled) => C:\Users\Papa

==================== Faulty Device Manager Devices =============

Name: Cisco AnyConnect VPN Virtual Miniport Adapter for Windows x64
Description: Cisco AnyConnect VPN Virtual Miniport Adapter for Windows x64
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Cisco Systems
Service: vpnva
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/03/2015 08:21:16 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm gentlemjmp_ieu.tmp, Version 51.52.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 1a80

Startzeit: 01d06e3ac9656c1a

Endzeit: 4294967295

Anwendungspfad: C:\Users\Papa\AppData\Local\Temp\is-QL9CD.tmp\gentlemjmp_ieu.tmp

Berichts-ID: 3709ab75-da2e-11e4-bfc0-e840f2eba23b

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (04/03/2015 08:21:13 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm majmp_gentleeu.tmp, Version 51.52.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: c58

Startzeit: 01d06e3ac0793b22

Endzeit: 4294967295

Anwendungspfad: C:\Users\Papa\AppData\Local\Temp\is-N7M8Q.tmp\majmp_gentleeu.tmp

Berichts-ID: 350044cf-da2e-11e4-bfc0-e840f2eba23b

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (04/03/2015 07:43:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.17416, Zeitstempel: 0x5452eed9
Name des fehlerhaften Moduls: urlmon.dll, Version: 11.0.9600.17689, Zeitstempel: 0x54e68687
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00048799
ID des fehlerhaften Prozesses: 0x1348
Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0
Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1
Pfad des fehlerhaften Moduls: IEXPLORE.EXE2
Berichtskennung: IEXPLORE.EXE3
Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5

Error: (04/03/2015 07:02:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.17416, Zeitstempel: 0x5452eed9
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x77710309
ID des fehlerhaften Prozesses: 0x1c60
Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0
Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1
Pfad des fehlerhaften Moduls: IEXPLORE.EXE2
Berichtskennung: IEXPLORE.EXE3
Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5

Error: (04/03/2015 08:49:05 AM) (Source: MsiInstaller) (EventID: 11309) (User: Siemi)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt.  System error 3.  Verify that the file exists and that you can access it.

Error: (04/03/2015 08:48:20 AM) (Source: MsiInstaller) (EventID: 11309) (User: Siemi)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt.  System error 3.  Verify that the file exists and that you can access it.

Error: (04/02/2015 09:56:38 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm javaw.exe, Version 8.0.31.13 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 1a34

Startzeit: 01d06d7b3ac4a805

Endzeit: 70

Anwendungspfad: C:\Program Files\Java\jre1.8.0_31\bin\javaw.exe

Berichts-ID: 4f222fab-d972-11e4-bfbf-e840f2eba23b

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (03/27/2015 11:13:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.17416, Zeitstempel: 0x5452eed9
Name des fehlerhaften Moduls: nvwgf2um.dll, Version: 9.18.13.3182, Zeitstempel: 0x5280d757
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0070937a
ID des fehlerhaften Prozesses: 0x11f0
Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0
Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1
Pfad des fehlerhaften Moduls: IEXPLORE.EXE2
Berichtskennung: IEXPLORE.EXE3
Vollständiger Name des fehlerhaften Pakets: IEXPLORE.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: IEXPLORE.EXE5

Error: (03/21/2015 09:02:27 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm javaw.exe, Version 8.0.31.13 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: fbc

Startzeit: 01d063a4dc19b390

Endzeit: 25

Anwendungspfad: C:\Program Files\Java\jre1.8.0_31\bin\javaw.exe

Berichts-ID: 35f09370-cf98-11e4-bfbf-e840f2eba23b

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (03/21/2015 08:50:53 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm javaw.exe, Version 8.0.31.13 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 5b8

Startzeit: 01d063a25ebbce87

Endzeit: 100

Anwendungspfad: C:\Program Files\Java\jre1.8.0_31\bin\javaw.exe

Berichts-ID: 9bbe01ab-cf96-11e4-bfbf-e840f2eba23b

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:


System errors:
=============
Error: (04/03/2015 08:17:07 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Der Dienst "LogMeIn Hamachi Tunneling Engine" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.

Error: (04/03/2015 08:13:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "ClaraUpdater" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (04/03/2015 08:12:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "LMIGuardianSvc" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (04/03/2015 08:12:21 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Nero Update" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (04/03/2015 08:12:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "rcores" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (04/03/2015 08:12:07 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "IHProtect Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (04/03/2015 08:09:41 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252.

Error: (04/03/2015 08:09:41 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252.

Error: (04/03/2015 08:08:33 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252.

Error: (04/03/2015 08:08:33 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252.


Microsoft Office Sessions:
=========================
Error: (04/03/2015 08:21:16 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: gentlemjmp_ieu.tmp51.52.0.01a8001d06e3ac9656c1a4294967295C:\Users\Papa\AppData\Local\Temp\is-QL9CD.tmp\gentlemjmp_ieu.tmp3709ab75-da2e-11e4-bfc0-e840f2eba23b

Error: (04/03/2015 08:21:13 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: majmp_gentleeu.tmp51.52.0.0c5801d06e3ac0793b224294967295C:\Users\Papa\AppData\Local\Temp\is-N7M8Q.tmp\majmp_gentleeu.tmp350044cf-da2e-11e4-bfc0-e840f2eba23b

Error: (04/03/2015 07:43:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: IEXPLORE.EXE11.0.9600.174165452eed9urlmon.dll11.0.9600.1768954e68687c000000500048799134801d06e35b651e8d5C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\WINDOWS\SYSTEM32\urlmon.dllff40e0f5-da28-11e4-bfbf-e840f2eba23b

Error: (04/03/2015 07:02:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: IEXPLORE.EXE11.0.9600.174165452eed9unknown0.0.0.000000000c0000005777103091c6001d06e2d08720a75C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEunknown457ce5b3-da23-11e4-bfbf-e840f2eba23b

Error: (04/03/2015 08:49:05 AM) (Source: MsiInstaller) (EventID: 11309) (User: Siemi)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt.  System error 3.  Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (04/03/2015 08:48:20 AM) (Source: MsiInstaller) (EventID: 11309) (User: Siemi)
Description: Product: Google Update Helper -- Error 1309. Error reading from file: C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\Google\Update\RequiredFile.txt.  System error 3.  Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (04/02/2015 09:56:38 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: javaw.exe8.0.31.131a3401d06d7b3ac4a80570C:\Program Files\Java\jre1.8.0_31\bin\javaw.exe4f222fab-d972-11e4-bfbf-e840f2eba23b

Error: (03/27/2015 11:13:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: IEXPLORE.EXE11.0.9600.174165452eed9nvwgf2um.dll9.18.13.31825280d757c00000050070937a11f001d068c10b809c33C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\WINDOWS\SYSTEM32\nvwgf2um.dll0de894c2-d4c6-11e4-bfbf-e840f2eba23b

Error: (03/21/2015 09:02:27 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: javaw.exe8.0.31.13fbc01d063a4dc19b39025C:\Program Files\Java\jre1.8.0_31\bin\javaw.exe35f09370-cf98-11e4-bfbf-e840f2eba23b

Error: (03/21/2015 08:50:53 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: javaw.exe8.0.31.135b801d063a25ebbce87100C:\Program Files\Java\jre1.8.0_31\bin\javaw.exe9bbe01ab-cf96-11e4-bfbf-e840f2eba23b


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-3330 CPU @ 3.00GHz
Percentage of memory in use: 19%
Total physical RAM: 8134.01 MB
Available physical RAM: 6559.25 MB
Total Pagefile: 9414.01 MB
Available Pagefile: 7571.38 MB
Total Virtual: 131072 MB
Available Virtual: 131071.77 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:455.66 GB) (Free:315.92 GB) NTFS
Drive d: (DATA) (Fixed) (Total:456.61 GB) (Free:437.3 GB) NTFS
Drive j: (DROME RACERS) (CDROM) (Total:0.57 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 8BAE7700)

Partition: GPT Partition Type.

==================== End Of Log ============================
         

Alt 03.04.2015, 20:51   #2
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



FRST.txt Teil 1:

Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Papa (administrator) on SIEMI on 03-04-2015 20:55:46
Running from C:\Users\Papa\Desktop
Loaded Profiles: Papa (Available profiles: Papa)
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(SysTool PasSame LIMITED) C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Just Develop It) C:\Program Files (x86)\MyPC Backup\BackupStack.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(ClaraLabs) C:\Program Files (x86)\Common Files\ClaraUpdater\ClaraUpdater.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(XTab system) C:\Program Files (x86)\XTab\ProtectService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(LiveUpdateWPP) C:\Program Files (x86)\LiveUpdateWPP\LiveUpdateWPP.exe
() C:\Program Files (x86)\MixVideoPlayer\MixVideoPlayerUpdaterService.exe
() C:\Windows\rcore.exe
(NewPlayerVid) C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-6.exe
(iCinema) C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6.exe
(iCinema) C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6.exe
(NewPlayerVid) C:\Program Files (x86)\MediaPlayRS3\f0928adc-c38e-4022-b4c8-849d295f34fa-1-6.exe
(Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe
() C:\Program Files\Reimage\Reimage Protector\ReiSystem.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Time Lapse Solutions) C:\ProgramData\IsWjAIZWh\ImMNMg.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
() C:\ProgramData\NetEngine\bin\D4\netengine.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files (x86)\WebProtectorPlus\server64\WebProtectorPlusServer.exe
() C:\Program Files (x86)\WebProtectorPlus\WebProtectorPlus.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
() C:\Users\Papa\AppData\Local\gmsd_de_370\upgmsd_de_370.exe
() C:\Program Files (x86)\version91SpeedChecker\x2SpeedCheckerU19.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
() C:\Program Files (x86)\version91SpeedChecker\SpeedChecker.exe
() C:\Program Files (x86)\Optimizer Pro 3.75\OptProReminder.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(The Unico Browser Authors) C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe
() C:\Program Files (x86)\WebProtectorPlus\WebProtectorPlusUI.exe
() C:\Program Files (x86)\gmsd_de_370\gmsd_de_370.exe
(The Unico Browser Authors) C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(The Unico Browser Authors) C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe
(The Unico Browser Authors) C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe
(The Unico Browser Authors) C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe
(The Unico Browser Authors) C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe
(The Unico Browser Authors) C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe
() C:\ProgramData\NetEngine\bin\D4\netengine.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12921488 2012-07-02] (Realtek Semiconductor)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft)
HKLM-x32\...\Run: [Web Protector Plus UI] => C:\Program Files (x86)\WebProtectorPlus\WebProtectorPlusUI.exe [320000 2015-02-24] ()
HKLM-x32\...\Run: [gmsd_de_370] => C:\Program Files (x86)\gmsd_de_370\gmsd_de_370.exe [3986576 2015-04-01] ()
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3978600 2015-03-30] (LogMeIn Inc.)
HKLM-x32\...\RunOnce: [upgmsd_de_370.exe] => C:\Users\Papa\AppData\Local\gmsd_de_370\upgmsd_de_370.exe [3307664 2015-04-01] ()
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\Run: [BrowserChoice] => C:\Windows\BrowserChoice\browserchoice.exe [86816 2013-08-22] (Microsoft Corporation)
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\Run: [UnicoBrowser] => C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe [1047176 2015-03-18] (The Unico Browser Authors)
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\Run: [Super Optimizer] => C:\Program Files (x86)\Super Optimizer\SupOptLauncher.exe [676912 2015-04-02] (SUPER PC TOOLS LIMITED)
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\Run: [GoogleChromeAutoLaunch_3EE152C3A41C14EFE84949DBE7D94868] => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [637440 2015-03-04] (Crossbrowse)
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro 3.75\OptProLauncher.exe [148008 2015-03-31] ()
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\Policies\Explorer: [HideOneDrive] 1
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\MountPoints2: {4875424e-fe99-11e1-be69-806e6f6e6963} - "J:\launcher.exe" 
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?gfe_rd=cr&ei=gJS-VPT6NsGq8wecr4KoDg&gws_rd=ssl,cr&fg=1
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://tikotin.com
URLSearchHook: HKLM-x32 - Default Value = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}
URLSearchHook: HKLM-x32 - WebProtector - {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files (x86)\WebProtector\WebProtector.dll (Web Protector)
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}
SearchScopes: HKU\S-1-5-21-768443793-1239807132-3807941381-1002 -> DefaultScope {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-768443793-1239807132-3807941381-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-768443793-1239807132-3807941381-1002 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-768443793-1239807132-3807941381-1002 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-768443793-1239807132-3807941381-1002 -> {643D121D-A3A5-4688-889C-D2D7CF18C4DB} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-768443793-1239807132-3807941381-1002 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-768443793-1239807132-3807941381-1002 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}
BHO: SpeedChecker -> {0E327BD1-35AF-2FEE-918A-3669B9E79A67} -> C:\Program Files (x86)\version91SpeedChecker\191_x64.dll [2015-04-03] ()
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-24] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-24] (Oracle Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft)
BHO-x32: SpeedChecker -> {0E327BD1-35AF-2FEE-918A-3669B9E79A67} -> C:\Program Files (x86)\version91SpeedChecker\191.dll [2015-04-03] ()
BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\XTab\SupTab.dll [2015-03-16] (Thinknice Co. Limited)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-24] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-24] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM-x32 - WebProtector - {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} - C:\Program Files (x86)\WebProtector\WebProtector.dll [2015-03-31] (Web Protector)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\WINDOWS\system32\npDeployJava1.dll [2013-07-30] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-24] (Oracle Corporation)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2013-04-02] (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-24] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-11-11] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-11-11] (NVIDIA Corporation)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll [2015-04-03] (globalUpdate)
FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll [2015-04-03] (globalUpdate)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-12] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-12] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-768443793-1239807132-3807941381-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Papa\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-05-07] (Unity Technologies ApS)
FF HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\Firefox\Extensions: [{234E0EF3-B212-EC81-FB5E-C20C3A9D3359}] - C:\Program Files (x86)\version91SpeedChecker\191.xpi
FF Extension: SpeedChecker - C:\Program Files (x86)\version91SpeedChecker\191.xpi [2015-04-03]

Chrome: 
=======
CHR HomePage: Default -> hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP
CHR StartupUrls: Default -> "hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP"
CHR DefaultSearchKeyword: Default -> istartsurf
CHR DefaultSearchURL: Default -> hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}
CHR Profile: C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-10]
CHR Extension: (Google Docs) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-10]
CHR Extension: (Google Drive) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-10]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-01-10]
CHR Extension: (YouTube) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-10]
CHR Extension: (Google Search) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-10]
CHR Extension: (I - Cinema) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk [2015-04-03]
CHR Extension: (Google Sheets) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-10]
CHR Extension: (MediaPlayRS3) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac [2015-04-03]
CHR Extension: (No Name) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbdalcibdkhieofaaflleeedgdmbjobb [2015-04-03]
CHR Extension: (Google Wallet) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-10]
CHR Extension: (Gmail) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-10]
CHR HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kfecnpmgnlnbmipaogfhoacoioifjgko] - hxxp://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [oilkkkefbalmbfppgjmgjoefbclebkce] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [kfecnpmgnlnbmipaogfhoacoioifjgko] - hxxp://clients2.google.com/service/update2/crx
StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.istartsurf.com/?type=sc&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 542bb8ed; c:\Program Files (x86)\Optimizer Pro 3.75\OptProMon.dll [2292264 2015-04-03] ()
R2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [53832 2014-11-25] (Just Develop It) <==== ATTENTION
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 cae99edb; c:\Program Files (x86)\Super Optimizer\SupOptStats.dll [2320432 2015-04-03] ()
R2 ClaraUpdater; C:\Program Files (x86)\Common Files\ClaraUpdater\ClaraUpdater.exe [341616 2015-04-03] (ClaraLabs)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [659600 2012-08-01] (Acer Incorporated)
S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2015-04-03] (globalUpdate) [File not signed]
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2015-04-03] (globalUpdate) [File not signed]
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2451456 2012-07-13] (Realsil Microelectronics Inc.) [File not signed]
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158816 2015-03-16] (XTab system)
R2 ImMNMg; C:\ProgramData\IsWjAIZWh\ImMNMg.exe [2733544 2015-04-03] (Time Lapse Solutions)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-19] (Intel Corporation)
R2 LiveUpdateWPP Manager; C:\Program Files (x86)\LiveUpdateWPP\LiveUpdateWPP.exe [425984 2015-02-08] (LiveUpdateWPP) [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-03-30] (LogMeIn, Inc.)
R2 MixVideoPlayerUpdaterService; C:\Program Files (x86)\MixVideoPlayer\MixVideoPlayerUpdaterService.exe [11776 2015-03-26] () [File not signed]
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-03-01] (Electronic Arts)
R2 rcores; C:\WINDOWS\rcore.exe [4687360 2015-03-12] () [File not signed]
R2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [7410024 2015-01-14] (Reimage®)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R2 WindowsMangerProtect; C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe [493712 2015-04-03] (SysTool PasSame LIMITED)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 e1cexpress; C:\Windows\system32\DRIVERS\e1c63x64.sys [498032 2012-07-12] (Intel Corporation)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [44296 2015-03-30] (LogMeIn Inc.)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
R2 webTinstMKTN; C:\WINDOWS\system32\Drivers\webTinstMKTN.sys [50800 2015-04-03] ()
S3 X6va022; \??\C:\WINDOWS\SysWOW64\Drivers\X6va022 [X]
S3 X6va029; \??\C:\WINDOWS\SysWOW64\Drivers\X6va029 [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-03 20:55 - 2015-04-03 20:56 - 00024811 _____ () C:\Users\Papa\Desktop\FRST.txt
2015-04-03 20:55 - 2015-04-03 20:55 - 00000000 ____D () C:\FRST
2015-04-03 20:51 - 2015-04-03 20:51 - 00000470 _____ () C:\Users\Papa\Desktop\defogger_disable.log
2015-04-03 20:51 - 2015-04-03 20:51 - 00000000 _____ () C:\Users\Papa\defogger_reenable
2015-04-03 20:48 - 2015-04-03 20:39 - 00380416 _____ () C:\Users\Papa\Desktop\Gmer-19357.exe
2015-04-03 20:48 - 2015-04-03 20:37 - 02095616 _____ (Farbar) C:\Users\Papa\Desktop\FRST64.exe
2015-04-03 20:48 - 2015-04-03 20:37 - 00050477 _____ () C:\Users\Papa\Desktop\Defogger.exe
2015-04-03 20:21 - 2015-04-03 20:21 - 00003452 _____ () C:\WINDOWS\System32\Tasks\NetEngine
2015-04-03 20:21 - 2015-04-03 20:21 - 00000000 ____D () C:\ProgramData\NetEngine
2015-04-03 20:16 - 2015-04-03 20:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2015-04-03 20:16 - 2015-04-03 20:16 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2015-04-03 20:08 - 2015-04-03 20:08 - 00003138 _____ () C:\WINDOWS\System32\Tasks\{1E51FD01-A2ED-4A70-88D4-C3CDDC890D40}
2015-04-03 17:51 - 2015-04-03 17:51 - 00000000 ____D () C:\ZombieInvasion
2015-04-03 09:10 - 2015-04-03 20:49 - 00000004 _____ () C:\WINDOWS\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-04-03 09:01 - 2015-04-03 09:01 - 00004266 _____ () C:\WINDOWS\System32\Tasks\ReimageUpdater
2015-04-03 09:01 - 2015-04-03 09:01 - 00000000 ____D () C:\Program Files\Reimage
2015-04-03 09:00 - 2015-04-03 09:01 - 00000000 ____D () C:\rei
2015-04-03 09:00 - 2015-04-03 09:01 - 00000000 ____D () C:\ProgramData\Reimage Protector
2015-04-03 09:00 - 2015-04-03 09:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eFix Pro
2015-04-03 09:00 - 2015-04-03 09:00 - 00000000 ____D () C:\Program Files\eFix
2015-04-03 08:59 - 2015-04-03 09:01 - 00000109 _____ () C:\WINDOWS\Reimage.ini
2015-04-03 08:59 - 2015-04-03 09:01 - 00000072 _____ () C:\WINDOWS\efix.ini
2015-04-03 08:58 - 2015-04-03 08:58 - 00000000 ____D () C:\Users\Papa\SupTab
2015-04-03 08:56 - 2015-04-03 20:45 - 00003244 _____ () C:\WINDOWS\System32\Tasks\Optimizer Pro Schedule
2015-04-03 08:56 - 2015-04-03 20:45 - 00001982 _____ () C:\WINDOWS\patsearch.bin
2015-04-03 08:56 - 2015-04-03 20:45 - 00000454 _____ () C:\WINDOWS\Tasks\SpeedChecker Update.job
2015-04-03 08:56 - 2015-04-03 08:56 - 00050800 _____ () C:\WINDOWS\system32\Drivers\webTinstMKTN.sys
2015-04-03 08:56 - 2015-04-03 08:56 - 00003092 _____ () C:\WINDOWS\System32\Tasks\SpeedChecker Update
2015-04-03 08:56 - 2015-04-03 08:56 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_webTinstMKTN_01009.Wdf
2015-04-03 08:56 - 2015-04-03 08:56 - 00000000 ____D () C:\Users\Papa\Documents\Optimizer Pro
2015-04-03 08:56 - 2015-04-03 08:56 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\Optimizer Pro
2015-04-03 08:56 - 2015-04-03 08:56 - 00000000 ____D () C:\Users\Papa\AppData\Local\ZombieInvasion
2015-04-03 08:56 - 2015-04-03 08:56 - 00000000 ____D () C:\Program Files (x86)\version91SpeedChecker
2015-04-03 08:55 - 2015-04-03 09:10 - 00000000 ____D () C:\ProgramData\{0dbdd2b3-e241-f150-0dbd-dd2b3e244acf}
2015-04-03 08:55 - 2015-04-03 08:56 - 00000000 ____D () C:\ProgramData\IsWjAIZWh
2015-04-03 08:55 - 2015-04-03 08:55 - 00000000 ____D () C:\ProgramData\ZombieInvasion
2015-04-03 08:55 - 2015-04-03 08:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
2015-04-03 08:55 - 2015-04-03 08:55 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.75
2015-04-03 08:53 - 2015-04-03 20:45 - 00003238 _____ () C:\WINDOWS\System32\Tasks\Super Optimizer Schedule
2015-04-03 08:53 - 2015-04-03 08:53 - 00000000 ____D () C:\Users\Papa\Documents\Super Optimizer
2015-04-03 08:53 - 2015-04-03 08:53 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\Super Optimizer
2015-04-03 08:50 - 2015-04-03 20:18 - 00000000 ___HD () C:\Users\Public\Temp
2015-04-03 08:50 - 2015-04-03 08:50 - 00000000 ____D () C:\Users\Papa\AppData\Local\com
2015-04-03 08:49 - 2015-04-03 20:49 - 00005850 _____ () C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6.job
2015-04-03 08:49 - 2015-04-03 20:49 - 00005506 _____ () C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-7.job
2015-04-03 08:49 - 2015-04-03 20:49 - 00004482 _____ () C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-3.job
2015-04-03 08:49 - 2015-04-03 20:49 - 00003462 _____ () C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-7.job
2015-04-03 08:49 - 2015-04-03 20:49 - 00003462 _____ () C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6.job
2015-04-03 08:49 - 2015-04-03 20:49 - 00002778 _____ () C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5_user.job
2015-04-03 08:49 - 2015-04-03 20:49 - 00002778 _____ () C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5.job
2015-04-03 08:49 - 2015-04-03 08:49 - 00008854 _____ () C:\WINDOWS\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6
2015-04-03 08:49 - 2015-04-03 08:49 - 00008510 _____ () C:\WINDOWS\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-7
2015-04-03 08:49 - 2015-04-03 08:49 - 00007486 _____ () C:\WINDOWS\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-3
2015-04-03 08:49 - 2015-04-03 08:49 - 00006466 _____ () C:\WINDOWS\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-7
2015-04-03 08:49 - 2015-04-03 08:49 - 00006466 _____ () C:\WINDOWS\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6
2015-04-03 08:49 - 2015-04-03 08:49 - 00005782 _____ () C:\WINDOWS\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5
2015-04-03 08:49 - 2015-04-03 08:49 - 00000000 ____D () C:\Program Files (x86)\4e341855-27c4-4446-8acf-e8e687afd85f
2015-04-03 08:48 - 2015-04-03 20:54 - 00000924 _____ () C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job
2015-04-03 08:48 - 2015-04-03 20:49 - 00002100 _____ () C:\WINDOWS\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-10_user.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00005510 _____ () C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-7.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00005510 _____ () C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-6.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00004486 _____ () C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-3.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00003466 _____ () C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-7.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00003130 _____ () C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-6.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00002782 _____ () C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5_user.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00002456 _____ () C:\WINDOWS\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5_user.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00002456 _____ () C:\WINDOWS\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00002438 _____ () C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00002104 _____ () C:\WINDOWS\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-10_user.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00001066 _____ () C:\WINDOWS\Tasks\Crossbrowse.job
2015-04-03 08:48 - 2015-04-03 20:48 - 00000000 ____D () C:\Users\Papa\AppData\Local\gmsd_de_370
2015-04-03 08:48 - 2015-04-03 20:45 - 00001346 _____ () C:\WINDOWS\Tasks\FQZJTD.job
2015-04-03 08:48 - 2015-04-03 08:49 - 00003896 _____ () C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineUA
2015-04-03 08:48 - 2015-04-03 08:49 - 00000000 ____D () C:\Program Files (x86)\I - Cinema
2015-04-03 08:48 - 2015-04-03 08:48 - 01755136 _____ (NewPlayerVid) C:\Users\Papa\AppData\Roaming\FQZJTD.exe
2015-04-03 08:48 - 2015-04-03 08:48 - 00008514 _____ () C:\WINDOWS\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-7
2015-04-03 08:48 - 2015-04-03 08:48 - 00008514 _____ () C:\WINDOWS\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-6
2015-04-03 08:48 - 2015-04-03 08:48 - 00007490 _____ () C:\WINDOWS\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-3
2015-04-03 08:48 - 2015-04-03 08:48 - 00006470 _____ () C:\WINDOWS\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-7
2015-04-03 08:48 - 2015-04-03 08:48 - 00006134 _____ () C:\WINDOWS\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-6
2015-04-03 08:48 - 2015-04-03 08:48 - 00005460 _____ () C:\WINDOWS\System32\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5
2015-04-03 08:48 - 2015-04-03 08:48 - 00005442 _____ () C:\WINDOWS\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5
2015-04-03 08:48 - 2015-04-03 08:48 - 00004344 _____ () C:\WINDOWS\System32\Tasks\FQZJTD
2015-04-03 08:48 - 2015-04-03 08:48 - 00004070 _____ () C:\WINDOWS\System32\Tasks\Crossbrowse
2015-04-03 08:48 - 2015-04-03 08:48 - 00004006 _____ () C:\WINDOWS\System32\Tasks\LaunchSignup
2015-04-03 08:48 - 2015-04-03 08:48 - 00003906 _____ () C:\WINDOWS\System32\Tasks\PostPoneInstall
2015-04-03 08:48 - 2015-04-03 08:48 - 00003154 _____ () C:\WINDOWS\System32\Tasks\Run_Browser
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\Users\Papa\AppData\Local\UnicoBrowser
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\Users\Papa\AppData\Local\mixvideoplayer
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\Users\Papa\AppData\Local\Crossbrowse
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\Users\Papa\AppData\Local\BrowserWeb
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Optimizer
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVideoPlayer
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\ProgramData\{1d17152d-e9d7-45a6-1d17-7152de9d54b7}
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\Program Files (x86)\Super Optimizer
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\Program Files (x86)\MediaPlayRS3
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\Program Files (x86)\gmsd_de_370
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\Program Files (x86)\Crossbrowse
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\Program Files (x86)\aea13faf-c855-4996-a77f-b370b8ad2d29
2015-04-03 08:47 - 2015-04-03 20:47 - 00002122 _____ () C:\WINDOWS\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-10_user.job
2015-04-03 08:47 - 2015-04-03 20:45 - 00001342 _____ () C:\WINDOWS\Tasks\UKMQ.job
2015-04-03 08:47 - 2015-04-03 20:45 - 00000920 _____ () C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job
2015-04-03 08:47 - 2015-04-03 20:16 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup
2015-04-03 08:47 - 2015-04-03 08:49 - 00003660 _____ () C:\WINDOWS\System32\Tasks\globalUpdateUpdateTaskMachineCore
2015-04-03 08:47 - 2015-04-03 08:48 - 00008551 _____ () C:\claraInstaller.txt
2015-04-03 08:47 - 2015-04-03 08:48 - 00004340 _____ () C:\WINDOWS\System32\Tasks\UKMQ
2015-04-03 08:47 - 2015-04-03 08:48 - 00000000 ____D () C:\Program Files (x86)\WebProtectorPlus
2015-04-03 08:47 - 2015-04-03 08:48 - 00000000 ____D () C:\Program Files (x86)\System NotifierV02.04
2015-04-03 08:47 - 2015-04-03 08:48 - 00000000 ____D () C:\Program Files (x86)\MixVideoPlayer
2015-04-03 08:47 - 2015-04-03 08:47 - 01858048 _____ (System NotifierV02.04) C:\Users\Papa\AppData\Roaming\UKMQ.exe
2015-04-03 08:47 - 2015-04-03 08:47 - 00003194 _____ () C:\WINDOWS\System32\Tasks\Web Protector Plus Server
2015-04-03 08:47 - 2015-04-03 08:47 - 00003164 _____ () C:\WINDOWS\System32\Tasks\Web Protector Plus
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\WebExtend
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\Mozilla
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PepperZip
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\istartsurf
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Users\Papa\AppData\Local\globalUpdate
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Web Protector Plus
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Program Files (x86)\WebProtector
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Program Files (x86)\PepperZip
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Program Files (x86)\LiveUpdateWPP
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2015-04-03 08:47 - 2015-03-12 08:40 - 04687360 _____ () C:\WINDOWS\rcore.exe
2015-04-02 21:28 - 2015-03-24 20:46 - 00000000 ____D () C:\Users\Papa\Desktop\Tents & camp fires by TheRedEngineer
2015-03-30 15:28 - 2015-03-30 15:28 - 00044296 ____H (LogMeIn Inc.) C:\WINDOWS\system32\Drivers\Hamdrv.sys
2015-03-26 21:14 - 2015-03-26 21:14 - 00005542 _____ () C:\Users\Papa\AppData\Roaming\UKMQ
2015-03-26 21:14 - 2015-03-26 21:14 - 00005542 _____ () C:\Users\Papa\AppData\Roaming\FQZJTD
2015-03-22 10:25 - 2015-03-22 10:25 - 00000000 ____D () C:\ElementalTinkerer
2015-03-22 10:23 - 2015-04-03 18:28 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\.voidswrath
2015-03-22 09:25 - 2015-03-29 12:39 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\.fellowship2.0
2015-03-21 23:03 - 2015-03-29 12:31 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\.dreamcraft
2015-03-12 21:02 - 2015-03-12 21:02 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2015-03-11 19:49 - 2015-03-06 04:53 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-03-11 19:49 - 2015-03-06 04:33 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-03-11 19:49 - 2015-02-26 01:26 - 04178944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-03-11 19:49 - 2015-02-21 03:16 - 25021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-11 19:49 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-03-11 19:49 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-03-11 19:49 - 2015-02-21 02:27 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-03-11 19:49 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-03-11 19:49 - 2015-02-21 01:58 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-03-11 19:49 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-03-11 19:49 - 2015-02-20 05:03 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-03-11 19:49 - 2015-02-20 04:58 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-03-11 19:49 - 2015-02-20 04:49 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-11 19:49 - 2015-02-20 04:48 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-03-11 19:49 - 2015-02-20 04:47 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-03-11 19:49 - 2015-02-20 04:35 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-03-11 19:49 - 2015-02-20 04:34 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2015-03-11 19:49 - 2015-02-20 04:32 - 06035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-11 19:49 - 2015-02-20 04:20 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-03-11 19:49 - 2015-02-20 04:15 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-03-11 19:49 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-03-11 19:49 - 2015-02-20 04:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-03-11 19:49 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2015-03-11 19:49 - 2015-02-20 04:05 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-11 19:49 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-03-11 19:49 - 2015-02-20 03:59 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-03-11 19:49 - 2015-02-20 03:56 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-03-11 19:49 - 2015-02-20 03:52 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-03-11 19:49 - 2015-02-20 03:49 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-03-11 19:49 - 2015-02-20 03:49 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-03-11 19:49 - 2015-02-20 03:46 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-03-11 19:49 - 2015-02-20 03:43 - 14398976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-03-11 19:49 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-03-11 19:49 - 2015-02-20 03:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-03-11 19:49 - 2015-02-20 03:29 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-03-11 19:49 - 2015-02-20 03:28 - 02358784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-11 19:49 - 2015-02-20 03:26 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-03-11 19:49 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-03-11 19:49 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-03-11 19:49 - 2015-02-20 03:16 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-03-11 19:49 - 2015-02-20 03:03 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-03-11 19:49 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-03-11 19:49 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-03-11 19:49 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-03-11 19:49 - 2015-02-12 19:40 - 22291584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-11 19:49 - 2015-02-12 19:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-03-11 19:49 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-03-11 19:49 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2015-03-11 19:49 - 2015-02-06 03:28 - 02257408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-03-11 19:49 - 2015-02-06 03:08 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-03-11 19:49 - 2015-02-04 01:58 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-03-11 19:49 - 2015-02-04 01:58 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-03-11 19:49 - 2015-02-04 01:58 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-03-11 19:49 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-03-11 19:49 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2015-03-11 19:49 - 2015-01-31 01:42 - 03097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-03-11 19:49 - 2015-01-31 01:29 - 02484224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-03-11 19:49 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-03-11 19:49 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-03-11 19:49 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2015-03-11 19:49 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
2015-03-11 19:49 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll
2015-03-11 19:49 - 2015-01-29 03:11 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 19:49 - 2015-01-29 03:04 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-03-11 19:49 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-03-11 19:49 - 2015-01-29 03:00 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 19:49 - 2015-01-29 02:59 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-03-11 19:49 - 2015-01-29 02:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-03-11 19:49 - 2015-01-29 02:50 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2015-03-11 19:49 - 2015-01-29 02:49 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-03-11 19:49 - 2015-01-28 17:41 - 07472960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-03-11 19:49 - 2015-01-28 17:41 - 01733440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-03-11 19:49 - 2015-01-28 17:41 - 01498360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-03-11 19:49 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2015-03-11 19:49 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll
2015-03-11 19:49 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-03-11 19:49 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2015-03-11 19:49 - 2015-01-28 01:47 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-03-11 19:49 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-03-11 19:49 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-03-11 19:49 - 2015-01-27 05:44 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-03-11 19:49 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-03-11 19:49 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
2015-03-11 19:49 - 2015-01-23 09:17 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-03-11 19:49 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2015-03-11 19:49 - 2015-01-21 07:54 - 01384712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-03-11 19:49 - 2015-01-21 07:15 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-03-11 19:49 - 2014-10-31 06:50 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe
2015-03-11 19:49 - 2014-10-31 05:30 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2015-03-11 19:49 - 2014-10-31 05:23 - 00733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-03-11 19:49 - 2014-10-31 05:22 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2015-03-11 19:49 - 2014-10-31 05:18 - 04840960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2015-03-11 19:49 - 2014-10-31 05:09 - 01154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2015-03-11 19:49 - 2014-10-31 04:12 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2015-03-11 19:49 - 2014-10-29 05:56 - 00027456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2015-03-11 19:49 - 2014-10-29 04:37 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2015-03-11 19:49 - 2014-10-29 04:34 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSCollect.exe
2015-03-11 19:49 - 2014-10-29 04:34 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2015-03-11 19:49 - 2014-10-29 03:13 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-03-11 19:49 - 2014-10-29 02:55 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-11 19:48 - 2015-02-07 01:09 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-03-11 19:48 - 2015-02-05 22:24 - 01113920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-03-11 19:48 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2015-03-11 19:48 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2015-03-11 19:48 - 2015-01-30 05:01 - 00097792 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2015-03-11 19:48 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2015-03-11 19:48 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2015-03-11 19:48 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-03-11 19:48 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll
2015-03-11 19:48 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll
2015-03-11 19:48 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2015-03-11 19:48 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-03-11 19:48 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2015-03-11 19:48 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-03-11 19:48 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2015-03-11 19:48 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2015-03-11 19:48 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-03-11 19:48 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2015-03-11 19:48 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2015-03-11 19:48 - 2014-10-29 06:03 - 00116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2015-03-11 19:48 - 2014-10-29 05:59 - 00014144 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\swenum.sys
2015-03-11 19:48 - 2014-10-29 04:45 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2015-03-11 19:48 - 2014-10-29 04:22 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2015-03-11 19:48 - 2014-10-29 04:19 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-03-11 19:48 - 2014-10-29 04:08 - 18822656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-03-11 19:48 - 2014-10-29 04:00 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2015-03-11 19:48 - 2014-10-29 03:45 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-03-11 19:48 - 2014-10-29 03:42 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
2015-03-11 19:48 - 2014-10-29 03:33 - 15157760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-03-11 19:48 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\atlthunk.dll
2015-03-11 19:48 - 2014-10-29 03:19 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2015-03-11 19:48 - 2014-10-29 03:17 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2015-03-11 19:48 - 2014-10-29 03:10 - 02344960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-03-11 19:48 - 2014-10-29 03:09 - 03557376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-03-11 19:48 - 2014-10-29 02:59 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll
2015-03-11 19:48 - 2014-10-29 02:52 - 15432704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-03-11 19:48 - 2014-10-29 02:51 - 01554432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-03-11 19:47 - 2014-10-29 06:10 - 01816008 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2015-03-11 19:47 - 2014-10-29 06:04 - 00105872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2015-03-11 19:47 - 2014-10-29 06:00 - 02314952 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2015-03-11 19:47 - 2014-10-29 06:00 - 02229168 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-03-11 19:47 - 2014-10-29 06:00 - 01540696 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-03-11 19:47 - 2014-10-29 06:00 - 01385216 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-03-11 19:47 - 2014-10-29 05:59 - 03460472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2015-03-11 19:47 - 2014-10-29 05:59 - 02529856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-03-11 19:47 - 2014-10-29 05:59 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-03-11 19:47 - 2014-10-29 05:58 - 00014528 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2015-03-11 19:47 - 2014-10-29 05:57 - 03138720 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2015-03-11 19:47 - 2014-10-29 05:57 - 03118096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2015-03-11 19:47 - 2014-10-29 05:57 - 02745160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2015-03-11 19:47 - 2014-10-29 05:57 - 02450216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVENCOD.DLL
2015-03-11 19:47 - 2014-10-29 05:57 - 01576312 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2015-03-11 19:47 - 2014-10-29 05:57 - 01286048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2015-03-11 19:47 - 2014-10-29 05:57 - 01210176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2015-03-11 19:47 - 2014-10-29 05:55 - 02174976 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2015-03-11 19:47 - 2014-10-29 05:55 - 01660528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2015-03-11 19:47 - 2014-10-29 05:55 - 01543768 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2015-03-11 19:47 - 2014-10-29 05:55 - 01133200 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 02485056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-03-11 19:47 - 2014-10-29 05:52 - 02334080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 01518504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 01509688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 01288096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 01165744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 01064720 _____ (Microsoft Corporation) C:\WINDOWS\system32\drmv2clt.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00988544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00962216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00952384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00850656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00821696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00634768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00580024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2015-03-11 19:47 - 2014-10-29 05:51 - 01310912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-03-11 19:47 - 2014-10-29 05:18 - 00016504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psapi.dll
2015-03-11 19:47 - 2014-10-29 05:13 - 01901240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-03-11 19:47 - 2014-10-29 05:12 - 01946144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2015-03-11 19:47 - 2014-10-29 05:12 - 01907384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2015-03-11 19:47 - 2014-10-29 05:11 - 02689392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2015-03-11 19:47 - 2014-10-29 05:11 - 02528760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2015-03-11 19:47 - 2014-10-29 05:11 - 02447104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVENCOD.DLL
2015-03-11 19:47 - 2014-10-29 05:11 - 01037656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2015-03-11 19:47 - 2014-10-29 05:11 - 01024200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2015-03-11 19:47 - 2014-10-29 05:10 - 01564464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2015-03-11 19:47 - 2014-10-29 05:10 - 01287112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2015-03-11 19:47 - 2014-10-29 05:10 - 01209624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2015-03-11 19:47 - 2014-10-29 05:10 - 01178104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 02324208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 01321192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 01115104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00857384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00801584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00785568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00705008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00700328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2015-03-11 19:47 - 2014-10-29 05:05 - 00890128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drmv2clt.dll
2015-03-11 19:47 - 2014-10-29 04:59 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-03-11 19:47 - 2014-10-29 04:50 - 01192960 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-03-11 19:47 - 2014-10-29 04:43 - 00685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched20.dll
2015-03-11 19:47 - 2014-10-29 04:31 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlceqp40.dll
2015-03-11 19:47 - 2014-10-29 04:29 - 04483072 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-03-11 19:47 - 2014-10-29 04:29 - 01246720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ogldrv.dll
2015-03-11 19:47 - 2014-10-29 04:28 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpssvcs.dll
2015-03-11 19:47 - 2014-10-29 04:25 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\blackbox.dll
2015-03-11 19:47 - 2014-10-29 04:24 - 04418560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2015-03-11 19:47 - 2014-10-29 04:17 - 02003456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2015-03-11 19:47 - 2014-10-29 04:17 - 00537088 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-03-11 19:47 - 2014-10-29 04:10 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-03-11 19:47 - 2014-10-29 04:08 - 01540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2015-03-11 19:47 - 2014-10-29 04:07 - 06692352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2015-03-11 19:47 - 2014-10-29 04:03 - 00862720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2015-03-11 19:47 - 2014-10-29 04:00 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-03-11 19:47 - 2014-10-29 03:57 - 02924032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2015-03-11 19:47 - 2014-10-29 03:56 - 03754496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2015-03-11 19:47 - 2014-10-29 03:56 - 01526784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2015-03-11 19:47 - 2014-10-29 03:56 - 00603648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2015-03-11 19:47 - 2014-10-29 03:55 - 01697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2015-03-11 19:47 - 2014-10-29 03:53 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2015-03-11 19:47 - 2014-10-29 03:53 - 00881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2015-03-11 19:47 - 2014-10-29 03:52 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-03-11 19:47 - 2014-10-29 03:51 - 00941056 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2015-03-11 19:47 - 2014-10-29 03:50 - 01289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMNetMgr.dll
2015-03-11 19:47 - 2014-10-29 03:49 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlceqp40.dll
2015-03-11 19:47 - 2014-10-29 03:48 - 01080832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2015-03-11 19:47 - 2014-10-29 03:48 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2015-03-11 19:47 - 2014-10-29 03:47 - 02072064 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2015-03-11 19:47 - 2014-10-29 03:45 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\blackbox.dll
2015-03-11 19:47 - 2014-10-29 03:45 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinput.exe
2015-03-11 19:47 - 2014-10-29 03:44 - 02984448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2015-03-11 19:47 - 2014-10-29 03:43 - 07075328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2015-03-11 19:47 - 2014-10-29 03:43 - 01092608 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdosys.dll
2015-03-11 19:47 - 2014-10-29 03:43 - 00933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2015-03-11 19:47 - 2014-10-29 03:42 - 03724800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe
2015-03-11 19:47 - 2014-10-29 03:42 - 01999872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-03-11 19:47 - 2014-10-29 03:40 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2015-03-11 19:47 - 2014-10-29 03:39 - 02896384 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-03-11 19:47 - 2014-10-29 03:38 - 04690432 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2015-03-11 19:47 - 2014-10-29 03:37 - 01563136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2015-03-11 19:47 - 2014-10-29 03:35 - 04709888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2015-03-11 19:47 - 2014-10-29 03:35 - 03256320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2015-03-11 19:47 - 2014-10-29 03:34 - 01114624 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2015-03-11 19:47 - 2014-10-29 03:34 - 01037824 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2015-03-11 19:47 - 2014-10-29 03:33 - 01056768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2015-03-11 19:47 - 2014-10-29 03:32 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2015-03-11 19:47 - 2014-10-29 03:32 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-03-11 19:47 - 2014-10-29 03:31 - 02941952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2015-03-11 19:47 - 2014-10-29 03:28 - 03820544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2015-03-11 19:47 - 2014-10-29 03:26 - 03561984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2015-03-11 19:47 - 2014-10-29 03:25 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-03-11 19:47 - 2014-10-29 03:25 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pla.dll
2015-03-11 19:47 - 2014-10-29 03:24 - 02464768 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2015-03-11 19:47 - 2014-10-29 03:24 - 02364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll
2015-03-11 19:47 - 2014-10-29 03:24 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-03-11 19:47 - 2014-10-29 03:23 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2015-03-11 19:47 - 2014-10-29 03:22 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-03-11 19:47 - 2014-10-29 03:22 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2015-03-11 19:47 - 2014-10-29 03:22 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-03-11 19:47 - 2014-10-29 03:21 - 01250816 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-03-11 19:47 - 2014-10-29 03:21 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2015-03-11 19:47 - 2014-10-29 03:20 - 01492480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2015-03-11 19:47 - 2014-10-29 03:19 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2015-03-11 19:47 - 2014-10-29 03:18 - 01753600 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2015-03-11 19:47 - 2014-10-29 03:18 - 01050624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMNetMgr.dll
2015-03-11 19:47 - 2014-10-29 03:17 - 01402368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2015-03-11 19:47 - 2014-10-29 03:17 - 01360896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2015-03-11 19:47 - 2014-10-29 03:17 - 00829952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sbe.dll
2015-03-11 19:47 - 2014-10-29 03:16 - 05267968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
2015-03-11 19:47 - 2014-10-29 03:16 - 01696256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2015-03-11 19:47 - 2014-10-29 03:14 - 03553280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2015-03-11 19:47 - 2014-10-29 03:14 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-03-11 19:47 - 2014-10-29 03:12 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-03-11 19:47 - 2014-10-29 03:11 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-03-11 19:47 - 2014-10-29 03:10 - 02469888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2015-03-11 19:47 - 2014-10-29 03:09 - 01335296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 02608640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 02542080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 02174976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 01822720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 01560576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 01478144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2015-03-11 19:47 - 2014-10-29 03:07 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2015-03-11 19:47 - 2014-10-29 03:07 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-03-11 19:47 - 2014-10-29 03:06 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2015-03-11 19:47 - 2014-10-29 03:05 - 03273216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2015-03-11 19:47 - 2014-10-29 03:04 - 01376256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2015-03-11 19:47 - 2014-10-29 03:03 - 04067840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2015-03-11 19:47 - 2014-10-29 03:03 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2015-03-11 19:47 - 2014-10-29 03:03 - 02487296 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2015-03-11 19:47 - 2014-10-29 03:03 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-03-11 19:47 - 2014-10-29 03:02 - 14354944 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-03-11 19:47 - 2014-10-29 03:01 - 01710592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2015-03-11 19:47 - 2014-10-29 03:01 - 00843776 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2015-03-11 19:47 - 2014-10-29 03:00 - 01705984 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2015-03-11 19:47 - 2014-10-29 02:59 - 01636864 _____ (Microsoft Corporation) C:\WINDOWS\system32\RacEngn.dll
2015-03-11 19:47 - 2014-10-29 02:59 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2015-03-11 19:47 - 2014-10-29 02:59 - 01454080 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2015-03-11 19:47 - 2014-10-29 02:59 - 01207296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2015-03-11 19:47 - 2014-10-29 02:59 - 01021440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-03-11 19:47 - 2014-10-29 02:58 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-03-11 19:47 - 2014-10-29 02:57 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-03-11 19:47 - 2014-10-29 02:56 - 01337344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-03-11 19:47 - 2014-10-29 02:56 - 01248256 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
2015-03-11 19:47 - 2014-10-29 02:56 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-03-11 19:47 - 2014-10-29 02:56 - 01001984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2015-03-11 19:47 - 2014-10-29 02:54 - 07784960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-03-11 19:47 - 2014-10-29 02:54 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-03-11 19:47 - 2014-10-29 02:54 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-03-11 19:47 - 2014-10-29 02:53 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 02554880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 02170368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 01461248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 01275904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-03-11 19:47 - 2014-10-29 02:52 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2015-03-11 19:47 - 2014-10-29 02:50 - 12749824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-03-11 19:47 - 2014-10-29 02:50 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2015-03-11 19:47 - 2014-10-29 02:50 - 01482752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2015-03-11 19:47 - 2014-10-29 02:48 - 03056128 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2015-03-11 19:47 - 2014-10-29 02:48 - 01344000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2015-03-11 19:47 - 2014-10-29 02:47 - 02090496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 09530368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 01919488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 01348096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RacEngn.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-03-11 19:47 - 2014-10-29 02:45 - 13318144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2015-03-11 19:47 - 2014-10-29 02:45 - 01725952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-03-11 19:47 - 2014-10-29 02:45 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-03-11 19:47 - 2014-10-29 02:43 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2015-03-11 19:47 - 2014-10-29 02:43 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-03-11 19:47 - 2014-10-29 02:43 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-03-11 19:47 - 2014-10-29 02:42 - 01922560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-03-11 19:47 - 2014-10-29 02:42 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-03-11 19:47 - 2014-10-29 02:42 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2015-03-11 19:47 - 2014-10-29 02:41 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-03-11 19:47 - 2014-10-29 02:41 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2015-03-11 19:47 - 2014-10-29 02:40 - 02104832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2015-03-11 19:47 - 2014-10-29 02:39 - 02814464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-03-11 19:47 - 2014-10-29 02:39 - 01000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2015-03-11 19:47 - 2014-10-29 02:38 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2015-03-11 19:47 - 2014-10-29 02:38 - 01262080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2015-03-11 19:47 - 2014-10-29 02:37 - 06386176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2015-03-11 19:47 - 2014-10-29 02:37 - 00724480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-03-11 19:47 - 2014-10-29 02:36 - 00954880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-03-11 19:47 - 2014-10-29 02:35 - 01668096 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2015-03-11 19:47 - 2014-10-29 02:35 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-03-11 19:47 - 2014-10-29 02:34 - 01544192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-03-11 19:47 - 2014-10-29 02:33 - 06213632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2015-03-11 19:47 - 2014-10-29 02:33 - 01102848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2015-03-11 19:47 - 2014-10-15 10:32 - 02025792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-03-11 19:47 - 2014-10-07 08:45 - 03307112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2015-03-11 19:47 - 2014-10-07 05:44 - 02890296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2015-03-11 19:47 - 2014-09-25 05:42 - 00373568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-03-11 19:46 - 2014-10-29 06:10 - 00430728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2015-03-11 19:46 - 2014-10-29 06:09 - 01950280 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2015-03-11 19:46 - 2014-10-29 06:09 - 01309744 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2015-03-11 19:46 - 2014-10-29 06:09 - 01239576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2015-03-11 19:46 - 2014-10-29 06:09 - 00315576 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2015-03-11 19:46 - 2014-10-29 06:09 - 00294880 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2015-03-11 19:46 - 2014-10-29 06:09 - 00233448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityUxHost.exe
2015-03-11 19:46 - 2014-10-29 06:09 - 00214360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2015-03-11 19:46 - 2014-10-29 06:04 - 00397192 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2015-03-11 19:46 - 2014-10-29 06:04 - 00324864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-03-11 19:46 - 2014-10-29 06:04 - 00217912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2015-03-11 19:46 - 2014-10-29 06:03 - 00435008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2015-03-11 19:46 - 2014-10-29 06:00 - 00740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2015-03-11 19:46 - 2014-10-29 06:00 - 00544408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-03-11 19:46 - 2014-10-29 06:00 - 00379568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2015-03-11 19:46 - 2014-10-29 05:59 - 00520536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2015-03-11 19:46 - 2014-10-29 05:59 - 00498496 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2015-03-11 19:46 - 2014-10-29 05:59 - 00415040 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2015-03-11 19:46 - 2014-10-29 05:59 - 00230816 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2015-03-11 19:46 - 2014-10-29 05:58 - 01797944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 01913128 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplaySwitch.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 01552704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-03-11 19:46 - 2014-10-29 05:57 - 01150208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2015-03-11 19:46 - 2014-10-29 05:57 - 00767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00725672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00662120 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00643064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00629576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP4SDECD.DLL
2015-03-11 19:46 - 2014-10-29 05:57 - 00557832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSDECD.DLL
2015-03-11 19:46 - 2014-10-29 05:57 - 00389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-03-11 19:46 - 2014-10-29 05:57 - 00339312 _____ (Microsoft Corporation) C:\WINDOWS\system32\shlwapi.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00295432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMASF.DLL
2015-03-11 19:46 - 2014-10-29 05:57 - 00271152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00256744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00217432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00034568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00031496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraSettingsUIHost.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00029408 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerHost.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00027360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsRemoveDevice.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00018584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SlideToShutDown.exe
2015-03-11 19:46 - 2014-10-29 05:55 - 01063432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2015-03-11 19:46 - 2014-10-29 05:55 - 00730824 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatq.dll
2015-03-11 19:46 - 2014-10-29 05:55 - 00426120 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2015-03-11 19:46 - 2014-10-29 05:55 - 00359496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2015-03-11 19:46 - 2014-10-29 05:55 - 00305192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpendp.dll
2015-03-11 19:46 - 2014-10-29 05:54 - 00685408 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2015-03-11 19:46 - 2014-10-29 05:53 - 00687496 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2015-03-11 19:46 - 2014-10-29 05:53 - 00411128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-03-11 19:46 - 2014-10-29 05:52 - 00734448 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00497936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00444728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00405456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00356936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00311448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00225696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmmbase.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00020160 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2015-03-11 19:46 - 2014-10-29 05:51 - 00363080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2015-03-11 19:46 - 2014-10-29 05:51 - 00360992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2015-03-11 19:46 - 2014-10-29 05:51 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2015-03-11 19:46 - 2014-10-29 05:51 - 00179736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2015-03-11 19:46 - 2014-10-29 05:18 - 01782912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2015-03-11 19:46 - 2014-10-29 05:18 - 01103768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2015-03-11 19:46 - 2014-10-29 05:18 - 00848568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2015-03-11 19:46 - 2014-10-29 05:18 - 00320736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2015-03-11 19:46 - 2014-10-29 05:15 - 00340848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2015-03-11 19:46 - 2014-10-29 05:15 - 00340288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2015-03-11 19:46 - 2014-10-29 05:15 - 00245296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2015-03-11 19:46 - 2014-10-29 05:15 - 00192096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2015-03-11 19:46 - 2014-10-29 05:15 - 00089856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2015-03-11 19:46 - 2014-10-29 05:13 - 00185880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xmllite.dll
2015-03-11 19:46 - 2014-10-29 05:12 - 00616704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2015-03-11 19:46 - 2014-10-29 05:12 - 00430176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2015-03-11 19:46 - 2014-10-29 05:12 - 00416760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2015-03-11 19:46 - 2014-10-29 05:12 - 00403776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2015-03-11 19:46 - 2014-10-29 05:11 - 00914648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2015-03-11 19:46 - 2014-10-29 05:11 - 00492704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVSDECD.DLL
2015-03-11 19:46 - 2014-10-29 05:11 - 00488064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2015-03-11 19:46 - 2014-10-29 05:11 - 00463744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP4SDECD.DLL
2015-03-11 19:46 - 2014-10-29 05:11 - 00245296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMASF.DLL
2015-03-11 19:46 - 2014-10-29 05:11 - 00191104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2015-03-11 19:46 - 2014-10-29 05:11 - 00187488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 01906872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplaySwitch.exe
2015-03-11 19:46 - 2014-10-29 05:10 - 00569128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clbcatq.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00547992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00492232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00367248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00278352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shlwapi.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00276816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00272648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpendp.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00584120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00551064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00482360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmdev.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00409040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00399752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00336680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00331048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00320256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00260800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00202440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00019096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksuser.dll
2015-03-11 19:46 - 2014-10-29 05:06 - 00800008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2015-03-11 19:46 - 2014-10-29 05:06 - 00507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2015-03-11 19:46 - 2014-10-29 05:05 - 00321248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2015-03-11 19:46 - 2014-10-29 05:05 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2015-03-11 19:46 - 2014-10-29 04:56 - 01164288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2015-03-11 19:46 - 2014-10-29 04:56 - 00553984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfh264enc.dll
2015-03-11 19:46 - 2014-10-29 04:49 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp60.dll
2015-03-11 19:46 - 2014-10-29 04:48 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe
2015-03-11 19:46 - 2014-10-29 04:48 - 00636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll
2015-03-11 19:46 - 2014-10-29 04:46 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFRd.sys
2015-03-11 19:46 - 2014-10-29 04:45 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2015-03-11 19:46 - 2014-10-29 04:45 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\glmf32.dll
2015-03-11 19:46 - 2014-10-29 04:45 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\msls31.dll
2015-03-11 19:46 - 2014-10-29 04:45 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2015-03-11 19:46 - 2014-10-29 04:44 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2015-03-11 19:46 - 2014-10-29 04:44 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2015-03-11 19:46 - 2014-10-29 04:42 - 01091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2015-03-11 19:46 - 2014-10-29 04:42 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2015-03-11 19:46 - 2014-10-29 04:41 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2015-03-11 19:46 - 2014-10-29 04:41 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
         
__________________


Alt 03.04.2015, 20:51   #3
schrauber
/// the machine
/// TB-Ausbilder
 

Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



Hi,

Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:

    GamesDesktop 014.370

    istartsurf uninstall

    MediaPlayRS3

    MyPC Backup

    Optimizer Pro v3.2

    PepperZip 2.0

    SpeedChecker

    Super Optimizer v3.2

    Zombie Invasion


  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 





Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

__________________
__________________

Alt 03.04.2015, 20:52   #4
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



FRST.txt Teil 2:

Code:
ATTFilter
2015-03-11 19:46 - 2014-10-29 04:41 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-03-11 19:46 - 2014-10-29 04:40 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2015-03-11 19:46 - 2014-10-29 04:40 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput8.dll
2015-03-11 19:46 - 2014-10-29 04:37 - 02329088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0404.dll
2015-03-11 19:46 - 2014-10-29 04:36 - 00546304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlcese40.dll
2015-03-11 19:46 - 2014-10-29 04:36 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\prncache.dll
2015-03-11 19:46 - 2014-10-29 04:35 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsldp.dll
2015-03-11 19:46 - 2014-10-29 04:34 - 03438592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0804.dll
2015-03-11 19:46 - 2014-10-29 04:33 - 07558144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0011.dll
2015-03-11 19:46 - 2014-10-29 04:33 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data001E.dll
2015-03-11 19:46 - 2014-10-29 04:33 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlsrv32.dll
2015-03-11 19:46 - 2014-10-29 04:32 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\migflt.dll
2015-03-11 19:46 - 2014-10-29 04:32 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlceoledb40.dll
2015-03-11 19:46 - 2014-10-29 04:31 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wvc.dll
2015-03-11 19:46 - 2014-10-29 04:31 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2015-03-11 19:46 - 2014-10-29 04:31 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\cewmdm.dll
2015-03-11 19:46 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70804.dll
2015-03-11 19:46 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70404.dll
2015-03-11 19:46 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7001E.dll
2015-03-11 19:46 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70011.dll
2015-03-11 19:46 - 2014-10-29 04:30 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsClassExtension.dll
2015-03-11 19:46 - 2014-10-29 04:29 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsound.dll
2015-03-11 19:46 - 2014-10-29 04:29 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhengine.dll
2015-03-11 19:46 - 2014-10-29 04:28 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskraid.exe
2015-03-11 19:46 - 2014-10-29 04:27 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdv.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssha.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasnap.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsRasterService.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmvdspa.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfdvdec.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartCardSimulator.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\system32\termmgr.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpresult.exe
2015-03-11 19:46 - 2014-10-29 04:25 - 00995328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi3.dll
2015-03-11 19:46 - 2014-10-29 04:25 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdohlp.dll
2015-03-11 19:46 - 2014-10-29 04:25 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2015-03-11 19:46 - 2014-10-29 04:24 - 00644608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVXENCD.DLL
2015-03-11 19:46 - 2014-10-29 04:24 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2015-03-11 19:46 - 2014-10-29 04:24 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSNP.ax
2015-03-11 19:46 - 2014-10-29 04:23 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\offfilt.dll
2015-03-11 19:46 - 2014-10-29 04:22 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2015-03-11 19:46 - 2014-10-29 04:21 - 01664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2015-03-11 19:46 - 2014-10-29 04:21 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassdo.dll
2015-03-11 19:46 - 2014-10-29 04:21 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2015-03-11 19:46 - 2014-10-29 04:21 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2015-03-11 19:46 - 2014-10-29 04:20 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\QAGENTRT.DLL
2015-03-11 19:46 - 2014-10-29 04:20 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnp.dll
2015-03-11 19:46 - 2014-10-29 04:20 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll
2015-03-11 19:46 - 2014-10-29 04:19 - 09732096 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000a.dll
2015-03-11 19:46 - 2014-10-29 04:19 - 00451072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSENCD.DLL
2015-03-11 19:46 - 2014-10-29 04:18 - 06259712 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 04616704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001d.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 02403328 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000c.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 02140672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0007.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 01609216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0000.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2015-03-11 19:46 - 2014-10-29 04:18 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscandui.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasppp.dll
2015-03-11 19:46 - 2014-10-29 04:17 - 04621312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0414.dll
2015-03-11 19:46 - 2014-10-29 04:17 - 04620288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0816.dll
2015-03-11 19:46 - 2014-10-29 04:17 - 03231232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004b.dll
2015-03-11 19:46 - 2014-10-29 04:17 - 02480128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000d.dll
2015-03-11 19:46 - 2014-10-29 04:17 - 01926144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0022.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 04621312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0010.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 04616704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0416.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 03235840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0039.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004a.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 00546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsnap.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\lltdapi.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004e.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0049.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0047.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0046.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0020.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0026.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0024.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001b.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0002.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 01904640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData002a.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004c.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0045.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02075136 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0027.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0c1a.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData081a.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001a.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0018.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000f.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0003.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 01904640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData003e.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 01904640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0021.dll
2015-03-11 19:46 - 2014-10-29 04:13 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnfldr.dll
2015-03-11 19:46 - 2014-10-29 04:12 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-03-11 19:46 - 2014-10-29 04:12 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcat.dll
2015-03-11 19:46 - 2014-10-29 04:11 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2015-03-11 19:46 - 2014-10-29 04:11 - 00547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
2015-03-11 19:46 - 2014-10-29 04:11 - 00478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmon.ocx
2015-03-11 19:46 - 2014-10-29 04:11 - 00435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswmdm.dll
2015-03-11 19:46 - 2014-10-29 04:11 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll
2015-03-11 19:46 - 2014-10-29 04:11 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgprint.dll
2015-03-11 19:46 - 2014-10-29 04:10 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfh264enc.dll
2015-03-11 19:46 - 2014-10-29 04:09 - 00632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\psisdecd.dll
2015-03-11 19:46 - 2014-10-29 04:09 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\lltdsvc.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00858624 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmnet.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\difxapi.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdprint.dll
2015-03-11 19:46 - 2014-10-29 04:07 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2015-03-11 19:46 - 2014-10-29 04:06 - 02902016 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2015-03-11 19:46 - 2014-10-29 04:06 - 01313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2015-03-11 19:46 - 2014-10-29 04:06 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2fs.dll
2015-03-11 19:46 - 2014-10-29 04:06 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL
2015-03-11 19:46 - 2014-10-29 04:05 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2015-03-11 19:46 - 2014-10-29 04:05 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\srchadmin.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IasMigPlugin.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\devmgr.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WavDest.dll
2015-03-11 19:46 - 2014-10-29 04:03 - 02334720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2015-03-11 19:46 - 2014-10-29 04:03 - 00832000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe
2015-03-11 19:46 - 2014-10-29 04:03 - 00489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-03-11 19:46 - 2014-10-29 04:03 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\xwtpdui.dll
2015-03-11 19:46 - 2014-10-29 04:02 - 00520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\localsec.dll
2015-03-11 19:46 - 2014-10-29 04:02 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xwizards.dll
2015-03-11 19:46 - 2014-10-29 04:02 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2015-03-11 19:46 - 2014-10-29 04:01 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2015-03-11 19:46 - 2014-10-29 04:01 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2015-03-11 19:46 - 2014-10-29 04:01 - 00475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2015-03-11 19:46 - 2014-10-29 04:01 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroleui.dll
2015-03-11 19:46 - 2014-10-29 04:01 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 03814400 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 01861632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 00652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 00435200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glmf32.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 00371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe
2015-03-11 19:46 - 2014-10-29 04:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msls31.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\riched32.dll
2015-03-11 19:46 - 2014-10-29 03:59 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2015-03-11 19:46 - 2014-10-29 03:59 - 00670720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2015-03-11 19:46 - 2014-10-29 03:59 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\riched20.dll
2015-03-11 19:46 - 2014-10-29 03:59 - 00404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncInfrastructure.dll
2015-03-11 19:46 - 2014-10-29 03:59 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2015-03-11 19:46 - 2014-10-29 03:58 - 01040384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2015-03-11 19:46 - 2014-10-29 03:58 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2015-03-11 19:46 - 2014-10-29 03:58 - 00423424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 02592256 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 01479168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 01431552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DxpTaskSync.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 01038336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-03-11 19:46 - 2014-10-29 03:56 - 00796160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mblctr.exe
2015-03-11 19:46 - 2014-10-29 03:56 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2015-03-11 19:46 - 2014-10-29 03:56 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2015-03-11 19:46 - 2014-10-29 03:56 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPDSp.dll
2015-03-11 19:46 - 2014-10-29 03:56 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-03-11 19:46 - 2014-10-29 03:55 - 00669184 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2015-03-11 19:46 - 2014-10-29 03:54 - 00833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2015-03-11 19:46 - 2014-10-29 03:54 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscp.dll
2015-03-11 19:46 - 2014-10-29 03:54 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll
2015-03-11 19:46 - 2014-10-29 03:54 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dim.dll
2015-03-11 19:46 - 2014-10-29 03:54 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2015-03-11 19:46 - 2014-10-29 03:54 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\qasf.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 02238464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NL7Data0404.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 01065984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlcese40.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NL7Data0804.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 02829312 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsecsnp.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00680960 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\netdiagfx.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00224768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsldp.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2015-03-11 19:46 - 2014-10-29 03:51 - 07331840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NL7Data0011.dll
2015-03-11 19:46 - 2014-10-29 03:51 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2015-03-11 19:46 - 2014-10-29 03:50 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlsrv32.dll
2015-03-11 19:46 - 2014-10-29 03:50 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdri.dll
2015-03-11 19:46 - 2014-10-29 03:49 - 02236416 _____ (Microsoft Corporation) C:\WINDOWS\system32\certmgr.dll
2015-03-11 19:46 - 2014-10-29 03:49 - 00771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2015-03-11 19:46 - 2014-10-29 03:49 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2015-03-11 19:46 - 2014-10-29 03:49 - 00478720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wvc.dll
2015-03-11 19:46 - 2014-10-29 03:49 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2015-03-11 19:46 - 2014-10-29 03:49 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2015-03-11 19:46 - 2014-10-29 03:49 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmime.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 01364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\connect.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsmsnap.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB70804.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB70404.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB7001E.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB70011.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dxpserver.exe
2015-03-11 19:46 - 2014-10-29 03:47 - 01096192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ogldrv.dll
2015-03-11 19:46 - 2014-10-29 03:47 - 01041920 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdt.exe
2015-03-11 19:46 - 2014-10-29 03:47 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpssvcs.dll
2015-03-11 19:46 - 2014-10-29 03:47 - 00616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe
2015-03-11 19:46 - 2014-10-29 03:47 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsound.dll
2015-03-11 19:46 - 2014-10-29 03:47 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wisp.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 01497600 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-03-11 19:46 - 2014-10-29 03:46 - 01001472 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2015-03-11 19:46 - 2014-10-29 03:46 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe
2015-03-11 19:46 - 2014-10-29 03:46 - 00293376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdv.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsnt.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskraid.exe
2015-03-11 19:46 - 2014-10-29 03:46 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoeacct.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmvdspa.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfdvdec.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsRasterService.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00672768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdohlp.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00378880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\termmgr.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\drmmgrtn.dll
2015-03-11 19:46 - 2014-10-29 03:44 - 00872960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi3.dll
2015-03-11 19:46 - 2014-10-29 03:44 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXP.dll
2015-03-11 19:46 - 2014-10-29 03:44 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2015-03-11 19:46 - 2014-10-29 03:44 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00736256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVXENCD.DLL
2015-03-11 19:46 - 2014-10-29 03:43 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WmpDui.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSNP.ax
2015-03-11 19:46 - 2014-10-29 03:43 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offfilt.dll
2015-03-11 19:46 - 2014-10-29 03:42 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2015-03-11 19:46 - 2014-10-29 03:42 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2015-03-11 19:46 - 2014-10-29 03:42 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2015-03-11 19:46 - 2014-10-29 03:41 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2015-03-11 19:46 - 2014-10-29 03:41 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassdo.dll
2015-03-11 19:46 - 2014-10-29 03:41 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnp.dll
2015-03-11 19:46 - 2014-10-29 03:40 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll
2015-03-11 19:46 - 2014-10-29 03:40 - 02036224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0007.dll
2015-03-11 19:46 - 2014-10-29 03:39 - 09604608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000a.dll
2015-03-11 19:46 - 2014-10-29 03:39 - 04531712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0416.dll
2015-03-11 19:46 - 2014-10-29 03:39 - 04530688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData001d.dll
2015-03-11 19:46 - 2014-10-29 03:39 - 01571328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2015-03-11 19:46 - 2014-10-29 03:39 - 00898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2015-03-11 19:46 - 2014-10-29 03:39 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVSENCD.DLL
2015-03-11 19:46 - 2014-10-29 03:39 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscandui.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 04945920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 04530688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0010.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 04530176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0414.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 04529664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0816.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 02387456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000d.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 02307072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000c.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 02012160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0026.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 02012160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000f.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMPOSE.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 00363008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2015-03-11 19:46 - 2014-10-29 03:37 - 03149824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0039.dll
2015-03-11 19:46 - 2014-10-29 03:37 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData002a.dll
2015-03-11 19:46 - 2014-10-29 03:37 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2015-03-11 19:46 - 2014-10-29 03:37 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsnap.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData004e.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData004c.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData004b.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData004a.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0049.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0047.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0046.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0045.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0020.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01999360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0027.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0c1a.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData081a.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0024.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData001b.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData001a.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0018.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0003.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0002.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData003e.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0022.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0021.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01252864 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01008128 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 00943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFS.exe
2015-03-11 19:46 - 2014-10-29 03:36 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 00609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2015-03-11 19:46 - 2014-10-29 03:35 - 00532480 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll
2015-03-11 19:46 - 2014-10-29 03:35 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2015-03-11 19:46 - 2014-10-29 03:34 - 00473600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnfldr.dll
2015-03-11 19:46 - 2014-10-29 03:34 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll
2015-03-11 19:46 - 2014-10-29 03:34 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysmon.ocx
2015-03-11 19:46 - 2014-10-29 03:34 - 00353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswmdm.dll
2015-03-11 19:46 - 2014-10-29 03:34 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efscore.dll
2015-03-11 19:46 - 2014-10-29 03:34 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapisrv.dll
2015-03-11 19:46 - 2014-10-29 03:33 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2015-03-11 19:46 - 2014-10-29 03:33 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2015-03-11 19:46 - 2014-10-29 03:33 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2015-03-11 19:46 - 2014-10-29 03:32 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroles.dll
2015-03-11 19:46 - 2014-10-29 03:32 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comuid.dll
2015-03-11 19:46 - 2014-10-29 03:32 - 00512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psisdecd.dll
2015-03-11 19:46 - 2014-10-29 03:32 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmnet.dll
2015-03-11 19:46 - 2014-10-29 03:31 - 01278464 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2015-03-11 19:46 - 2014-10-29 03:31 - 00761344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2fs.dll
2015-03-11 19:46 - 2014-10-29 03:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2015-03-11 19:46 - 2014-10-29 03:31 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2015-03-11 19:46 - 2014-10-29 03:31 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\netjoin.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 06465536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2015-03-11 19:46 - 2014-10-29 03:30 - 01171456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2015-03-11 19:46 - 2014-10-29 03:30 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2015-03-11 19:46 - 2014-10-29 03:30 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmdial32.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL
2015-03-11 19:46 - 2014-10-29 03:29 - 02848768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IasMigPlugin.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\filemgmt.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devmgr.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00434176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 02213888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncCenter.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2015-03-11 19:46 - 2014-10-29 03:28 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptnet.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ulib.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00763392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2015-03-11 19:46 - 2014-10-29 03:27 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPTpm12.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xwizards.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizeng.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasmontr.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2015-03-11 19:46 - 2014-10-29 03:26 - 00838656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2015-03-11 19:46 - 2014-10-29 03:26 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOMEX.dll
2015-03-11 19:46 - 2014-10-29 03:26 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2015-03-11 19:46 - 2014-10-29 03:26 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2015-03-11 19:46 - 2014-10-29 03:26 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-03-11 19:46 - 2014-10-29 03:25 - 01058816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2015-03-11 19:46 - 2014-10-29 03:25 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroleui.dll
2015-03-11 19:46 - 2014-10-29 03:25 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncInfrastructure.dll
2015-03-11 19:46 - 2014-10-29 03:25 - 00333824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe
2015-03-11 19:46 - 2014-10-29 03:25 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certreq.exe
2015-03-11 19:46 - 2014-10-29 03:25 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 01389056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DxpTaskSync.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 01335296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 00902144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 00845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2015-03-11 19:46 - 2014-10-29 03:24 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2015-03-11 19:46 - 2014-10-29 03:24 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Geolocation.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 01826304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\livessp.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WPDSp.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 00839680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 00572416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-03-11 19:46 - 2014-10-29 03:22 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2015-03-11 19:46 - 2014-10-29 03:22 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-03-11 19:46 - 2014-10-29 03:22 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdelta.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qasf.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2015-03-11 19:46 - 2014-10-29 03:21 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2015-03-11 19:46 - 2014-10-29 03:21 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscp.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFHost.exe
2015-03-11 19:46 - 2014-10-29 03:21 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2015-03-11 19:46 - 2014-10-29 03:21 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipsecsnp.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\objsel.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdscore.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedyn.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssphtb.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 02714624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSync.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2015-03-11 19:46 - 2014-10-29 03:19 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10_1core.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10core.dll
2015-03-11 19:46 - 2014-10-29 03:18 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certmgr.dll
2015-03-11 19:46 - 2014-10-29 03:18 - 00743936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFWMAAEC.DLL
2015-03-11 19:46 - 2014-10-29 03:18 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2015-03-11 19:46 - 2014-10-29 03:18 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2015-03-11 19:46 - 2014-10-29 03:18 - 00194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdt.exe
2015-03-11 19:46 - 2014-10-29 03:17 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipsmsnap.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2PGraph.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtutil.exe
2015-03-11 19:46 - 2014-10-29 03:17 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 01242112 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00795136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_isv.exe
2015-03-11 19:46 - 2014-10-29 03:16 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authfwcfg.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc_isv.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drmmgrtn.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msoeacct.dll
2015-03-11 19:46 - 2014-10-29 03:15 - 00809472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2015-03-11 19:46 - 2014-10-29 03:15 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate.exe
2015-03-11 19:46 - 2014-10-29 03:15 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Proximity.dll
2015-03-11 19:46 - 2014-10-29 03:14 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdosys.dll
2015-03-11 19:46 - 2014-10-29 03:14 - 00737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2015-03-11 19:46 - 2014-10-29 03:14 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2015-03-11 19:46 - 2014-10-29 03:14 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2015-03-11 19:46 - 2014-10-29 03:14 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_ssp_isv.exe
2015-03-11 19:46 - 2014-10-29 03:14 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_ssp.exe
2015-03-11 19:46 - 2014-10-29 03:14 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2015-03-11 19:46 - 2014-10-29 03:14 - 00301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll
2015-03-11 19:46 - 2014-10-29 03:13 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-03-11 19:46 - 2014-10-29 03:13 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-03-11 19:46 - 2014-10-29 03:13 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msTextPrediction.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00516608 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\hotspotauth.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2015-03-11 19:46 - 2014-10-29 03:11 - 02597376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2015-03-11 19:46 - 2014-10-29 03:11 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2015-03-11 19:46 - 2014-10-29 03:11 - 00672768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-03-11 19:46 - 2014-10-29 03:11 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2015-03-11 19:46 - 2014-10-29 03:11 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtckrm.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 01096704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmsdk.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00442880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EncDec.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00873984 _____ (Microsoft Corporation) C:\WINDOWS\system32\provcore.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00809984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00658944 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00633344 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00345088 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2015-03-11 19:46 - 2014-10-29 03:08 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2015-03-11 19:46 - 2014-10-29 03:08 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 01396736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 01197056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
2015-03-11 19:46 - 2014-10-29 03:07 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 00594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 01086976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2015-03-11 19:46 - 2014-10-29 03:06 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 00301568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2015-03-11 19:46 - 2014-10-29 03:05 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsCfg.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptnet.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsvcs.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00364032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPTpm12.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netjoin.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifsutil.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00781824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00608256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2015-03-11 19:46 - 2014-10-29 03:02 - 00880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2015-03-11 19:46 - 2014-10-29 03:02 - 00695296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\perftrack.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00706048 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdelta.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 01574400 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wbemcomn.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10_1core.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedyn.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00200192 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DscCoreConfProv.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 01010688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2015-03-11 19:46 - 2014-10-29 02:59 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00603648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSync.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxApplicabilityEngine.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10core.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netprofm.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00746496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 01065472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate_isv.exe
2015-03-11 19:46 - 2014-10-29 02:57 - 00543744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate.exe
2015-03-11 19:46 - 2014-10-29 02:57 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2PGraph.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00364032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authfwcfg.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc_isv.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Proximity.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2015-03-11 19:46 - 2014-10-29 02:56 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00512512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2015-03-11 19:46 - 2014-10-29 02:56 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate_ssp_isv.exe
2015-03-11 19:46 - 2014-10-29 02:56 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate_ssp.exe
2015-03-11 19:46 - 2014-10-29 02:56 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00887808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dim700.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanpref.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceApi.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2015-03-11 19:46 - 2014-10-29 02:54 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NAPMONTR.DLL
2015-03-11 19:46 - 2014-10-29 02:54 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceTypes.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 01156608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00612352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provcore.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00550400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSATAPI.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_8.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 01024512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00555008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00544256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.SpeechSynthesis.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\provsvc.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2015-03-11 19:46 - 2014-10-29 02:50 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallControlPanel.dll
2015-03-11 19:46 - 2014-10-29 02:50 - 00624128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2015-03-11 19:46 - 2014-10-29 02:50 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2015-03-11 19:46 - 2014-10-29 02:50 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2015-03-11 19:46 - 2014-10-29 02:50 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2015-03-11 19:46 - 2014-10-29 02:50 - 00399360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll
2015-03-11 19:46 - 2014-10-29 02:49 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsvcs.dll
2015-03-11 19:46 - 2014-10-29 02:49 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2015-03-11 19:46 - 2014-10-29 02:49 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2015-03-11 19:46 - 2014-10-29 02:49 - 00300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\umrdp.dll
2015-03-11 19:46 - 2014-10-29 02:49 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 01142272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetcfg.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 00454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL
2015-03-11 19:46 - 2014-10-29 02:47 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00628224 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrv.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2015-03-11 19:46 - 2014-10-29 02:46 - 01305088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2015-03-11 19:46 - 2014-10-29 02:46 - 00455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2015-03-11 19:46 - 2014-10-29 02:46 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2015-03-11 19:46 - 2014-10-29 02:45 - 00918016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll
2015-03-11 19:46 - 2014-10-29 02:45 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2015-03-11 19:46 - 2014-10-29 02:45 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PortableDeviceApi.dll
2015-03-11 19:46 - 2014-10-29 02:45 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2015-03-11 19:46 - 2014-10-29 02:45 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2015-03-11 19:46 - 2014-10-29 02:45 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00732672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanpref.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DaOtpCredentialProvider.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSATAPI.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcuiu.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.HardwareId.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 01207808 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00865280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallControlPanel.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provsvc.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2015-03-11 19:46 - 2014-10-29 02:41 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2015-03-11 19:46 - 2014-10-29 02:41 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe
2015-03-11 19:46 - 2014-10-29 02:41 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2015-03-11 19:46 - 2014-10-29 02:41 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2015-03-11 19:46 - 2014-10-29 02:40 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-03-11 19:46 - 2014-10-29 02:40 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2015-03-11 19:46 - 2014-10-29 02:39 - 00565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2015-03-11 19:46 - 2014-10-29 02:39 - 00454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hnetcfg.dll
2015-03-11 19:46 - 2014-10-29 02:39 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrv.dll
2015-03-11 19:46 - 2014-10-29 02:38 - 00565760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2015-03-11 19:46 - 2014-10-29 02:37 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2015-03-11 19:46 - 2014-10-29 02:36 - 00955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2015-03-11 19:46 - 2014-10-29 02:32 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-03-11 19:46 - 2014-10-29 02:31 - 00626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2015-03-11 19:46 - 2014-10-29 02:30 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2015-03-11 19:46 - 2014-10-29 02:30 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2015-03-11 19:46 - 2014-10-15 10:32 - 00551232 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2015-03-11 19:46 - 2014-10-15 10:32 - 00337728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2015-03-11 19:46 - 2014-10-09 00:09 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-03-11 19:46 - 2014-10-08 11:24 - 00467776 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-03-11 19:46 - 2014-10-08 09:33 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2015-03-11 19:46 - 2014-10-08 09:32 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2015-03-11 19:46 - 2014-10-07 08:44 - 00533824 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-03-11 19:46 - 2014-09-27 06:59 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2015-03-11 19:46 - 2014-08-26 05:30 - 00354112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2015-03-11 19:46 - 2014-07-04 23:29 - 00478528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-03-11 19:45 - 2014-10-29 06:13 - 00021824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2015-03-11 19:45 - 2014-10-29 06:11 - 00038792 _____ (Microsoft Corporation) C:\WINDOWS\system32\svchost.exe
2015-03-11 19:45 - 2014-10-29 06:10 - 00177688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2015-03-11 19:45 - 2014-10-29 06:10 - 00089344 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhost.exe
2015-03-11 19:45 - 2014-10-29 06:10 - 00084184 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostex.exe
2015-03-11 19:45 - 2014-10-29 06:09 - 00371304 _____ (Microsoft Corporation) C:\WINDOWS\system32\verifier.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00277368 _____ (Microsoft Corporation) C:\WINDOWS\system32\powrprof.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00191032 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2015-03-11 19:45 - 2014-10-29 06:09 - 00155456 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00145144 _____ (Microsoft Corporation) C:\WINDOWS\system32\cabinet.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00108864 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootsect.exe
2015-03-11 19:45 - 2014-10-29 06:09 - 00044912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00033600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2015-03-11 19:45 - 2014-10-29 06:09 - 00033088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00033064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel.appcore.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00028480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2015-03-11 19:45 - 2014-10-29 06:09 - 00017560 _____ (Microsoft Corporation) C:\WINDOWS\system32\psapi.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00224600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntasn1.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00197832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssenh.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00196264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntmarta.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00181816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2015-03-11 19:45 - 2014-10-29 06:04 - 00153336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00149240 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00136912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00135304 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00131648 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2015-03-11 19:45 - 2014-10-29 06:04 - 00124992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptxml.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00122912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsp.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00120384 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00097608 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00093000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00086744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00080056 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\msasn1.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlrmdr.exe
2015-03-11 19:45 - 2014-10-29 06:04 - 00044368 _____ (Microsoft Corporation) C:\WINDOWS\system32\netutils.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00025352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsrole.dll
2015-03-11 19:45 - 2014-10-29 06:03 - 00196928 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll
2015-03-11 19:45 - 2014-10-29 06:00 - 00297512 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2015-03-11 19:45 - 2014-10-29 06:00 - 00210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2015-03-11 19:45 - 2014-10-29 06:00 - 00142000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxva2.dll
2015-03-11 19:45 - 2014-10-29 06:00 - 00125504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-03-11 19:45 - 2014-10-29 06:00 - 00030472 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogHost.exe
2015-03-11 19:45 - 2014-10-29 05:59 - 00136512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2015-03-11 19:45 - 2014-10-29 05:59 - 00105944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2015-03-11 19:45 - 2014-10-29 05:59 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2015-03-11 19:45 - 2014-10-29 05:59 - 00025920 ____C (Microsoft Corporation) C:\WINDOWS\system32\streamci.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00447256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00299048 _____ (Microsoft Corporation) C:\WINDOWS\system32\VIDRESZR.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00250488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPG4DECD.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00248408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP43DECD.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00246832 _____ (Microsoft Corporation) C:\WINDOWS\system32\RESAMPLEDMO.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00216920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVol.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00203504 _____ (Microsoft Corporation) C:\WINDOWS\system32\COLORCNV.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00116696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00111024 _____ (Microsoft Corporation) C:\WINDOWS\system32\RestoreOptIn.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00098664 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00089816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfvdsp.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2015-03-11 19:45 - 2014-10-29 05:57 - 00045464 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00038736 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00035664 _____ (Microsoft Corporation) C:\WINDOWS\system32\avrt.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00031968 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordOnWakeSettingFlyout.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00029960 _____ (Microsoft Corporation) C:\WINDOWS\system32\version.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00027872 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00022208 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.exe
2015-03-11 19:45 - 2014-10-29 05:56 - 00097048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2015-03-11 19:45 - 2014-10-29 05:56 - 00089368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2015-03-11 19:45 - 2014-10-29 05:56 - 00061208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhv.sys
2015-03-11 19:45 - 2014-10-29 05:56 - 00049944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2015-03-11 19:45 - 2014-10-29 05:55 - 00278392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbroker.exe
2015-03-11 19:45 - 2014-10-29 05:55 - 00076432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sessionmsg.exe
2015-03-11 19:45 - 2014-10-29 05:55 - 00067656 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcRtRemote.dll
2015-03-11 19:45 - 2014-10-29 05:55 - 00064040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wtsapi32.dll
2015-03-11 19:45 - 2014-10-29 05:55 - 00043888 _____ (Microsoft Corporation) C:\WINDOWS\system32\utildll.dll
2015-03-11 19:45 - 2014-10-29 05:55 - 00033576 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuntimeBroker.exe
2015-03-11 19:45 - 2014-10-29 05:55 - 00019264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhost.exe
2015-03-11 19:45 - 2014-10-29 05:53 - 00095048 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-03-11 19:45 - 2014-10-29 05:53 - 00080528 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2015-03-11 19:45 - 2014-10-29 05:52 - 00244272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00132232 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00126056 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00106384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00101736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfAACEnc.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00100672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2015-03-11 19:45 - 2014-10-29 05:52 - 00090880 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00043888 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdmo.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00041880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msgsm32.acm
2015-03-11 19:45 - 2014-10-29 05:52 - 00035664 _____ (Microsoft Corporation) C:\WINDOWS\system32\imaadp32.acm
2015-03-11 19:45 - 2014-10-29 05:52 - 00034088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msadp32.acm
2015-03-11 19:45 - 2014-10-29 05:52 - 00029408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2015-03-11 19:45 - 2014-10-29 05:52 - 00025312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msg711.acm
2015-03-11 19:45 - 2014-10-29 05:52 - 00022208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksuser.dll
2015-03-11 19:45 - 2014-10-29 05:51 - 00159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2015-03-11 19:45 - 2014-10-29 05:51 - 00070288 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2015-03-11 19:45 - 2014-10-29 05:51 - 00047024 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2015-03-11 19:45 - 2014-10-29 05:51 - 00033032 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2015-03-11 19:45 - 2014-10-29 05:51 - 00031528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptbase.dll
2015-03-11 19:45 - 2014-10-29 05:51 - 00024800 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00348048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\verifier.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00255136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powrprof.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00241168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00164264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00148728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00127552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00120352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cabinet.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00029920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel.appcore.dll
2015-03-11 19:45 - 2014-10-29 05:17 - 00033088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\svchost.exe
2015-03-11 19:45 - 2014-10-29 05:15 - 00168256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00165728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntasn1.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00156992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dssenh.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00154392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntmarta.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00119800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncrypt.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00115672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00110512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00099104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptxml.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00098152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00096032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptsp.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00074352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00073840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00068168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00064552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00051608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msasn1.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netutils.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00021696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsrole.dll
2015-03-11 19:45 - 2014-10-29 05:12 - 00241680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2015-03-11 19:45 - 2014-10-29 05:12 - 00116696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxva2.dll
2015-03-11 19:45 - 2014-10-29 05:12 - 00102728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2015-03-11 19:45 - 2014-10-29 05:12 - 00087224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpr.dll
2015-03-11 19:45 - 2014-10-29 05:12 - 00051096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2015-03-11 19:45 - 2014-10-29 05:11 - 00275280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MPG4DECD.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00274256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP43DECD.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00229248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RESAMPLEDMO.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVol.exe
2015-03-11 19:45 - 2014-10-29 05:11 - 00184888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\COLORCNV.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00183832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VIDRESZR.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00150776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpps.dll
2015-03-11 19:45 - 2014-10-29 05:11 - 00099104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00076912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfvdsp.dll
2015-03-11 19:45 - 2014-10-29 05:11 - 00031496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\avrt.dll
2015-03-11 19:45 - 2014-10-29 05:11 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraSettingsUIHost.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00094464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RestoreOptIn.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00091936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wtsapi32.dll
2015-03-11 19:45 - 2014-10-29 05:10 - 00052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RpcRtRemote.dll
2015-03-11 19:45 - 2014-10-29 05:10 - 00040816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00038184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\utildll.dll
2015-03-11 19:45 - 2014-10-29 05:10 - 00034016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialUIBroker.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00030944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountBroker.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PasswordOnWakeSettingFlyout.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00026304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\version.dll
2015-03-11 19:45 - 2014-10-29 05:10 - 00026304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerHost.exe
2015-03-11 19:45 - 2014-10-29 05:09 - 00017216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dllhost.exe
2015-03-11 19:45 - 2014-10-29 05:07 - 00136840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00134280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmmbase.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00110512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00089816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00081008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00039720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdmo.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00036136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msgsm32.acm
2015-03-11 19:45 - 2014-10-29 05:07 - 00029960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imaadp32.acm
2015-03-11 19:45 - 2014-10-29 05:07 - 00028896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msadp32.acm
2015-03-11 19:45 - 2014-10-29 05:07 - 00026816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2015-03-11 19:45 - 2014-10-29 05:07 - 00022720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msg711.acm
2015-03-11 19:45 - 2014-10-29 05:07 - 00018040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll
2015-03-11 19:45 - 2014-10-29 05:06 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTWorkQ.dll
2015-03-11 19:45 - 2014-10-29 05:06 - 00090368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfAACEnc.dll
2015-03-11 19:45 - 2014-10-29 05:06 - 00080016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2015-03-11 19:45 - 2014-10-29 05:06 - 00074824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2015-03-11 19:45 - 2014-10-29 05:05 - 00120864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
2015-03-11 19:45 - 2014-10-29 05:05 - 00052152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2015-03-11 19:45 - 2014-10-29 05:05 - 00030984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptbase.dll
2015-03-11 19:45 - 2014-10-29 05:05 - 00026304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2015-03-11 19:45 - 2014-10-29 05:05 - 00020120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2015-03-11 19:45 - 2014-10-29 04:49 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcirt.dll
2015-03-11 19:45 - 2014-10-29 04:48 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SSShim.dll
2015-03-11 19:45 - 2014-10-29 04:48 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2015-03-11 19:45 - 2014-10-29 04:48 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2015-03-11 19:45 - 2014-10-29 04:48 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2015-03-11 19:45 - 2014-10-29 04:48 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\lmhsvc.dll
2015-03-11 19:45 - 2014-10-29 04:47 - 00089088 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2015-03-11 19:45 - 2014-10-29 04:46 - 00272384 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2015-03-11 19:45 - 2014-10-29 04:46 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFPf.sys
2015-03-11 19:45 - 2014-10-29 04:46 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2015-03-11 19:45 - 2014-10-29 04:46 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncui.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pacer.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rassstp.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc_os.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\shgina.dll
         

Alt 03.04.2015, 20:58   #5
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



Oh ok, ich war noch beim Posten der FRST, da sie mindestens fünf Posts benötigen würde. Aber anscheinend ist das nicht mehr notwendig.

Ein GMER-Logg habe ich ebenfalls nicht, da es bei der Ausführung nur eine System32-Fehlermeldung gab. Daraufhin konnte man online nach einer Lösung suchen, was ich ja nicht kann da das Inet abgeschaltet ist.

Aber dann versuche ich mich erstmal an Deinen Ratschlägen.

Danke für die schnelle Unterstützung und liebe Grüße
Aaaron666

Miniaturansicht angehängter Grafiken
Webseiten werden umgeleitet - iStartSurf und mehr-system32.jpg   Webseiten werden umgeleitet - iStartSurf und mehr-onlinesuchen.jpg  

Alt 04.04.2015, 08:02   #6
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



Wie gesagt, FRST war nicht vollständig, da zu groß (irgendwas bei 500.000 Zeichen). Gehe aber mal davon aus, dass es nicht mehr notwendig ist?

So, habe sonst mit Revo alles soweit möglich durchexerziert. Ich lade die Tools auf einem "sauberen" PC runter und trage sie per Stick auf den infizierten.

Alles bei letzterem offline und bei deaktivierter Firewall etc.. Was dazu führte, dass Revo beim Ausführen seine eigene Werbe-HTML nicht anzeigen konnte, was ja aber wohl kein Problem ist.

"MyPCBackup" tauchte bei Revo nicht auf, aber ich fand es in der Systemsteuerung und löschte es dort. Dazu noch ein halbes Dutzend anderer verdächtiger Optimierungs- und Sicherungstools, Videoplayer fragwürdiger Herkunft etc..

Die einzelnen Tools versuchten manchmal während der Deinstallation durch Revo über Ausführungs-Popups zu stören (Revo lief dann nicht weiter) und ich schloss sie über die Taskleiste, um sie nicht selber zu berühren/auszuführen.

Leider sehe ich auch nach den Neustarts immer noch in der Taskleiste rechts unten "searchprotect" was scheinbar ein ebensolcher Schmutz ist. Obwohl in der Autostart nix mehr steht... Und der Taskmanager zeigt immer noch einen Wust an solchen Protect-proggies, Clara-Updater und anderes, was interessanterweise immer noch die Icons von iStartSurf zeigt (glaube ich jedenfalls, so ein schwarzgraues Geschenkpaket). Diese letzten fiesen Reste bekomme ich weder über den Revo noch über die Systemsteuerung gegriffen - sie tauchen da schlichtweg nicht auf, sind aber in Taskleiste bzw. Taskmanager sichtbar.

Combofix läuft leider nicht. Es gibt die Meldung, dass Win 2000 nicht unterstützt wird (no longer Support - obwohl ich eigentlich Win 8.1 habe). Was kann ich da tun? Muss das iNet doch dabei eingestöpselt werden?

Danke und liebe Grüße
Aaron666

Edit Samstag morgen:

Hab heute nach dem Start erfreut gesehen, dass das Search-Project-Icon unten rechts in der Taskleiste verschwunden war und dann mal vorsichtig in den Taskmanager geschaut aber leider waren da die ganzen Optimizerdienste, backup-etc., i-irgendwas usw. noch aktiv. Sogar Zombi-Invasion, was ich ja meinte gelöscht zu haben. Der IE schaltet trotz mehrfach geänderter Startadresse immer noch auf iStartSurf, obwohl all diese Proggies in der Systemsteuerung nun nicht mehr auftauchen.

Den Kids und mir ist nun Ostern etwas versaut. Wer solche sinnfreie Zwangswerbung programmiert (und wozu? benutzen kann man das Web ja SO eh nicht mehr), dem sollte das Fell abgezogen werden.

Geändert von Aaron666 (03.04.2015 um 22:54 Uhr)

Alt 04.04.2015, 18:04   #7
schrauber
/// the machine
/// TB-Ausbilder
 

Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



Combofix weg lassen, mein Fehler


Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 05.04.2015, 09:40   #8
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



Ok hier kommt alles:

(Aktionen anwenden konnte ich dort nicht finden, ging scheinbar aber auch ohne)
mbam.txt:
Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlauf Datum: 05.04.2015
Suchlauf-Zeit: 09:01:19
Logdatei: mbam.txt
Administrator: Ja

Version: 2.01.4.1018
Malware Datenbank: v2015.04.05.01
Rootkit Datenbank: v2015.03.31.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: Papa

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 402818
Verstrichene Zeit: 14 Min, 30 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 4
PUP.Optional.Protect, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, 1128, Löschen bei Neustart, [cc292d3b1f6b4bebd5baf0fa8f7609f7]
PUP.Optional.ZombieInvasion.A, C:\ProgramData\IsWjAIZWh\ImMNMg.exe, 860, Löschen bei Neustart, [eb0a0c5cd8b20f279077a72d6e9356aa]
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6.exe, 4188, Löschen bei Neustart, [f8fd78f0d8b2f83eb3a8e45752b018e8]
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6.exe, 2960, Löschen bei Neustart, [11e4afb954360a2cbc9fd269ae5413ed]

Module: 0
(Keine schädliche Elemente gefunden)

Registrierungsschlüssel: 97
PUP.Optional.Protect, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WindowsMangerProtect, In Quarantäne, [cc292d3b1f6b4bebd5baf0fa8f7609f7], 
PUP.Optional.ZombieInvasion.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ImMNMg, In Quarantäne, [eb0a0c5cd8b20f279077a72d6e9356aa], 
PUP.Optional.XTab.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IHProtect Service, In Quarantäne, [90656800d3b70333484461b104feda26], 
PUP.Optional.WebSteroids.A, HKLM\SOFTWARE\CLASSES\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}, In Quarantäne, [11e41553f09af83ef6d182b6669d57a9], 
PUP.Optional.WebSteroids.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}, In Quarantäne, [11e41553f09af83ef6d182b6669d57a9], 
PUP.Optional.WebSteroids.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}, In Quarantäne, [11e41553f09af83ef6d182b6669d57a9], 
PUP.Optional.DynConIE.A, HKLM\SOFTWARE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [fff661070a802e08870f6eca6b981fe1], 
PUP.Optional.DynConIE.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [fff661070a802e08870f6eca6b981fe1], 
PUP.Optional.DynConIE.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [fff661070a802e08870f6eca6b981fe1], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.SupTab.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.SupTab.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.Outbrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{6D4506CE-F855-4657-AA38-DB6B1F733982}, In Quarantäne, [1cd978f0e7a341f587ec9ed2fc074cb4], 
PUP.Optional.Outbrowse, HKLM\SOFTWARE\CLASSES\TYPELIB\{03771AEF-400D-4A13-B712-25878EC4A3F5}, In Quarantäne, [1cd978f0e7a341f587ec9ed2fc074cb4], 
PUP.Optional.Outbrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{03771AEF-400D-4A13-B712-25878EC4A3F5}, In Quarantäne, [1cd978f0e7a341f587ec9ed2fc074cb4], 
PUP.Optional.Outbrowse, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{03771AEF-400D-4A13-B712-25878EC4A3F5}, In Quarantäne, [1cd978f0e7a341f587ec9ed2fc074cb4], 
PUP.Optional.Outbrowse, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{6D4506CE-F855-4657-AA38-DB6B1F733982}, In Quarantäne, [1cd978f0e7a341f587ec9ed2fc074cb4], 
PUP.Optional.IEBHOMulti.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D}, In Quarantäne, [53a2e286e8a2092d97dce647e91abc44], 
PUP.Optional.IEBHOMulti.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\EXTENSIONS\{CCC7B152-1D8C-11E3-B2AD-F3EF3D58318D}, In Quarantäne, [53a2e286e8a2092d97dce647e91abc44], 
PUP.Optional.WebTInst.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\webTinstMKTN, In Quarantäne, [7481a9bfd7b3f1455840c1fc29dab54b], 
PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\Crossbrowse, In Quarantäne, [a451e088e7a3132385a72c8aea19bb45], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\21636, In Quarantäne, [48ad4d1b5c2e10269ec736c515eeb44c], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\25257, In Quarantäne, [c0353b2dafdb9c9ac69f7586e51e8c74], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [e213db8dfc8e51e5bfa6d427a45f1fe1], 
PUP.Optional.ICinema.A, HKLM\SOFTWARE\WOW6432NODE\I - Cinema, In Quarantäne, [cd288ddb3b4feb4b82af33aabf44db25], 
PUP.Optional.ICinema.A, HKLM\SOFTWARE\WOW6432NODE\I - Cinema-nv, In Quarantäne, [47aed593c6c48fa77eb3548928db6c94], 
PUP.Optional.ICinema.A, HKLM\SOFTWARE\WOW6432NODE\I - Cinema-nv-ie, In Quarantäne, [cd28aebad8b262d432fff7e6c53e827e], 
PUP.Optional.IHProtect.A, HKLM\SOFTWARE\WOW6432NODE\IHProtect, In Quarantäne, [06ef1c4ca9e1e1557a81b1142dd60af6], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\Iminent, In Quarantäne, [47ae3731a5e5ba7c2bff7f8905ff659b], 
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\istartsurfSoftware, In Quarantäne, [a253234523671b1b49701dbfba49ee12], 
PUP.Optional.MediaPlayer.A, HKLM\SOFTWARE\WOW6432NODE\MediaPlayRS3-nv, In Quarantäne, [e01570f8c4c6d06644bd595ca85b926e], 
PUP.Optional.MediaPlayer.A, HKLM\SOFTWARE\WOW6432NODE\MediaPlayRS3-nv-ie, In Quarantäne, [cb2ad296ff8b8da948b9eec7d13213ed], 
PUP.Optional.Wajam.A, HKLM\SOFTWARE\WOW6432NODE\WajIntEnhance, In Quarantäne, [7c79472197f37eb8809e932f57ac7f81], 
PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\Crossbrowse, In Quarantäne, [df160c5c1c6e1c1ab4781d99877c9769], 
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE, In Quarantäne, [36bf7deb2268d462acf14b97fe059b65], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\21636, In Quarantäne, [995cc5a30f7b290d69fc58a339ca2ed2], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\25257, In Quarantäne, [9f56383064265cda9cc9ba410df64fb1], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [ad482642cfbba88e7ee7a05b54af02fe], 
PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\MEDIAPLAYER\SHIMINCLUSIONLIST\crossbrowse.exe, In Quarantäne, [ad48b3b548423402d159199dd92ad62a], 
PUP.Optional.UnicoBrowser.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\MEDIAPLAYER\SHIMINCLUSIONLIST\unicobrowser.exe, In Quarantäne, [9f560b5d91f9ae88d4fe4d6931d257a9], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IMBoosterARP, In Quarantäne, [12e3194f0f7bf0461cdd8b33ba490ef2], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IminentToolbar, In Quarantäne, [688d2c3c226889ad8078edd150b30df3], 
PUP.Optional.Vosteran, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Vosteran.com, In Quarantäne, [c62f6cfce9a13afc2deb4b83c83b669a], 
PUP.Optional.Wajam.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WajIntEnhance, In Quarantäne, [b5402147eaa0d462f8fe01bdfd060ff1], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=10, In Quarantäne, [599c6bfde4a6ba7cc44807383dc83dc3], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=4, In Quarantäne, [45b06cfc1872e45251bc62ddbf468c74], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, In Quarantäne, [4da8e682c0ca7abc79a56e6d61a23dc3], 
PUP.Optional.Tuto4Pc.A, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS, In Quarantäne, [5d9890d80486a393962a64e48d784cb4], 
PUP.Optional.MixVideoPlayer.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MixVideoPlayerUpdaterService, In Quarantäne, [2cc997d16b1f0036737009402cd9e51b], 
PUP.Optional.MixVideoPlayer.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\MixVideoPlayerUpdaterService, In Quarantäne, [b63f373187034beb5321a4a7ac5953ad], 
PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, In Quarantäne, [9b5a85e3fb8fda5cb8f615bb4eb5de22], 
PUP.Optional.Score.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RCORES, In Quarantäne, [26cffc6c9ded39fd5a54f151fa0bf10f], 
PUP.Optional.ICinema.A, HKU\S-1-5-18\SOFTWARE\I - Cinema-nv, In Quarantäne, [64912a3ea9e12c0a6ac69a439b68ba46], 
PUP.Optional.ICinema.A, HKU\S-1-5-18\SOFTWARE\I - Cinema-nv-ie, In Quarantäne, [ae47abbd197192a459d7fedfee15c13f], 
PUP.Optional.MediaPlayer.A, HKU\S-1-5-18\SOFTWARE\MediaPlayRS3-nv, In Quarantäne, [39bc0a5e6a203cfa7b87288dbd46f808], 
PUP.Optional.MediaPlayer.A, HKU\S-1-5-18\SOFTWARE\MediaPlayRS3-nv-ie, In Quarantäne, [5f964c1c51391e18659dfdb824df2bd5], 
PUP.Optional.Crossbrowse.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\CrossBrowser, In Quarantäne, [cd28392f2f5bce68e83fa21480831ee2], 
PUP.Optional.HomeTab.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\HomeTab, In Quarantäne, [fafb60080d7d2f07536bec0051b29967], 
PUP.Optional.ICinema.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\I - Cinema, In Quarantäne, [1dd85117addd1323db5527b6788ba35d], 
PUP.Optional.ICinema.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\I - Cinema-nv, In Quarantäne, [17de194f1f6b46f0b37dfae3fc07cc34], 
PUP.Optional.ICinema.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\I - Cinema-nv-ie, In Quarantäne, [fafb9dcb72181521a9878e4f22e1817f], 
PUP.Optional.ICinema.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\I-Cinema, In Quarantäne, [25d0e583b4d62412a0d3be1d8e752dd3], 
PUP.Optional.MediaPlayer.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MediaPlayRS3-nv, In Quarantäne, [c03556120783a591b44ed8dd10f335cb], 
PUP.Optional.MediaPlayer.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MediaPlayRS3-nv-ie, In Quarantäne, [569f2147e4a60d2962a04e67d231bf41], 
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\SearchProtectWS, In Quarantäne, [777ee6820b7f241243b8447a55aefd03], 
PUP.Optional.SystemNotifier.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\System NotifierV02.04, In Quarantäne, [26cfb0b82d5dc96de5eb427a91722ad6], 
PUP.Optional.TNT.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\TNT2, In Quarantäne, [19dc491fb1d95cda22af6d53aa59bf41], 
PUP.Optional.Vosteran.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\Vosteran Browser, In Quarantäne, [2dc86503434740f67f9a15b123e0da26], 
PUP.Optional.Wajam.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\WajIntEnhance, In Quarantäne, [7e77a8c0f793b77fbc63d2f0fe058e72], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [46af61070882092d6bbca38e2cd9de22], 
PUP.Optional.MultiIE.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\APPDATALOW\SOFTWARE\DynConIE, In Quarantäne, [14e1c3a5a8e28babcd5af248d82d8080], 
PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY, In Quarantäne, [44b1b4b44a40df5735b8229310f3837d], 
PUP.Optional.Vosteran.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\oilkkkefbalmbfppgjmgjoefbclebkce, In Quarantäne, [b0455117c6c4270f92c901c8ad562bd5], 
PUP.Optional.InstallCore.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\INSTALLCORE\1I1T1Q1S, In Quarantäne, [9d580266008a6acc0e2ef90e06feca36], 
PUP.Optional.InstallCore.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\INSTALLCORE, In Quarantäne, [cf2636322a6090a622edd24b48bd1de3], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\21636, In Quarantäne, [9c59d19781091422532017c0af542dd3], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\25257, In Quarantäne, [09ec491f33578fa7caa9a730788bbe42], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [44b196d290fae45285eebf187c873cc4], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\iCinema, In Quarantäne, [fafbaeba751584b294d4cbf410f3c13f], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\NewPlayerVid, In Quarantäne, [3eb72d3b4b3fe6504d5ff85204010cf4], 
PUP.Optional.Iminent.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IMBoosterARP, In Quarantäne, [6c89a6c27416a591c65c5a61c73cfd03], 
PUP.Optional.Iminent.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IminentToolbar, In Quarantäne, [d124392f0a808da9ba69c7f424df26da], 
PUP.Optional.Linkey.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Linkey, In Quarantäne, [16dfbaae96f45fd78c98dae1d72c0cf4], 
PUP.Optional.Vosteran.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Vosteran.com, In Quarantäne, [7283ed7b6d1d6fc71a0b219a71920bf5], 
PUP.Optional.Wajam.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WajIntEnhance, In Quarantäne, [5d98fe6a3951053183a310ab43c0f50b], 
PUP.Optional.Wajam.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\SIMPLYTECH\HomeTabWajIEnhance, In Quarantäne, [1dd84a1e3a5074c292653d8138cbc937], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.Clara.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ClaraUpdater, In Quarantäne, [04f14a1ec5c57fb7fd344c548b78f30d], 

Registrierungswerte: 21
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}, In Quarantäne, [f1042345107a4ee83e025bf0c441b749]
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE|path, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, In Quarantäne, [36bf7deb2268d462acf14b97fe059b65]
PUP.Optional.GlobalUpdate.C, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATEDEV|AuCheckPeriodMs, 21600000, In Quarantäne, [2ec74721177344f277dd09ac06fdea16]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}, In Quarantäne, [ee07244495f538fee55bc883877e7d83]
PUP.Optional.GamesDesktop.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|gmsd_de_370, In Quarantäne, [5e974e1a503aa393c5e27c4e81821ce4], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, tugs, In Quarantäne, [4da8e682c0ca7abc79a56e6d61a23dc3]
PUP.Optional.Tuto4Pc.A, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS|HostGUID, D423D255-10E9-4A23-9B56-1F9AF9B15465, In Quarantäne, [5d9890d80486a393962a64e48d784cb4]
PUP.Optional.Score.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RCORES|ImagePath, C:\WINDOWS\rcore.exe, In Quarantäne, [26cffc6c9ded39fd5a54f151fa0bf10f]
PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY|source, IE, In Quarantäne, [44b1b4b44a40df5735b8229310f3837d]
PUP.Optional.InstallCore.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\INSTALLCORE|tb, 1W2Z1U1P1Jzr1O1B1U1C1M, In Quarantäne, [cf2636322a6090a622edd24b48bd1de3]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}, In Quarantäne, [9a5b8bdd2169e650ab94f05b0afb47b9]
PUP.Optional.Vosteran.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|TopResultURLFallback, hxxp://vosteran.com/results.php?f=4&q={searchTerms}&a=vst_ir_15_03_other&cd=2XzuyEtN2Y1L1Qzu0EzzyEtD0FtB0E0B0AtBtA0BtAtDyCyDtN0D0Tzu0StCtCtCtBtN1L2XzutAtFyBtFtBtFtCtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0F0D0EtCzy0AtAtGyCtAyD0DtG0CyE0DyEtGtB0E0ByCtGtC0D0AyEtDyD0BtC0CzyyCyC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyDzzyCzyzzyDzytGtA0F0B0BtGyEyBtAtAtGzzzz0EyEtGyC0B0BtDyDtA0EtCzy0C0AyB2Q&cr=2004577484&ir=, In Quarantäne, [d71e33355a30f046e286fe4db352ae52]
PUP.Optional.Vosteran.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}, Vosteran, In Quarantäne, [2ec7c0a80189e94dd098d17abf4659a7]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}, In Quarantäne, [f9fc86e2d9b1c76f1926cb80ff068e72]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|FaviconURL, hxxp://www.istartsurf.com//favicon.ico, In Quarantäne, [13e26ff985054fe7c6793615f11411ef]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}, In Quarantäne, [45b02d3b8efc0c2aa09f87c45ca9ec14]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|TopResultURL, hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}, In Quarantäne, [9d584f199dedd16544fbc388f312ee12]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{643D121D-A3A5-4688-889C-D2D7CF18C4DB}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}, In Quarantäne, [639269ff5f2b0d2994ab6be0f80d34cc]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}, In Quarantäne, [55a03038b6d4a98de35c61eafe07bd43]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}|URL, hxxp://www.istartsurf.com/web/?utm_source=b&utm_medium=tugs&utm_campaign=install_ie&utm_content=ds&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&ts=1428043696&type=default&q={searchTerms}, In Quarantäne, [c82d73f50c7e57df45fa123933d2a858]
PUP.Optional.SpeedChecker.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{234E0EF3-B212-EC81-FB5E-C20C3A9D3359}, C:\Program Files (x86)\version91SpeedChecker\191.xpi, In Quarantäne, [36bf3830414994a223743a11d431a060]

Registrierungsdaten: 17
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" hxxp://www.istartsurf.com/?type=sc&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP, Gut: (Chrome.exe), Schlecht: ("C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" hxxp://www.istartsurf.com/?type=sc&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP),Ersetzt,[6f86baaecac07cba5af8d617768fe21e]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP, Gut: (iexplore.exe), Schlecht: (C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP),Ersetzt,[45b075f3177338fe2a26ba33b253b64a]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}),Ersetzt,[ed086efa59318babe5eb1ccf739202fe]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP),Ersetzt,[9461eb7d0387aa8c418f22c91ce9cb35]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}),Ersetzt,[07ee5216f199f73f2ba5c427a560ef11]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP),Ersetzt,[8c6983e596f470c6d000e80307fe9070]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|CustomizeSearch, hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}),Ersetzt,[0ce9e2861a70ef47e7ea6c7f6c99e11f]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}),Ersetzt,[8075d890d8b23ff7478a767508fd3fc1]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[e70e21476e1cb77f7154995e37ceea16]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" hxxp://www.istartsurf.com/?type=sc&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP, Gut: (Chrome.exe), Schlecht: ("C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" hxxp://www.istartsurf.com/?type=sc&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP),Ersetzt,[42b31b4d5a30e84ef85afeef7d88738d]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP, Gut: (iexplore.exe), Schlecht: (C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP),Ersetzt,[16df1058eb9f1422410fe50838cd9769]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}),Ersetzt,[01f4f375bfcbef47735dcd1ef70eb24e]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP),Ersetzt,[05f0b6b2fd8d310515bb2cbf897c3ac6]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP),Ersetzt,[b3422d3be5a52f07725ebf2c1beaa858]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://www.istartsurf.com/web/?type=ds&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP&q={searchTerms}),Ersetzt,[1cd9630543473cfa89476f7c27de659b]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[21d432368bffc175873eec0b2fd632ce]
PUP.Optional.Tikotin.A, HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://tikotin.com, Gut: (www.google.com), Schlecht: (hxxp://tikotin.com),Ersetzt,[1cd94c1c3951eb4be2b54cade91c3dc3]

Ordner: 84
PUP.Optional.BrowserWeb.A, C:\Users\Papa\AppData\Local\BrowserWeb, In Quarantäne, [24d17aee2d5d61d56613feb75ea5fd03], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\image, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, Löschen bei Neustart, [08ed0365b3d76ec823996e2706fdb64a], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, In Quarantäne, [08ed0365b3d76ec823996e2706fdb64a], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.ICinema.A, C:\Program Files (x86)\I - Cinema, Löschen bei Neustart, [ab4a55133a50102652b99a0113f0b44c], 
PUP.Optional.ZombieInvasion.A, C:\Users\Papa\AppData\Local\ZombieInvasion, In Quarantäne, [db1a4b1db4d6fa3c838e2578e320d62a], 
PUP.Optional.PriceFountain.A, C:\Users\Papa\AppData\Local\PriceFountain, In Quarantäne, [956077f1b2d8989e5da497074ab9d030], 
PUP.Optional.PriceFountain.A, C:\Users\Papa\AppData\Local\PriceFountain\logs, In Quarantäne, [956077f1b2d8989e5da497074ab9d030], 
PUP.Optional.Clara.A, C:\Program Files (x86)\Common Files\ClaraUpdater, In Quarantäne, [04f14a1ec5c57fb7fd344c548b78f30d], 
PUP.Optional.Vosteran.A, C:\Users\Papa\AppData\Local\Vosteran, In Quarantäne, [668fec7cdeac3bfb8c6b7e27f90a9070], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\userCode, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\icons, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\icons\actions, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\api, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\popupResource, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, In Quarantäne, [e2134b1d345615214f04b0fc1fe46799], 
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, In Quarantäne, [e2134b1d345615214f04b0fc1fe46799], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\Application, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\Application\39.0.2132.8, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\Application\39.0.2132.8\Locales, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\Cache, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\databases, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\Extension Rules, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\Extension State, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\Local Extension Settings, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\Local Extension Settings\blinolobpnfmeimflbomhookhegbigcp, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\Local Extension Settings\gfmdmibgfbecppaeocifplgmepgcpcbi, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\Local Extension Settings\gkiclangaememfkbdlbjlfnfmohdijjk, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\Local Storage, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Default\Session Storage, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse, In Quarantäne, [4baaf276fd8d4ceac79f199b1ae90000], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse, In Quarantäne, [4baaf276fd8d4ceac79f199b1ae90000], 
PUP.Optional.Crossbrowse.C, C:\Users\Papa\AppData\Local\Crossbrowse, In Quarantäne, [807508600e7cf6402345783c0bf854ac], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\version91SpeedChecker, In Quarantäne, [ba3b50186d1d5cda2367268ec83b22de], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Papa\AppData\Local\com\MixVideoPlayer.exe_Url_0uxwaewrhelcgghll0o5cintgfcbqdxr, In Quarantäne, [bc3995d3a6e42a0c2b80c2f261a255ab], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Papa\AppData\Local\com\MixVideoPlayer.exe_Url_0uxwaewrhelcgghll0o5cintgfcbqdxr\1.0.0.10, In Quarantäne, [bc3995d3a6e42a0c2b80c2f261a255ab], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\api, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\popupResource, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\userCode, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\icons, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\icons\actions, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 

Dateien: 343
PUP.Optional.Protect, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, Löschen bei Neustart, [cc292d3b1f6b4bebd5baf0fa8f7609f7], 
PUP.Optional.ZombieInvasion.A, C:\ProgramData\IsWjAIZWh\ImMNMg.exe, Löschen bei Neustart, [eb0a0c5cd8b20f279077a72d6e9356aa], 
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6.exe, Löschen bei Neustart, [f8fd78f0d8b2f83eb3a8e45752b018e8], 
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6.exe, Löschen bei Neustart, [11e4afb954360a2cbc9fd269ae5413ed], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, In Quarantäne, [90656800d3b70333484461b104feda26], 
PUP.Optional.SupTab.A, C:\Program Files (x86)\XTab\SupTab.dll, In Quarantäne, [ba3bb2b6ccbe7abc758c55e38c77758b], 
PUP.Optional.ZombieInvasion.A, C:\ProgramData\IsWjAIZWh\dat\aqnGWnqzn.exe, Löschen bei Neustart, [7c79c0a8cfbbba7ce22501d3da27f709], 
PUP.Optional.ZombieInvasion.A, C:\ProgramData\IsWjAIZWh\dat\GLXqDpe.dll, Löschen bei Neustart, [c5306305cebc70c6f7b2cf16798c59a7], 
PUP.Optional.ZombieInvasion.A, C:\ProgramData\IsWjAIZWh\dat\KqcSPT.exe, Löschen bei Neustart, [e312f078dcaefd3935d2d202778a768a], 
PUP.Optional.OptimizerPro, C:\ProgramData\{0dbdd2b3-e241-f150-0dbd-dd2b3e244acf}\hqghumeaylnlf.exe, In Quarantäne, [20d56305f298e5511bac5be5a85ae818], 
PUP.Optional.SystemNotifier.A, C:\Users\Papa\AppData\Roaming\UKMQ.exe, In Quarantäne, [9362a9bf2a609d99033bb978a363aa56], 
PUP.Optional.MediaPlayer.A, C:\Users\Papa\AppData\Roaming\FQZJTD.exe, In Quarantäne, [6c89dd8bd7b344f217fcf2400cfaf40c], 
PUP.Optional.Nova.A, C:\Program Files (x86)\4e341855-27c4-4446-8acf-e8e687afd85f\0108a392-7c20-4865-992e-f87761c02a5d.dll, In Quarantäne, [a154d098c1c935013c1068a74bb76997], 
PUP.Optional.Nova.A, C:\Program Files (x86)\Adobe\77c2f3bb-c738-4c3a-be28-5fe290b2a902.dll, In Quarantäne, [c5305b0d9bef10261f2d7e91639f738d], 
PUP.Optional.Nova.A, C:\Program Files (x86)\Adobe\c44e47ef-0c61-4347-b461-0ae6e1cc2d30.dll, In Quarantäne, [3fb6f672cdbd63d32f1d7e91eb174bb5], 
PUP.Optional.Nova.A, C:\Program Files (x86)\aea13faf-c855-4996-a77f-b370b8ad2d29\9f2ba29e-365b-41c3-9a02-004248a93a0f.dll, In Quarantäne, [fdf881e70d7d88ae4903c748f80a7987], 
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-7.exe, In Quarantäne, [7580eb7dcac080b6e07ba09b26dc6f91], 
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-10.exe, In Quarantäne, [0fe62741d5b5122496c5c972d0321ce4], 
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-3.exe, In Quarantäne, [20d53335fc8eb6808fcc70cb1be76f91], 
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5.exe, In Quarantäne, [7f76f771c4c64ceacc8fee4df70bba46], 
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-64.exe, In Quarantäne, [40b54d1b5f2b90a60655aa9152b0f010], 
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\4459d1dd-1226-4bd6-8cf9-4d48886e16af-7.exe, In Quarantäne, [787da3c52e5c61d5154613289a68bc44], 
PUP.Optional.Nova.A, C:\Program Files (x86)\I - Cinema\7e8c1615-5913-4505-b5b9-e7d36f08c5f6.dll, In Quarantäne, [d71e98d059313ef86ae2917e28da956b], 
PUP.Optional.iCinema.A, C:\Program Files (x86)\I - Cinema\utils.exe, In Quarantäne, [a0552d3bd1b9ee48d68577c4a260d22e], 
PUP.Optional.BrowserWatch, C:\Program Files (x86)\XTab\BrowerWatchCH.dll, In Quarantäne, [7d78dd8b4c3e1b1b4c16cfa0a55b51af], 
PUP.Optional.BrowserWatch, C:\Program Files (x86)\XTab\BrowerWatchFF.dll, In Quarantäne, [ed086dfb3951162063ff4a25ca368779], 
PUP.Optional.SearchProtect, C:\Program Files (x86)\XTab\CmdShell.exe, In Quarantäne, [60954127deace056afe23cae60a58a76], 
PUP.Optional.ELEX, C:\Program Files (x86)\XTab\HPNotify.exe, In Quarantäne, [aa4bf771dfabcc6aabdc122123df50b0], 
PUP.Optional.SearchProtect, C:\Program Files (x86)\XTab\IeWatchDog.dll, In Quarantäne, [738296d2eaa0f046860a8862c342d42c], 
PUP.Optional.SystemNotifier.A, C:\Users\Papa\AppData\Local\Temp\4931.exe, In Quarantäne, [e510a5c3cac0f3439ca264cd7294ac54], 
PUP.Optional.CrossRider, C:\Users\Papa\AppData\Local\Temp\DwlTempFolder\temp.exe, In Quarantäne, [fafbe6825931ed494a7724befc05619f], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Papa\AppData\Local\Temp\e0c43370-a0c1-4aad-90f6-bae1b16af79e\mixvideoplayersetup.exe, In Quarantäne, [8075b1b72c5ea690a4029cd3fc040df3], 
PUP.Optional.IStartsurf.A, C:\Users\Papa\AppData\Local\Temp\7dae0cc4-6689-4042-9c31-a14936865097\lly_istartsurf.exe, In Quarantäne, [7e7717513b4f56e046a162ce4db90af6], 
PUP.Optional.Clara.A, C:\Users\Papa\AppData\Local\Temp\d7a625bd-36fb-408c-96c2-f35e699685cb\unicobrowser.exe, In Quarantäne, [10e5095f94f60e28a6b388596e93ba46], 
PUP.Optional.MyBestOffersToday.A, C:\Users\Papa\AppData\Local\Temp\cce327ff-bef0-4cb2-8d16-065c635cc7a0\games desktop.exe, In Quarantäne, [8f6675f38a00082ed5a5bb41966b6b95], 
PUP.Optional.SystemNotifier.A, C:\Users\Papa\AppData\Local\Temp\03e2bb6a-6f98-4a14-9672-bb3cb199e0db\mini_installer.exe, In Quarantäne, [c82db1b790fa91a5c17d1918996da25e], 
PUP.Optional.MyPCBackup.SID.A, C:\Users\Papa\AppData\Local\Temp\89ec05c5-01c2-4582-a808-a6e5cad3293f\cloud_backup_setup.exe, In Quarantäne, [2bcadc8cfb8f43f3938e2909bf477e82], 
Trojan.Dropper, C:\Users\Papa\AppData\Local\Temp\9880bb54-6572-4f11-8073-e68022a1cd83\setup.exe, In Quarantäne, [47aee286aae0191de086ee4927dbc63a], 
PUP.Optional.SmartBar, C:\Windows\Installer\51c0e0b2.msi, In Quarantäne, [cc29fa6e028869cd7c7d80dea0609d63], 
PUP.Optional.BrowserWeb.A, C:\Users\Papa\AppData\Local\BrowserWeb\first.txt, In Quarantäne, [24d17aee2d5d61d56613feb75ea5fd03], 
PUP.Optional.Crossbrowse.C, C:\Windows\System32\Tasks\Crossbrowse, In Quarantäne, [33c233356a20f83e45b2d1e443c08c74], 
PUP.Optional.Crossbrowse.C, C:\Windows\Tasks\Crossbrowse.job, In Quarantäne, [0bea87e1860449ed1ddb7c39946fdb25], 
PUP.Optional.Clara.A, C:\claraInstaller.txt, In Quarantäne, [4aab8edafc8ed165c90f6e487192639d], 
PUP.Optional.Patsearch.A, C:\Windows\patsearch.bin, In Quarantäne, [27ce5018e2a8c274d66ae6de16ed2ed2], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\uninstall.exe, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowserAction.dll, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\conf, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ffsearch_toolbar!1.0.0.1025.xpi, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\install.data, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\searchProvider.xml, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about_bk.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn_apply.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\close.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf.xml, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf_back.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\input_bk.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\logo.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\main.xml, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_1.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_2.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\rigth_arrow.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\settings.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\data.html, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE.html, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE8.html, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\main.css, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\ver.txt, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\google_trends.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon128.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon16.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon48.png, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\loading.gif, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\logo32.ico, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\common.js, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ga.js, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery-1.11.0.min.js, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.autocomplete.js, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\js.js, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\library.js, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit-ie8.js, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit2.0.js, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW\messages.json, In Quarantäne, [25d02642117988ae15e7bf06a55eaf51], 
PUP.Optional.SpeedChecker.A, C:\Windows\Tasks\SpeedChecker Update.job, In Quarantäne, [9a5b96d2f89251e5cd663f98bf44ba46], 
PUP.Optional.SpeedChecker.A, C:\Windows\System32\Tasks\SpeedChecker Update, In Quarantäne, [a25325437a10ed4975bf726511f21de3], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6, In Quarantäne, [a550284005850531a7f1a240c73c0ef2], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-7, In Quarantäne, [6d885414e2a86fc70395fce60df62cd4], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-10_user, In Quarantäne, [2acb0464d9b18caa08905c8628db3ec2], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-3, In Quarantäne, [6f866602d0ba51e5aaee4e9420e35aa6], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5, In Quarantäne, [787dd692068462d463354a9835ce9e62], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5_user, In Quarantäne, [2ec76bfdcebc082e2375fbe728dbd030], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6, In Quarantäne, [c3320464ec9ea492d7c133af867de719], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-7, In Quarantäne, [23d23335503a42f450488c56c93a22de], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-10_user, In Quarantäne, [2dc8d494bcce57df1583c31fed169d63], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5, In Quarantäne, [698c4f197317221421771fc335ce728e], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5_user, In Quarantäne, [678e670135550234009820c2659e43bd], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-6, In Quarantäne, [5b9a84e4454523137d1bd80ab94ad729], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-7, In Quarantäne, [40b55018bfcbd95da1f7ecf65ca76799], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-10_user, In Quarantäne, [17deb1b7aae03402f0a8984a83808b75], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-3, In Quarantäne, [37be02665c2eda5cc4d47c6616ed1ce4], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5, In Quarantäne, [37be89dfb1d9c86e8b0d548ee61d01ff], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5_user, In Quarantäne, [51a4ff69b7d33600dfb9845ee12241bf], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-6, In Quarantäne, [a0557aeecebcfe38395fb82ae122ec14], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-7, In Quarantäne, [639298d0a7e35bdbe1b740a22fd427d9], 
Trojan.FakeAlert, C:\Users\Papa\AppData\Roaming\UKMQ.exe, In Quarantäne, [d81d76f2711910267e73150c46be6997], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-6.job, In Quarantäne, [12e35b0ddfaba78f7a848eaeb451bf41], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-1-7.job, In Quarantäne, [a25348201d6d2b0b718db68645c0e818], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-10_user.job, In Quarantäne, [48adb6b268222412847a73c99c69956b], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-3.job, In Quarantäne, [e31289df3258a78ff30b45f7ec19f808], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5.job, In Quarantäne, [0beae0889cee24120ef06dcf0203d12f], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-5_user.job, In Quarantäne, [16df2147bad00b2bf509dc6031d46997], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-6.job, In Quarantäne, [ca2b80e85c2ec571a6583a020df818e8], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\4459d1dd-1226-4bd6-8cf9-4d48886e16af-7.job, In Quarantäne, [0bea333526642e083ac458e4bb4a5ca4], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-10_user.job, In Quarantäne, [d61f7bed8dfdf83e1ce246f61bea0df3], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5.job, In Quarantäne, [b4419ace474341f509f55ae25fa643bd], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\da51e4e2-f70f-47a0-870d-5256737b2942-5_user.job, In Quarantäne, [847130381a701f179d61b587749149b7], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-6.job, In Quarantäne, [b144bcac5c2e6acc639b7ac2c73eed13], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-1-7.job, In Quarantäne, [a451aebad0bae650b64889b3f80dcd33], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-10_user.job, In Quarantäne, [876e0a5e008afa3cbc42300c54b108f8], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-3.job, In Quarantäne, [cc29432587039b9b16e86ecea65f22de], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5.job, In Quarantäne, [39bc7debf397ea4c4bb388b4fe076f91], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-5_user.job, In Quarantäne, [63922543dbaf78bee9157bc14fb6d52b], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-6.job, In Quarantäne, [b2434d1b305ae05643bb1a2242c309f7], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\f0928adc-c38e-4022-b4c8-849d295f34fa-7.job, In Quarantäne, [e70e5513d6b462d4bc4261db20e5b050], 
PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job, In Quarantäne, [6d88a9bf256542f457b68ab38481a858], 
PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore, In Quarantäne, [3bba02664545e353cc4290adad5805fb], 
PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job, In Quarantäne, [49ac2a3e88026ccaa966ea53dc2905fb], 
PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA, In Quarantäne, [9e576efa7911989e6ca4cf6e2cd92ad6], 
PUP.Optional.Score.A, C:\Windows\rcore.exe, In Quarantäne, [26cffc6c9ded39fd5a54f151fa0bf10f], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, In Quarantäne, [08ed0365b3d76ec823996e2706fdb64a], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545\GoogleCrashHandler.exe, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545\GoogleUpdate.exe, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545\GoogleUpdateBroker.exe, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545\GoogleUpdateHelper.msi, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545\GoogleUpdateOnDemand.exe, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545\goopdate.dll, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545\goopdateres_en.dll, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545\npGoogleUpdate4.dll, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545\psmachine.dll, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.269545\psuser.dll, In Quarantäne, [2fc6e0884a40b383e71f9cfbfc0702fe], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199\GoogleCrashHandler.exe, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199\GoogleUpdate.exe, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199\GoogleUpdateBroker.exe, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199\GoogleUpdateHelper.msi, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199\GoogleUpdateOnDemand.exe, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199\goopdate.dll, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199\goopdateres_en.dll, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199\npGoogleUpdate4.dll, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199\psmachine.dll, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.315199\psuser.dll, In Quarantäne, [02f35d0b52382b0b7d890c8be51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512\GoogleCrashHandler.exe, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512\GoogleUpdate.exe, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512\GoogleUpdateBroker.exe, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512\GoogleUpdateHelper.msi, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512\GoogleUpdateOnDemand.exe, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512\goopdate.dll, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512\goopdateres_en.dll, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512\npGoogleUpdate4.dll, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512\psmachine.dll, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\Papa\AppData\Local\Temp\comh.322512\psuser.dll, In Quarantäne, [8c69e484f09a72c440c636619e6515eb], 
PUP.Optional.ICinema.A, C:\Program Files (x86)\I - Cinema\61fdffa4-470e-4426-903e-d405595251e5.dll, In Quarantäne, [ab4a55133a50102652b99a0113f0b44c], 
PUP.Optional.ICinema.A, C:\Program Files (x86)\I - Cinema\7e8c1615-5913-4505-b5b9-e7d36f08c5f6.crx, In Quarantäne, [ab4a55133a50102652b99a0113f0b44c], 
PUP.Optional.ICinema.A, C:\Program Files (x86)\I - Cinema\bgNova.html, In Quarantäne, [ab4a55133a50102652b99a0113f0b44c], 
PUP.Optional.ICinema.A, C:\Program Files (x86)\I - Cinema\Uninstall.exe, In Quarantäne, [ab4a55133a50102652b99a0113f0b44c], 
PUP.Optional.PriceFountain.A, C:\Users\Papa\AppData\Local\PriceFountain\logs\installation.log, In Quarantäne, [956077f1b2d8989e5da497074ab9d030], 
PUP.Optional.Clara.A, C:\Program Files (x86)\Common Files\ClaraUpdater\ClaraUpdater.exe, In Quarantäne, [04f14a1ec5c57fb7fd344c548b78f30d], 
PUP.Optional.Vosteran.A, C:\Users\Papa\AppData\Local\Vosteran\astcnfg.dat, In Quarantäne, [668fec7cdeac3bfb8c6b7e27f90a9070], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\background.html, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\chromeCoreFilesIndex.txt, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\manifest.json, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\popup.html, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\Settings.json, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\manifest.xml, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins.json, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\102.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\13.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\14.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\17.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\180.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\19.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\192.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\195.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\200.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\220.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\223.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\246.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\253.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\273.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\281.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\288.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\289.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\334.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\337.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\339.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\345.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\354.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\376.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\378.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\380.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\390.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\391.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\4.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\47.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\64.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\7.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\78.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\80.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\9.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\91.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\93.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\plugins\97.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\userCode\background.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\extensionData\userCode\extension.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\icons\icon128.png, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\icons\icon16.png, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\icons\icon48.png, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\icons\actions\1.png, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\21bc18831e01fc5deb69318a841b4822.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\d2996f06545bf504334904fa1fa66839.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\main.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\api\2d44f04895161ee7199eed312b759c7c.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\api\400fd51fceef58f1f2d0af521783bf0e.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\api\60173cd27c43e1a0258cb20e59f29a17.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\api\8a06eefb0f473b0ef6cc5cdb80e334ad.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\api\8fc7927a99a00d7cd0875a4ee7c0d54e.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\api\pageAction.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\9debe1cdd3afbe40568590368a67a22c.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\21a912a89801683a72cef982725f313c.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\3556bb5a67d2264d9d0545bdbec60f33.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\381397ffa3559539dec2f7f901fcae93.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\462ddbdddbc1bde201f83294eb78c346.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\78c5202e13cc0c3604e9e39c90570238.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\7cdbb9a2b526c514ccb14c89a9d9fd44.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\991a88324bd8cb6a98dfdfb4272e3a23.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\9c157a5f44df2b643eb8bf113336a9f1.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\a367069ce5abb377ad50b510f492e63e.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\ab1d2596215861753f7b431ea6dbca43.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\app_api.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\b25ba90354a6f73076486ae2c6c05ee5.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\de0db93c304e1774aa77d59f53dd4eea.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\fb8d8c50bc215fe5533301afacb69a50.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\installer.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\popupResource\newPopup.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dimfohdigjaffdaanhmbocfkpolglnjk\1.26.125_0\js\lib\popupResource\popup.js, In Quarantäne, [64916305afdb3cfab9c6ccde4ab9ca36], 
PUP.Optional.UnicoBrowser.A, C:\Users\Papa\AppData\Local\UnicoBrowser\User Data\Local State, In Quarantäne, [2dc8a0c80981072ff4354c688e75ef11], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Papa\AppData\Local\com\MixVideoPlayer.exe_Url_0uxwaewrhelcgghll0o5cintgfcbqdxr\1.0.0.10\user.config, In Quarantäne, [bc3995d3a6e42a0c2b80c2f261a255ab], 
PUP.Optional.IStartSurf.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences, Gut: (), Schlecht: (   "homepage" : "hxxp://www.istartsurf.com/?type=hp&ts=1428043665&from=tugs&uid=ST1000DM003-9YN162_Z1D1T2PPXXXXZ1D1T2PP",), Ersetzt,[bc392642bbcf32046fb7f63fed195fa1]
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\18d774a9e1de68a7dd5379ed30f2f5df.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\28e546238b5a73889aac1d1563afe77b.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\main.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\api\81c0f19d56c639494dda2d42aa0cc5b2.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\api\885065547ac5a94019f943b85fc72b9a.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\api\bb71e3129104f19e6e61eb3c1ceff731.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\api\f6f0fc24dce92c4ccb73146dd03bfc38.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\api\fcfcc72c660ee49f48e912f7abac6ca9.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\api\pageAction.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\a108a38f9df4d9876095aa55c4c9f8fd.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\037b29895b8319be554bb6318cf4036d.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\19964400dec2d51de12aa0591d319e49.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\605ac08463816176c756643d834efdb2.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\6ca86016d594553137262278b5310a3c.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\83eb5120891314f7466c1c3c128118c6.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\88da614abaeb17dafe1a119f40ed7851.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\8cfe837eb000a8f8779e0605f2637aef.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\99920a993c91bb2d41feaab0a6c34f06.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\afb152c007142e9908df075cb88a3368.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\app_api.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\c705107e7b195353f4807a70f4f5091b.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\cc06995f9df97d51fa7948ff540da284.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\ec3bec2416bfe2a239414863d673152d.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\f8519bb1d11a675ddeaf48a21b02be84.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\installer.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\popupResource\newPopup.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\js\lib\popupResource\popup.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\background.html, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\chromeCoreFilesIndex.txt, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\manifest.json, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\popup.html, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\Settings.json, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\manifest.xml, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins.json, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\102.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\13.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\14.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\17.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\180.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\184.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\19.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\192.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\195.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\200.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\220.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\221.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\223.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\242.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\246.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\253.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\273.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\281.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\288.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\339.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\345.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\354.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\376.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\380.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\390.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\391.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\4.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\47.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\64.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\7.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\78.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\80.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\9.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\91.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\plugins\97.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\userCode\background.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\extensionData\userCode\extension.js, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\icons\icon128.png, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\icons\icon16.png, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\icons\icon48.png, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 
PUP.Optional.CrossRider.A, C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac\1.26.57_0\icons\actions\1.png, In Quarantäne, [11e464042664ca6c85ef50e2986eaa56], 

Physische Sektoren: 0
(Keine schädliche Elemente gefunden)


(end)
         

Und hier AdwCleaner[S5].txt:

Code:
ATTFilter
# AdwCleaner v4.200 - Bericht erstellt 05/04/2015 um 10:12:39
# Aktualisiert 29/03/2015 von Xplode
# Datenbank : 2015-03-29.1 [Server]
# Betriebssystem : Windows 8.1  (x64)
# Benutzername : Papa - SIEMI
# Gestarted von : C:\Users\Papa\Desktop\AdwCleaner_4.200.exe
# Option : Löschen

***** [ Dienste ] *****

[#] Dienst Gelöscht : globalUpdate
[#] Dienst Gelöscht : globalUpdatem
[#] Dienst Gelöscht : 542bb8ed
[#] Dienst Gelöscht : cae99edb

***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ZombieInvasion
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Optimizer
Ordner Gelöscht : C:\Program Files (x86)\predm
Ordner Gelöscht : C:\Program Files (x86)\Super Optimizer
Ordner Gelöscht : C:\Program Files (x86)\MixVideoPlayer
Ordner Gelöscht : C:\Users\Papa\SupTab
Ordner Gelöscht : C:\Users\Papa\AppData\Local\globalUpdate
Ordner Gelöscht : C:\Users\Papa\AppData\Local\MixVideoPlayer
Ordner Gelöscht : C:\Users\Papa\AppData\Roaming\Optimizer Pro
Ordner Gelöscht : C:\Users\Papa\AppData\Roaming\WebExtend
Ordner Gelöscht : C:\Users\Papa\AppData\Roaming\Super Optimizer
Ordner Gelöscht : C:\Users\Papa\Documents\Optimizer Pro
Ordner Gelöscht : C:\Users\Papa\Documents\Super Optimizer
Datei Gelöscht : C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_oilkkkefbalmbfppgjmgjoefbclebkce_0.localstorage
Datei Gelöscht : C:\WINDOWS\efix.ini
Datei Gelöscht : C:\WINDOWS\Reimage.ini

***** [ Geplante Tasks ] *****

Task Gelöscht : DSite
Task Gelöscht : LaunchSignup
Task Gelöscht : Optimizer Pro Schedule
Task Gelöscht : Super Optimizer Schedule

***** [ Verknüpfungen ] *****

Verknüpfung Desinfiziert : C:\Users\Public\Desktop\Star Wars - The Old Republic.lnk
Verknüpfung Desinfiziert : C:\Users\Papa\Desktop\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA\BioWare\Star Wars - The Old Republic\Star Wars - The Old Republic.lnk
Verknüpfung Desinfiziert : C:\Users\Papa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\Users\Papa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Verknüpfung Desinfiziert : C:\Users\Papa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk

***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
Schlüssel Gelöscht : HKLM\SOFTWARE\7e8c1615-5913-4505-b5b9-e7d36f08c5f6
Schlüssel Gelöscht : HKLM\SOFTWARE\a123302f-a94f-4ce2-bdbe-9dcc20230b0d
Schlüssel Gelöscht : HKLM\SOFTWARE\d2af1f89-2b3c-1965-5b98-b03945fb696e
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Schlüssel Gelöscht : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Schlüssel Gelöscht : HKCU\Software\APN PIP
Schlüssel Gelöscht : HKCU\Software\GlobalUpdate
Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\Optimizer Pro
Schlüssel Gelöscht : HKCU\Software\simplytech
Schlüssel Gelöscht : HKCU\Software\Wnkey
Schlüssel Gelöscht : HKCU\Software\Super Optimizer
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gelöscht : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Schlüssel Gelöscht : HKLM\SOFTWARE\AskPartnerNetwork
Schlüssel Gelöscht : HKLM\SOFTWARE\Conduit
Schlüssel Gelöscht : HKLM\SOFTWARE\GlobalUpdate
Schlüssel Gelöscht : HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gelöscht : HKLM\SOFTWARE\SearchProtect
Schlüssel Gelöscht : HKLM\SOFTWARE\SupDp
Schlüssel Gelöscht : HKLM\SOFTWARE\Clara
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\eFix
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\bobrowser.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\istartsurf.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\plarium.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\softonic.de
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\tikotin.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\vosteran.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.istartsurf.com

***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Google Chrome v41.0.2272.118

[C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://vosteran.com/results.php?f=4&q={searchTerms}&a=vst_ir_15_03_other&cd=2XzuyEtN2Y1L1Qzu0EzzyEtD0FtB0E0B0AtBtA0BtAtDyCyDtN0D0Tzu0StCtCtCtBtN1L2XzutAtFyBtFtBtFtCtN1L1CzutCyEtBzytDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0F0D0EtCzy0AtAtGyCtAyD0DtG0CyE0DyEtGtB0E0ByCtGtC0D0AyEtDyD0BtC0CzyyCyC2QtN1M1F1B2Z1V1N2Y1L1Qzu2StDyDzzyCzyzzyDzytGtA0F0B0BtGyEyBtAtAtGzzzz0EyEtGyC0B0BtDyDtA0EtCzy0C0AyB2Q&cr=2004577484&ir=

*************************

AdwCleaner[R16].txt - [12704 Bytes] - [05/04/2015 10:09:20]
AdwCleaner[S5].txt - [12192 Bytes] - [05/04/2015 10:12:39]

########## EOF - C:\AdwCleaner\AdwCleaner[S5].txt - [12252  Bytes] ##########
         

Und hier die JRT.txt:

Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.5.1 (04.02.2015:1)
OS: Windows 8.1 x64
Ran by Papa on 05.04.2015 at 10:23:37,82
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}



~~~ Files

Successfully deleted: [File] "C:\WINDOWS\wininit.ini"



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 05.04.2015 at 10:25:30,01
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         

Alt 05.04.2015, 09:48   #9
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



FRST muss ich wohl zippen (bekomme die Datei nicht in fünf bis sechs Teile gehackt). Ok es hat mir wieder den Windoof-Start-Button zerschlagen, der wird immer als Adware erkannt und gelöscht.


Hier die additional.txt:

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
Ran by Papa at 2015-04-05 10:33:38
Running from C:\Users\Papa\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3003 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3007 - Acer Incorporated)
Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Brick-Force (HKLM-x32\...\{9853ABB2-6416-4C87-8650-DD8E528FF564}}_is1) (Version: 4.3.383.130.19 - Infernum Productions AG)
Cisco AnyConnect VPN Client (HKLM-x32\...\{E6BF9670-C9E9-461A-9B14-B5ADAC3176CF}) (Version: 2.5.2019 - Cisco Systems, Inc.)
Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft)
Drome Racers (HKLM-x32\...\{EC1DCD6C-3AE0-42CE-8EAA-6886CC4400DC}) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.118 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3002 - Acer Incorporated)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 17.2 - Intel)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.0.1207 - Intel Corporation)
Java 8 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3002 - Acer Incorporated)
Malwarebytes Anti-Malware Version 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation)
Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Nero 12 Essentials OEM.a01 (HKLM-x32\...\{9BF0D9FE-9893-4647-81B9-17B7BEA4E6FD}) (Version: 12.5.00000 - Nero AG)
NVIDIA 3D Vision Controller-Treiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 331.82 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.82 - NVIDIA Corporation)
NVIDIA Grafiktreiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.82 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation)
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.01.3102 - Acer)
Origin (HKLM-x32\...\Origin) (Version: 9.5.2.2829 - Electronic Arts, Inc.)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Prerequisite installer (x32 Version: 12.0.0002 - Nero AG) Hidden
PVZ Garden Warfare (HKLM-x32\...\{A5AC7D7B-C1D5-4AF9-8829-993DA335BE1B}) (Version: 1.0.3.0 - Electronic Arts)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6680 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.2.8400.30137 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Star Stable (HKLM-x32\...\{2B03B553-4983-4005-99C4-31DFC25B4BB9}) (Version: 1.00.0000 - Star Stable Entertainment AB)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Unity Web Player (HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version:  - Wargaming.net)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

12-03-2015 20:09:38 Windows Update
22-03-2015 20:40:45 Geplanter Prüfpunkt
01-04-2015 21:10:35 Geplanter Prüfpunkt
03-04-2015 22:14:45 Revo Uninstaller's restore point - GamesDesktop 014.370

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-07-26 07:26 - 2014-05-01 19:46 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {169E7D4C-9B62-471E-A6E0-1896DA8F5C67} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-10] (Google Inc.)
Task: {4D71A514-B484-46C4-97D6-D0B5900DD876} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-03-12] (Microsoft Corporation)
Task: {73D6427C-20AE-47BF-A559-2698DE196476} - System32\Tasks\Run_Browser => C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe
Task: {766EC406-87A9-4CFF-8259-E3813CB885CD} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2012-06-22] ()
Task: {9069BB25-6919-43AA-9D8D-7D9FC061097E} - System32\Tasks\{1E51FD01-A2ED-4A70-88D4-C3CDDC890D40} => pcalua.exe -a C:\Users\Papa\AppData\Roaming\istartsurf\UninstallManager.exe -c  -ptid=tugs
Task: {999CFA49-CCD8-47F8-9183-5E414AACC4AF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {9AAE1503-6F9D-46EC-886D-3E9E92D61EBB} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2012-07-13] ()
Task: {A7DA5C19-623E-4313-8454-D1210DEE48FC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-10] (Google Inc.)
Task: {B2A74869-CF0B-4D9D-80EF-F95F24E024AD} - System32\Tasks\UKMQ => C:\Users\Papa\AppData\Roaming\UKMQ.exe <==== ATTENTION
Task: {B5CA629E-6C04-4819-8836-D7F85BECECEC} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-08-01] (Acer Incorporated)
Task: {F0F128AD-D5CD-471B-99C7-D5CD96704918} - System32\Tasks\FQZJTD => C:\Users\Papa\AppData\Roaming\FQZJTD.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\FQZJTD.job => C:\Users\Papa\AppData\Roaming\FQZJTD.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\UKMQ.job => C:\Users\Papa\AppData\Roaming\UKMQ.exe <==== ATTENTION

==================== Loaded Modules (whitelisted) ==============

2014-05-12 23:46 - 2013-11-11 17:02 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-09-14 20:48 - 2012-07-18 05:55 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\Papa\OneDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-768443793-1239807132-3807941381-1002\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.2.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run32: => "Norton Online Backup"
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\StartupApproved\Run: => "BrowserChoice"
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_3EE152C3A41C14EFE84949DBE7D94868"

==================== Accounts: =============================

Administrator (S-1-5-21-768443793-1239807132-3807941381-500 - Administrator - Disabled)
Gast (S-1-5-21-768443793-1239807132-3807941381-501 - Limited - Disabled)
Papa (S-1-5-21-768443793-1239807132-3807941381-1002 - Administrator - Enabled) => C:\Users\Papa

==================== Faulty Device Manager Devices =============

Name: Cisco AnyConnect VPN Virtual Miniport Adapter for Windows x64
Description: Cisco AnyConnect VPN Virtual Miniport Adapter for Windows x64
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Cisco Systems
Service: vpnva
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================

System errors:
=============

Microsoft Office Sessions:
=========================

==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-3330 CPU @ 3.00GHz
Percentage of memory in use: 16%
Total physical RAM: 8134.01 MB
Available physical RAM: 6795.42 MB
Total Pagefile: 9414.01 MB
Available Pagefile: 7910.52 MB
Total Virtual: 131072 MB
Available Virtual: 131071.82 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:455.66 GB) (Free:315.57 GB) NTFS
Drive d: (DATA) (Fixed) (Total:456.61 GB) (Free:437.3 GB) NTFS
Drive j: (DROME RACERS) (CDROM) (Total:0.57 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 8BAE7700)

Partition: GPT Partition Type.

==================== End Of Log ============================
         

Alt 05.04.2015, 09:58   #10
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



So und nun FRST.txt leider als Anhang (da ich beim Teilen in Einzelstücke immer wieder in den Zeilen verrutsche - sorry ich hoffe das ist ok):

Alt 05.04.2015, 10:04   #11
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



Oh nach dem Neustart war der Windoof-Startbutton (Classic Shell) wieder zu sehen. Taskmanager bemüht, Startseite Inet gecheckt - sieht alles i.O. aus.



Was sagst Du? Kann man das System wieder in (vertrauensvolle) Kinderhände geben?

Danke und liebe Grüße

Aaron666

Alt 05.04.2015, 16:47   #12
schrauber
/// the machine
/// TB-Ausbilder
 

Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



Hi,

Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen.
Ich kann auf Arbeit keine Anhänge öffnen, danke.

So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.



Noch Kontrollscans:



ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 05.04.2015, 22:13   #13
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



Ok, hier die Eset-log.txt. Einige Toolbars haben offenbar überlebt - da ich aber lt. Häkchen-Einstellungen die Dateien nicht gleich entfernen ließ, sind sie noch drauf oder?

Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=09340e7865fcb4439dadaab9167d943e
# engine=20211
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-04-05 08:09:59
# local_time=2015-04-05 10:09:59 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT 
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 16501 5346991 0 0
# scanned=279067
# found=7
# cleaned=0
# scan_time=9480
sh=182109D2C4916249F9D60AB9C30BF70A2061490E ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Papa\AppData\Local\Temp\4623.tmp"
sh=182109D2C4916249F9D60AB9C30BF70A2061490E ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Papa\AppData\Local\Temp\50C9.tmp"
sh=182109D2C4916249F9D60AB9C30BF70A2061490E ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Papa\AppData\Local\Temp\8867.tmp"
sh=182109D2C4916249F9D60AB9C30BF70A2061490E ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Papa\AppData\Local\Temp\9029.tmp"
sh=182109D2C4916249F9D60AB9C30BF70A2061490E ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Papa\AppData\Local\Temp\C32.tmp"
sh=182109D2C4916249F9D60AB9C30BF70A2061490E ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Papa\AppData\Local\Temp\DD00.tmp"
sh=04B71EB467661EF00CF9B339CE7ECF7A2112058D ft=1 fh=d519d57b033bea82 vn="Mehrere Bedrohungen" ac=I fn="C:\Users\Papa\AppData\Local\Temp\supoptsetup.exe"
         

Und hier die Checkup.txt:

Code:
ATTFilter
 Results of screen317's Security Check version 0.99.99  
   x64 (UAC is enabled)  
 Internet Explorer 11  
``````````````Antivirus/Firewall Check:`````````````` 
Windows Defender   
 WMI entry may not exist for antivirus; attempting automatic update. 
`````````Anti-malware/Other Utilities Check:````````` 
 Java 8 Update 31  
 Java version 32-bit out of Date! 
 Adobe Reader XI  
 Google Chrome (41.0.2272.101) 
 Google Chrome (41.0.2272.118) 
````````Process Check: objlist.exe by Laurent````````  
 Windows Defender MSMpEng.exe 
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C:  % 
````````````````````End of Log``````````````````````
         
Addition.txt:

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
Ran by Papa at 2015-04-05 23:20:21
Running from C:\Users\Papa\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3003 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3007 - Acer Incorporated)
Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Brick-Force (HKLM-x32\...\{9853ABB2-6416-4C87-8650-DD8E528FF564}}_is1) (Version: 4.3.383.130.19 - Infernum Productions AG)
Cisco AnyConnect VPN Client (HKLM-x32\...\{E6BF9670-C9E9-461A-9B14-B5ADAC3176CF}) (Version: 2.5.2019 - Cisco Systems, Inc.)
Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft)
Drome Racers (HKLM-x32\...\{EC1DCD6C-3AE0-42CE-8EAA-6886CC4400DC}) (Version:  - )
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.118 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3002 - Acer Incorporated)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 17.2 - Intel)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.0.1207 - Intel Corporation)
Java 8 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3002 - Acer Incorporated)
Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Nero 12 Essentials OEM.a01 (HKLM-x32\...\{9BF0D9FE-9893-4647-81B9-17B7BEA4E6FD}) (Version: 12.5.00000 - Nero AG)
NVIDIA 3D Vision Controller-Treiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 331.82 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.82 - NVIDIA Corporation)
NVIDIA Grafiktreiber 331.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.82 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation)
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.01.3102 - Acer)
Origin (HKLM-x32\...\Origin) (Version: 9.5.2.2829 - Electronic Arts, Inc.)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
Prerequisite installer (x32 Version: 12.0.0002 - Nero AG) Hidden
PVZ Garden Warfare (HKLM-x32\...\{A5AC7D7B-C1D5-4AF9-8829-993DA335BE1B}) (Version: 1.0.3.0 - Electronic Arts)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6680 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.2.8400.30137 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.86.0859 - Electronic Arts)
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Star Stable (HKLM-x32\...\{2B03B553-4983-4005-99C4-31DFC25B4BB9}) (Version: 1.00.0000 - Star Stable Entertainment AB)
Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.)
Unity Web Player (HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version:  - Wargaming.net)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

22-03-2015 20:40:45 Geplanter Prüfpunkt
01-04-2015 21:10:35 Geplanter Prüfpunkt
03-04-2015 22:14:45 Revo Uninstaller's restore point - GamesDesktop 014.370

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2012-07-26 07:26 - 2014-05-01 19:46 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0DE7758C-C664-4186-BC13-3483B9FD6A50} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-24] (Microsoft Corporation)
Task: {169E7D4C-9B62-471E-A6E0-1896DA8F5C67} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-10] (Google Inc.)
Task: {40BCE9E6-2047-43BF-A78B-215B3509774F} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {4F1A03BE-5C81-474C-B0B9-FCA60971512B} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {73D6427C-20AE-47BF-A559-2698DE196476} - System32\Tasks\Run_Browser => C:\Users\Papa\AppData\Local\UnicoBrowser\Application\unicobrowser.exe
Task: {766EC406-87A9-4CFF-8259-E3813CB885CD} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2012-06-22] ()
Task: {9069BB25-6919-43AA-9D8D-7D9FC061097E} - System32\Tasks\{1E51FD01-A2ED-4A70-88D4-C3CDDC890D40} => pcalua.exe -a C:\Users\Papa\AppData\Roaming\istartsurf\UninstallManager.exe -c  -ptid=tugs
Task: {999CFA49-CCD8-47F8-9183-5E414AACC4AF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {9AAE1503-6F9D-46EC-886D-3E9E92D61EBB} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2012-07-13] ()
Task: {A1373240-27A9-48CC-8C7F-DC367FEB9BA1} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {A7DA5C19-623E-4313-8454-D1210DEE48FC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-10] (Google Inc.)
Task: {B2A74869-CF0B-4D9D-80EF-F95F24E024AD} - System32\Tasks\UKMQ => C:\Users\Papa\AppData\Roaming\UKMQ.exe <==== ATTENTION
Task: {B5CA629E-6C04-4819-8836-D7F85BECECEC} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-08-01] (Acer Incorporated)
Task: {F0F128AD-D5CD-471B-99C7-D5CD96704918} - System32\Tasks\FQZJTD => C:\Users\Papa\AppData\Roaming\FQZJTD.exe <==== ATTENTION
Task: {FF506529-C02D-460A-8589-A078625C546B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-03-12] (Microsoft Corporation)
Task: C:\WINDOWS\Tasks\FQZJTD.job => C:\Users\Papa\AppData\Roaming\FQZJTD.exe <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\UKMQ.job => C:\Users\Papa\AppData\Roaming\UKMQ.exe <==== ATTENTION

==================== Loaded Modules (whitelisted) ==============

2014-05-12 23:46 - 2013-11-11 17:02 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-09-14 20:48 - 2012-07-18 05:55 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\Users\Papa\OneDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-768443793-1239807132-3807941381-1002\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.2.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run32: => "Norton Online Backup"
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\StartupApproved\Run: => "BrowserChoice"
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_3EE152C3A41C14EFE84949DBE7D94868"

==================== Accounts: =============================

Administrator (S-1-5-21-768443793-1239807132-3807941381-500 - Administrator - Disabled)
Gast (S-1-5-21-768443793-1239807132-3807941381-501 - Limited - Disabled)
Papa (S-1-5-21-768443793-1239807132-3807941381-1002 - Administrator - Enabled) => C:\Users\Papa

==================== Faulty Device Manager Devices =============

Name: Cisco AnyConnect VPN Virtual Miniport Adapter for Windows x64
Description: Cisco AnyConnect VPN Virtual Miniport Adapter for Windows x64
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Cisco Systems
Service: vpnva
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/05/2015 11:14:10 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.

Error: (04/05/2015 11:14:08 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.

Error: (04/05/2015 11:10:32 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.

Error: (04/05/2015 07:26:42 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.

Error: (04/05/2015 07:26:30 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.

Error: (04/05/2015 07:26:05 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.

Error: (04/05/2015 07:23:00 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" in Zeile C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.


System errors:
=============
Error: (04/05/2015 10:10:50 PM) (Source: DCOM) (EventID: 10010) (User: Siemi)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (04/05/2015 07:21:17 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 10. Der Windows-SChannel-Fehlerstatus lautet: 10.

Error: (04/05/2015 07:21:17 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 10. Der Windows-SChannel-Fehlerstatus lautet: 10.

Error: (04/05/2015 07:21:17 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 10. Der Windows-SChannel-Fehlerstatus lautet: 10.

Error: (04/05/2015 10:51:44 AM) (Source: DCOM) (EventID: 10010) (User: Siemi)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}

Error: (04/05/2015 10:51:14 AM) (Source: DCOM) (EventID: 10010) (User: Siemi)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}

Error: (04/05/2015 10:50:44 AM) (Source: DCOM) (EventID: 10010) (User: Siemi)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}

Error: (04/05/2015 10:50:39 AM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}

Error: (04/05/2015 10:50:14 AM) (Source: DCOM) (EventID: 10010) (User: Siemi)
Description: {9AA46009-3CE0-458A-A354-715610A075E6}

Error: (04/05/2015 10:50:09 AM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}


Microsoft Office Sessions:
=========================
Error: (04/05/2015 11:14:10 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Users\Papa\Desktop\esetsmartinstaller_deu.exe

Error: (04/05/2015 11:14:08 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Users\Papa\Desktop\esetsmartinstaller_deu.exe

Error: (04/05/2015 11:10:32 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe

Error: (04/05/2015 07:26:42 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Users\Papa\Desktop\esetsmartinstaller_deu.exe

Error: (04/05/2015 07:26:30 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Users\Papa\Desktop\esetsmartinstaller_deu.exe

Error: (04/05/2015 07:26:05 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Users\Papa\Desktop\esetsmartinstaller_deu.exe

Error: (04/05/2015 07:23:00 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Users\Papa\Desktop\esetsmartinstaller_deu.exe


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-3330 CPU @ 3.00GHz
Percentage of memory in use: 20%
Total physical RAM: 8134.01 MB
Available physical RAM: 6428.55 MB
Total Pagefile: 9414.01 MB
Available Pagefile: 7592.33 MB
Total Virtual: 131072 MB
Available Virtual: 131071.82 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:455.66 GB) (Free:317.68 GB) NTFS
Drive d: (DATA) (Fixed) (Total:456.61 GB) (Free:437.3 GB) NTFS
Drive j: (DROME RACERS) (CDROM) (Total:0.57 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 8BAE7700)

Partition: GPT Partition Type.

==================== End Of Log ============================
         

Geändert von Aaron666 (05.04.2015 um 22:21 Uhr)

Alt 05.04.2015, 22:24   #14
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



FRST-Log Teil 1:

Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Papa (administrator) on SIEMI on 05-04-2015 23:19:19
Running from C:\Users\Papa\Desktop
Loaded Profiles: Papa (Available profiles: Papa)
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12921488 2012-07-02] (Realtek Semiconductor)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft)
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\Run: [BrowserChoice] => C:\Windows\BrowserChoice\browserchoice.exe [86816 2013-08-22] (Microsoft Corporation)
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\Policies\Explorer: [HideOneDrive] 1
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\...\MountPoints2: {4875424e-fe99-11e1-be69-806e6f6e6963} - "J:\launcher.exe" 
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-768443793-1239807132-3807941381-1002\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/
URLSearchHook: HKLM-x32 - Default Value = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = 
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-768443793-1239807132-3807941381-1002 -> {643D121D-A3A5-4688-889C-D2D7CF18C4DB} URL = 
SearchScopes: HKU\S-1-5-21-768443793-1239807132-3807941381-1002 -> {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL = 
SearchScopes: HKU\S-1-5-21-768443793-1239807132-3807941381-1002 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = 
BHO: SpeedChecker -> {0E327BD1-35AF-2FEE-918A-3669B9E79A67} -> C:\Program Files (x86)\version91SpeedChecker\191_x64.dll No File
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-24] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-24] (Oracle Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20] (IvoSoft)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-24] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-24] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20] (IvoSoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.25.2 -> C:\WINDOWS\system32\npDeployJava1.dll [2013-07-30] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-24] (Oracle Corporation)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2013-04-02] (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-24] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-11-11] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-11-11] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-12] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-12] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-768443793-1239807132-3807941381-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Papa\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-05-07] (Unity Technologies ApS)

Chrome: 
=======
CHR Profile: C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-10]
CHR Extension: (Google Docs) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-10]
CHR Extension: (Google Drive) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-10]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-01-10]
CHR Extension: (YouTube) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-10]
CHR Extension: (Google Search) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-10]
CHR Extension: (Google Sheets) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-10]
CHR Extension: (No Name) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jecgbfoconhopjngaaijjgffhokohlac [2015-04-03]
CHR Extension: (No Name) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbdalcibdkhieofaaflleeedgdmbjobb [2015-04-03]
CHR Extension: (Google Wallet) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-10]
CHR Extension: (Gmail) - C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-10]
CHR HKU\S-1-5-21-768443793-1239807132-3807941381-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kfecnpmgnlnbmipaogfhoacoioifjgko] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [kfecnpmgnlnbmipaogfhoacoioifjgko] - hxxp://clients2.google.com/service/update2/crx
StartMenuInternet: Google Chrome - Chrome.exe

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [659600 2012-08-01] (Acer Incorporated)
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2451456 2012-07-13] (Realsil Microelectronics Inc.) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-19] (Intel Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910640 2015-03-01] (Electronic Arts)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 e1cexpress; C:\Windows\system32\DRIVERS\e1c63x64.sys [498032 2012-07-12] (Intel Corporation)
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [44296 2015-03-30] (LogMeIn Inc.)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 X6va022; \??\C:\WINDOWS\SysWOW64\Drivers\X6va022 [X]
S3 X6va029; \??\C:\WINDOWS\SysWOW64\Drivers\X6va029 [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-05 23:19 - 2015-04-05 23:19 - 00013513 _____ () C:\Users\Papa\Desktop\FRST.txt
2015-04-05 22:11 - 2015-04-05 22:12 - 00000000 ___SD () C:\WINDOWS\system32\GWX
2015-04-05 22:11 - 2015-04-05 22:11 - 00000000 ___SD () C:\WINDOWS\SysWOW64\GWX
2015-04-05 19:26 - 2015-04-05 19:26 - 00000000 ____D () C:\Program Files (x86)\ESET
2015-04-05 19:23 - 2015-04-05 19:23 - 02095616 _____ (Farbar) C:\Users\Papa\Desktop\FRST64.exe
2015-04-05 19:23 - 2015-04-05 19:23 - 00852607 _____ () C:\Users\Papa\Desktop\SecurityCheck.exe
2015-04-05 19:22 - 2015-04-05 19:22 - 02347384 _____ (ESET) C:\Users\Papa\Desktop\esetsmartinstaller_deu.exe
2015-04-05 10:23 - 2015-04-05 10:23 - 00000207 _____ () C:\WINDOWS\tweaking.com-regbackup-SIEMI-Windows-8.1-(64-bit).dat
2015-04-05 10:23 - 2015-04-05 10:23 - 00000000 ____D () C:\RegBackup
2015-04-05 10:08 - 2015-04-05 10:12 - 00000000 ____D () C:\AdwCleaner
2015-04-03 22:11 - 2015-04-03 23:17 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2015-04-03 20:55 - 2015-04-05 23:19 - 00000000 ____D () C:\FRST
2015-04-03 20:51 - 2015-04-03 20:51 - 00000000 _____ () C:\Users\Papa\defogger_reenable
2015-04-03 20:08 - 2015-04-03 20:08 - 00003138 _____ () C:\WINDOWS\System32\Tasks\{1E51FD01-A2ED-4A70-88D4-C3CDDC890D40}
2015-04-03 09:10 - 2015-04-05 08:55 - 00000004 _____ () C:\WINDOWS\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-04-03 08:55 - 2015-04-05 09:59 - 00000000 ____D () C:\ProgramData\IsWjAIZWh
2015-04-03 08:55 - 2015-04-05 09:58 - 00000000 ____D () C:\ProgramData\{0dbdd2b3-e241-f150-0dbd-dd2b3e244acf}
2015-04-03 08:55 - 2015-04-03 22:39 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.75
2015-04-03 08:50 - 2015-04-05 09:58 - 00000000 ____D () C:\Users\Papa\AppData\Local\com
2015-04-03 08:50 - 2015-04-03 20:18 - 00000000 ___HD () C:\Users\Public\Temp
2015-04-03 08:49 - 2015-04-05 09:58 - 00000000 ____D () C:\Program Files (x86)\4e341855-27c4-4446-8acf-e8e687afd85f
2015-04-03 08:48 - 2015-04-05 21:32 - 00001346 _____ () C:\WINDOWS\Tasks\FQZJTD.job
2015-04-03 08:48 - 2015-04-05 09:58 - 00000000 ____D () C:\Program Files (x86)\aea13faf-c855-4996-a77f-b370b8ad2d29
2015-04-03 08:48 - 2015-04-03 08:48 - 00004344 _____ () C:\WINDOWS\System32\Tasks\FQZJTD
2015-04-03 08:48 - 2015-04-03 08:48 - 00003154 _____ () C:\WINDOWS\System32\Tasks\Run_Browser
2015-04-03 08:48 - 2015-04-03 08:48 - 00000000 ____D () C:\ProgramData\{1d17152d-e9d7-45a6-1d17-7152de9d54b7}
2015-04-03 08:47 - 2015-04-05 17:23 - 00001342 _____ () C:\WINDOWS\Tasks\UKMQ.job
2015-04-03 08:47 - 2015-04-03 08:48 - 00004340 _____ () C:\WINDOWS\System32\Tasks\UKMQ
2015-04-03 08:47 - 2015-04-03 08:47 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\Mozilla
2015-04-02 21:28 - 2015-03-24 20:46 - 00000000 ____D () C:\Users\Papa\Desktop\Tents & camp fires by TheRedEngineer
2015-03-30 15:28 - 2015-03-30 15:28 - 00044296 ____H (LogMeIn Inc.) C:\WINDOWS\system32\Drivers\Hamdrv.sys
2015-03-26 21:14 - 2015-03-26 21:14 - 00005542 _____ () C:\Users\Papa\AppData\Roaming\UKMQ
2015-03-26 21:14 - 2015-03-26 21:14 - 00005542 _____ () C:\Users\Papa\AppData\Roaming\FQZJTD
2015-03-22 10:25 - 2015-03-22 10:25 - 00000000 ____D () C:\ElementalTinkerer
2015-03-22 10:23 - 2015-04-03 18:28 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\.voidswrath
2015-03-22 09:25 - 2015-03-29 12:39 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\.fellowship2.0
2015-03-21 23:03 - 2015-03-29 12:31 - 00000000 ____D () C:\Users\Papa\AppData\Roaming\.dreamcraft
2015-03-12 21:02 - 2015-03-12 21:02 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2015-03-11 19:49 - 2015-03-06 04:53 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-03-11 19:49 - 2015-03-06 04:33 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-03-11 19:49 - 2015-02-26 01:26 - 04178944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-03-11 19:49 - 2015-02-21 03:16 - 25021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-11 19:49 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-03-11 19:49 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-03-11 19:49 - 2015-02-21 02:27 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-03-11 19:49 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-03-11 19:49 - 2015-02-21 01:58 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-03-11 19:49 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-03-11 19:49 - 2015-02-20 05:03 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-03-11 19:49 - 2015-02-20 04:58 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-03-11 19:49 - 2015-02-20 04:49 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-11 19:49 - 2015-02-20 04:48 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-03-11 19:49 - 2015-02-20 04:47 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-03-11 19:49 - 2015-02-20 04:35 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-03-11 19:49 - 2015-02-20 04:34 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2015-03-11 19:49 - 2015-02-20 04:32 - 06035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-11 19:49 - 2015-02-20 04:20 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-03-11 19:49 - 2015-02-20 04:15 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-03-11 19:49 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-03-11 19:49 - 2015-02-20 04:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-03-11 19:49 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2015-03-11 19:49 - 2015-02-20 04:05 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-11 19:49 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-03-11 19:49 - 2015-02-20 03:59 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-03-11 19:49 - 2015-02-20 03:56 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-03-11 19:49 - 2015-02-20 03:52 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-03-11 19:49 - 2015-02-20 03:49 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-03-11 19:49 - 2015-02-20 03:49 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-03-11 19:49 - 2015-02-20 03:46 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-03-11 19:49 - 2015-02-20 03:43 - 14398976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-03-11 19:49 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-03-11 19:49 - 2015-02-20 03:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-03-11 19:49 - 2015-02-20 03:29 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-03-11 19:49 - 2015-02-20 03:28 - 02358784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-11 19:49 - 2015-02-20 03:26 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-03-11 19:49 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-03-11 19:49 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-03-11 19:49 - 2015-02-20 03:16 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-03-11 19:49 - 2015-02-20 03:03 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-03-11 19:49 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-03-11 19:49 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-03-11 19:49 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-03-11 19:49 - 2015-02-12 19:40 - 22291584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-11 19:49 - 2015-02-12 19:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-03-11 19:49 - 2015-02-08 01:57 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-03-11 19:49 - 2015-02-08 01:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2015-03-11 19:49 - 2015-02-06 03:28 - 02257408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-03-11 19:49 - 2015-02-06 03:08 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-03-11 19:49 - 2015-02-04 01:58 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-03-11 19:49 - 2015-02-04 01:58 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-03-11 19:49 - 2015-02-04 01:58 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-03-11 19:49 - 2015-02-03 01:53 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-03-11 19:49 - 2015-02-03 01:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2015-03-11 19:49 - 2015-01-31 01:42 - 03097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-03-11 19:49 - 2015-01-31 01:29 - 02484224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-03-11 19:49 - 2015-01-31 01:20 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-03-11 19:49 - 2015-01-29 20:45 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-03-11 19:49 - 2015-01-29 20:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2015-03-11 19:49 - 2015-01-29 03:58 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
2015-03-11 19:49 - 2015-01-29 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll
2015-03-11 19:49 - 2015-01-29 03:11 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 19:49 - 2015-01-29 03:04 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-03-11 19:49 - 2015-01-29 03:04 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-03-11 19:49 - 2015-01-29 03:00 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-11 19:49 - 2015-01-29 02:59 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-03-11 19:49 - 2015-01-29 02:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-03-11 19:49 - 2015-01-29 02:50 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2015-03-11 19:49 - 2015-01-29 02:49 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-03-11 19:49 - 2015-01-28 17:41 - 07472960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-03-11 19:49 - 2015-01-28 17:41 - 01733440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-03-11 19:49 - 2015-01-28 17:41 - 01498360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-03-11 19:49 - 2015-01-28 04:24 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2015-03-11 19:49 - 2015-01-28 03:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll
2015-03-11 19:49 - 2015-01-28 03:31 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-03-11 19:49 - 2015-01-28 03:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2015-03-11 19:49 - 2015-01-28 01:47 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-03-11 19:49 - 2015-01-28 01:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-03-11 19:49 - 2015-01-27 06:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-03-11 19:49 - 2015-01-27 05:44 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-03-11 19:49 - 2015-01-27 04:11 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-03-11 19:49 - 2015-01-24 03:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
2015-03-11 19:49 - 2015-01-23 09:17 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-03-11 19:49 - 2015-01-23 07:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2015-03-11 19:49 - 2015-01-21 07:54 - 01384712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-03-11 19:49 - 2015-01-21 07:15 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-03-11 19:49 - 2014-10-31 06:50 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe
2015-03-11 19:49 - 2014-10-31 05:30 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2015-03-11 19:49 - 2014-10-31 05:23 - 00733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-03-11 19:49 - 2014-10-31 05:22 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2015-03-11 19:49 - 2014-10-31 05:18 - 04840960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2015-03-11 19:49 - 2014-10-31 05:09 - 01154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2015-03-11 19:49 - 2014-10-31 04:12 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2015-03-11 19:49 - 2014-10-29 05:56 - 00027456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2015-03-11 19:49 - 2014-10-29 04:37 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2015-03-11 19:49 - 2014-10-29 04:34 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSCollect.exe
2015-03-11 19:49 - 2014-10-29 04:34 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2015-03-11 19:49 - 2014-10-29 03:13 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-03-11 19:49 - 2014-10-29 02:55 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-03-11 19:48 - 2015-02-07 01:09 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-03-11 19:48 - 2015-02-05 22:24 - 01113920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-03-11 19:48 - 2015-02-03 02:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2015-03-11 19:48 - 2015-02-03 02:02 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2015-03-11 19:48 - 2015-01-30 05:01 - 00097792 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2015-03-11 19:48 - 2015-01-30 04:03 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2015-03-11 19:48 - 2015-01-30 04:03 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2015-03-11 19:48 - 2015-01-30 04:02 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-03-11 19:48 - 2015-01-30 03:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll
2015-03-11 19:48 - 2015-01-30 03:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll
2015-03-11 19:48 - 2015-01-30 03:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2015-03-11 19:48 - 2015-01-30 03:37 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-03-11 19:48 - 2015-01-30 03:29 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2015-03-11 19:48 - 2015-01-30 03:24 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-03-11 19:48 - 2015-01-30 03:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2015-03-11 19:48 - 2015-01-30 03:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2015-03-11 19:48 - 2015-01-30 03:08 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-03-11 19:48 - 2015-01-30 03:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2015-03-11 19:48 - 2014-12-11 07:36 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2015-03-11 19:48 - 2014-10-29 06:03 - 00116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2015-03-11 19:48 - 2014-10-29 05:59 - 00014144 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\swenum.sys
2015-03-11 19:48 - 2014-10-29 04:45 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2015-03-11 19:48 - 2014-10-29 04:22 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2015-03-11 19:48 - 2014-10-29 04:19 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-03-11 19:48 - 2014-10-29 04:08 - 18822656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-03-11 19:48 - 2014-10-29 04:00 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2015-03-11 19:48 - 2014-10-29 03:45 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-03-11 19:48 - 2014-10-29 03:42 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
2015-03-11 19:48 - 2014-10-29 03:33 - 15157760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-03-11 19:48 - 2014-10-29 03:28 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\atlthunk.dll
2015-03-11 19:48 - 2014-10-29 03:19 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2015-03-11 19:48 - 2014-10-29 03:17 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2015-03-11 19:48 - 2014-10-29 03:10 - 02344960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-03-11 19:48 - 2014-10-29 03:09 - 03557376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-03-11 19:48 - 2014-10-29 02:59 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll
2015-03-11 19:48 - 2014-10-29 02:52 - 15432704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-03-11 19:48 - 2014-10-29 02:51 - 01554432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-03-11 19:47 - 2014-10-29 06:10 - 01816008 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2015-03-11 19:47 - 2014-10-29 06:04 - 00105872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2015-03-11 19:47 - 2014-10-29 06:00 - 02314952 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2015-03-11 19:47 - 2014-10-29 06:00 - 02229168 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-03-11 19:47 - 2014-10-29 06:00 - 01540696 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-03-11 19:47 - 2014-10-29 06:00 - 01385216 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-03-11 19:47 - 2014-10-29 05:59 - 03460472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2015-03-11 19:47 - 2014-10-29 05:59 - 02529856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-03-11 19:47 - 2014-10-29 05:59 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-03-11 19:47 - 2014-10-29 05:58 - 00014528 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2015-03-11 19:47 - 2014-10-29 05:57 - 03138720 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2015-03-11 19:47 - 2014-10-29 05:57 - 03118096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2015-03-11 19:47 - 2014-10-29 05:57 - 02745160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2015-03-11 19:47 - 2014-10-29 05:57 - 02450216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVENCOD.DLL
2015-03-11 19:47 - 2014-10-29 05:57 - 01576312 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2015-03-11 19:47 - 2014-10-29 05:57 - 01286048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2015-03-11 19:47 - 2014-10-29 05:57 - 01210176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2015-03-11 19:47 - 2014-10-29 05:55 - 02174976 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2015-03-11 19:47 - 2014-10-29 05:55 - 01660528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2015-03-11 19:47 - 2014-10-29 05:55 - 01543768 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2015-03-11 19:47 - 2014-10-29 05:55 - 01133200 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 02485056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-03-11 19:47 - 2014-10-29 05:52 - 02334080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 01518504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 01509688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 01288096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 01165744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 01064720 _____ (Microsoft Corporation) C:\WINDOWS\system32\drmv2clt.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00988544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00962216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00952384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00850656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00821696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00634768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-03-11 19:47 - 2014-10-29 05:52 - 00580024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2015-03-11 19:47 - 2014-10-29 05:51 - 01310912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-03-11 19:47 - 2014-10-29 05:18 - 00016504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psapi.dll
2015-03-11 19:47 - 2014-10-29 05:13 - 01901240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-03-11 19:47 - 2014-10-29 05:12 - 01946144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2015-03-11 19:47 - 2014-10-29 05:12 - 01907384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2015-03-11 19:47 - 2014-10-29 05:11 - 02689392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2015-03-11 19:47 - 2014-10-29 05:11 - 02528760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2015-03-11 19:47 - 2014-10-29 05:11 - 02447104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVENCOD.DLL
2015-03-11 19:47 - 2014-10-29 05:11 - 01037656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2015-03-11 19:47 - 2014-10-29 05:11 - 01024200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2015-03-11 19:47 - 2014-10-29 05:10 - 01564464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2015-03-11 19:47 - 2014-10-29 05:10 - 01287112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2015-03-11 19:47 - 2014-10-29 05:10 - 01209624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2015-03-11 19:47 - 2014-10-29 05:10 - 01178104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 02324208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 01321192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 01115104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00857384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00801584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00785568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00705008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-03-11 19:47 - 2014-10-29 05:07 - 00700328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2015-03-11 19:47 - 2014-10-29 05:05 - 00890128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drmv2clt.dll
2015-03-11 19:47 - 2014-10-29 04:59 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-03-11 19:47 - 2014-10-29 04:50 - 01192960 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-03-11 19:47 - 2014-10-29 04:43 - 00685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched20.dll
2015-03-11 19:47 - 2014-10-29 04:31 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlceqp40.dll
2015-03-11 19:47 - 2014-10-29 04:29 - 04483072 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-03-11 19:47 - 2014-10-29 04:29 - 01246720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ogldrv.dll
2015-03-11 19:47 - 2014-10-29 04:28 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpssvcs.dll
2015-03-11 19:47 - 2014-10-29 04:25 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\blackbox.dll
2015-03-11 19:47 - 2014-10-29 04:24 - 04418560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2015-03-11 19:47 - 2014-10-29 04:17 - 02003456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2015-03-11 19:47 - 2014-10-29 04:17 - 00537088 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-03-11 19:47 - 2014-10-29 04:10 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-03-11 19:47 - 2014-10-29 04:08 - 01540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2015-03-11 19:47 - 2014-10-29 04:07 - 06692352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2015-03-11 19:47 - 2014-10-29 04:03 - 00862720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2015-03-11 19:47 - 2014-10-29 04:00 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-03-11 19:47 - 2014-10-29 03:57 - 02924032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2015-03-11 19:47 - 2014-10-29 03:56 - 03754496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2015-03-11 19:47 - 2014-10-29 03:56 - 01526784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2015-03-11 19:47 - 2014-10-29 03:56 - 00603648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2015-03-11 19:47 - 2014-10-29 03:55 - 01697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2015-03-11 19:47 - 2014-10-29 03:53 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2015-03-11 19:47 - 2014-10-29 03:53 - 00881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2015-03-11 19:47 - 2014-10-29 03:52 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-03-11 19:47 - 2014-10-29 03:51 - 00941056 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2015-03-11 19:47 - 2014-10-29 03:50 - 01289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMNetMgr.dll
2015-03-11 19:47 - 2014-10-29 03:49 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlceqp40.dll
2015-03-11 19:47 - 2014-10-29 03:48 - 01080832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2015-03-11 19:47 - 2014-10-29 03:48 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2015-03-11 19:47 - 2014-10-29 03:47 - 02072064 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2015-03-11 19:47 - 2014-10-29 03:45 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\blackbox.dll
2015-03-11 19:47 - 2014-10-29 03:45 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinput.exe
2015-03-11 19:47 - 2014-10-29 03:44 - 02984448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2015-03-11 19:47 - 2014-10-29 03:43 - 07075328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2015-03-11 19:47 - 2014-10-29 03:43 - 01092608 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdosys.dll
2015-03-11 19:47 - 2014-10-29 03:43 - 00933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2015-03-11 19:47 - 2014-10-29 03:42 - 03724800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe
2015-03-11 19:47 - 2014-10-29 03:42 - 01999872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-03-11 19:47 - 2014-10-29 03:40 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2015-03-11 19:47 - 2014-10-29 03:39 - 02896384 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-03-11 19:47 - 2014-10-29 03:38 - 04690432 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2015-03-11 19:47 - 2014-10-29 03:37 - 01563136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2015-03-11 19:47 - 2014-10-29 03:35 - 04709888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2015-03-11 19:47 - 2014-10-29 03:35 - 03256320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2015-03-11 19:47 - 2014-10-29 03:34 - 01114624 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2015-03-11 19:47 - 2014-10-29 03:34 - 01037824 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2015-03-11 19:47 - 2014-10-29 03:33 - 01056768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2015-03-11 19:47 - 2014-10-29 03:32 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2015-03-11 19:47 - 2014-10-29 03:32 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-03-11 19:47 - 2014-10-29 03:31 - 02941952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2015-03-11 19:47 - 2014-10-29 03:28 - 03820544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2015-03-11 19:47 - 2014-10-29 03:26 - 03561984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2015-03-11 19:47 - 2014-10-29 03:25 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-03-11 19:47 - 2014-10-29 03:25 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pla.dll
2015-03-11 19:47 - 2014-10-29 03:24 - 02464768 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2015-03-11 19:47 - 2014-10-29 03:24 - 02364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll
2015-03-11 19:47 - 2014-10-29 03:24 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-03-11 19:47 - 2014-10-29 03:23 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2015-03-11 19:47 - 2014-10-29 03:22 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-03-11 19:47 - 2014-10-29 03:22 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2015-03-11 19:47 - 2014-10-29 03:22 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-03-11 19:47 - 2014-10-29 03:21 - 01250816 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-03-11 19:47 - 2014-10-29 03:21 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2015-03-11 19:47 - 2014-10-29 03:20 - 01492480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2015-03-11 19:47 - 2014-10-29 03:19 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2015-03-11 19:47 - 2014-10-29 03:18 - 01753600 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2015-03-11 19:47 - 2014-10-29 03:18 - 01050624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMNetMgr.dll
2015-03-11 19:47 - 2014-10-29 03:17 - 01402368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2015-03-11 19:47 - 2014-10-29 03:17 - 01360896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2015-03-11 19:47 - 2014-10-29 03:17 - 00829952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sbe.dll
2015-03-11 19:47 - 2014-10-29 03:16 - 05267968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
2015-03-11 19:47 - 2014-10-29 03:16 - 01696256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2015-03-11 19:47 - 2014-10-29 03:14 - 03553280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2015-03-11 19:47 - 2014-10-29 03:14 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-03-11 19:47 - 2014-10-29 03:12 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-03-11 19:47 - 2014-10-29 03:11 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-03-11 19:47 - 2014-10-29 03:10 - 02469888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2015-03-11 19:47 - 2014-10-29 03:09 - 01335296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 02608640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 02542080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 02174976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 01822720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 01560576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-03-11 19:47 - 2014-10-29 03:08 - 01478144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2015-03-11 19:47 - 2014-10-29 03:07 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2015-03-11 19:47 - 2014-10-29 03:07 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-03-11 19:47 - 2014-10-29 03:06 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2015-03-11 19:47 - 2014-10-29 03:05 - 03273216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2015-03-11 19:47 - 2014-10-29 03:04 - 01376256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2015-03-11 19:47 - 2014-10-29 03:03 - 04067840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2015-03-11 19:47 - 2014-10-29 03:03 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2015-03-11 19:47 - 2014-10-29 03:03 - 02487296 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2015-03-11 19:47 - 2014-10-29 03:03 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-03-11 19:47 - 2014-10-29 03:02 - 14354944 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-03-11 19:47 - 2014-10-29 03:01 - 01710592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2015-03-11 19:47 - 2014-10-29 03:01 - 00843776 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2015-03-11 19:47 - 2014-10-29 03:00 - 01705984 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2015-03-11 19:47 - 2014-10-29 02:59 - 01636864 _____ (Microsoft Corporation) C:\WINDOWS\system32\RacEngn.dll
2015-03-11 19:47 - 2014-10-29 02:59 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2015-03-11 19:47 - 2014-10-29 02:59 - 01454080 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2015-03-11 19:47 - 2014-10-29 02:59 - 01207296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2015-03-11 19:47 - 2014-10-29 02:59 - 01021440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-03-11 19:47 - 2014-10-29 02:58 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-03-11 19:47 - 2014-10-29 02:57 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-03-11 19:47 - 2014-10-29 02:56 - 01337344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-03-11 19:47 - 2014-10-29 02:56 - 01248256 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
2015-03-11 19:47 - 2014-10-29 02:56 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-03-11 19:47 - 2014-10-29 02:56 - 01001984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2015-03-11 19:47 - 2014-10-29 02:54 - 07784960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-03-11 19:47 - 2014-10-29 02:54 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-03-11 19:47 - 2014-10-29 02:54 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-03-11 19:47 - 2014-10-29 02:53 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 02554880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 02170368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 01461248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 01275904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-03-11 19:47 - 2014-10-29 02:52 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-03-11 19:47 - 2014-10-29 02:52 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2015-03-11 19:47 - 2014-10-29 02:50 - 12749824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-03-11 19:47 - 2014-10-29 02:50 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2015-03-11 19:47 - 2014-10-29 02:50 - 01482752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2015-03-11 19:47 - 2014-10-29 02:48 - 03056128 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2015-03-11 19:47 - 2014-10-29 02:48 - 01344000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2015-03-11 19:47 - 2014-10-29 02:47 - 02090496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 09530368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 01919488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 01348096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RacEngn.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-03-11 19:47 - 2014-10-29 02:46 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-03-11 19:47 - 2014-10-29 02:45 - 13318144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2015-03-11 19:47 - 2014-10-29 02:45 - 01725952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-03-11 19:47 - 2014-10-29 02:45 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-03-11 19:47 - 2014-10-29 02:43 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2015-03-11 19:47 - 2014-10-29 02:43 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-03-11 19:47 - 2014-10-29 02:43 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-03-11 19:47 - 2014-10-29 02:42 - 01922560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-03-11 19:47 - 2014-10-29 02:42 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-03-11 19:47 - 2014-10-29 02:42 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2015-03-11 19:47 - 2014-10-29 02:41 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-03-11 19:47 - 2014-10-29 02:41 - 01317376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2015-03-11 19:47 - 2014-10-29 02:40 - 02104832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2015-03-11 19:47 - 2014-10-29 02:39 - 02814464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-03-11 19:47 - 2014-10-29 02:39 - 01000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2015-03-11 19:47 - 2014-10-29 02:38 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2015-03-11 19:47 - 2014-10-29 02:38 - 01262080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2015-03-11 19:47 - 2014-10-29 02:37 - 06386176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2015-03-11 19:47 - 2014-10-29 02:37 - 00724480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-03-11 19:47 - 2014-10-29 02:36 - 00954880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-03-11 19:47 - 2014-10-29 02:35 - 01668096 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2015-03-11 19:47 - 2014-10-29 02:35 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-03-11 19:47 - 2014-10-29 02:34 - 01544192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-03-11 19:47 - 2014-10-29 02:33 - 06213632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2015-03-11 19:47 - 2014-10-29 02:33 - 01102848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2015-03-11 19:47 - 2014-10-15 10:32 - 02025792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-03-11 19:47 - 2014-10-07 08:45 - 03307112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2015-03-11 19:47 - 2014-10-07 05:44 - 02890296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2015-03-11 19:47 - 2014-09-25 05:42 - 00373568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-03-11 19:46 - 2014-10-29 06:10 - 00430728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2015-03-11 19:46 - 2014-10-29 06:09 - 01950280 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2015-03-11 19:46 - 2014-10-29 06:09 - 01309744 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2015-03-11 19:46 - 2014-10-29 06:09 - 01239576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2015-03-11 19:46 - 2014-10-29 06:09 - 00315576 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2015-03-11 19:46 - 2014-10-29 06:09 - 00294880 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2015-03-11 19:46 - 2014-10-29 06:09 - 00233448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityUxHost.exe
2015-03-11 19:46 - 2014-10-29 06:09 - 00214360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2015-03-11 19:46 - 2014-10-29 06:04 - 00397192 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2015-03-11 19:46 - 2014-10-29 06:04 - 00324864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-03-11 19:46 - 2014-10-29 06:04 - 00217912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2015-03-11 19:46 - 2014-10-29 06:03 - 00435008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2015-03-11 19:46 - 2014-10-29 06:00 - 00740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2015-03-11 19:46 - 2014-10-29 06:00 - 00544408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-03-11 19:46 - 2014-10-29 06:00 - 00379568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2015-03-11 19:46 - 2014-10-29 05:59 - 00520536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2015-03-11 19:46 - 2014-10-29 05:59 - 00498496 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2015-03-11 19:46 - 2014-10-29 05:59 - 00415040 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2015-03-11 19:46 - 2014-10-29 05:59 - 00230816 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2015-03-11 19:46 - 2014-10-29 05:58 - 01797944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 01913128 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplaySwitch.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 01552704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-03-11 19:46 - 2014-10-29 05:57 - 01150208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2015-03-11 19:46 - 2014-10-29 05:57 - 00767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00725672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00662120 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00643064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00629576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP4SDECD.DLL
2015-03-11 19:46 - 2014-10-29 05:57 - 00557832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSDECD.DLL
2015-03-11 19:46 - 2014-10-29 05:57 - 00389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-03-11 19:46 - 2014-10-29 05:57 - 00339312 _____ (Microsoft Corporation) C:\WINDOWS\system32\shlwapi.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00295432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMASF.DLL
2015-03-11 19:46 - 2014-10-29 05:57 - 00271152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00256744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00217432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2015-03-11 19:46 - 2014-10-29 05:57 - 00034568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00031496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraSettingsUIHost.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00029408 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerHost.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00027360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsRemoveDevice.exe
2015-03-11 19:46 - 2014-10-29 05:57 - 00018584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SlideToShutDown.exe
2015-03-11 19:46 - 2014-10-29 05:55 - 01063432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2015-03-11 19:46 - 2014-10-29 05:55 - 00730824 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatq.dll
2015-03-11 19:46 - 2014-10-29 05:55 - 00426120 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2015-03-11 19:46 - 2014-10-29 05:55 - 00359496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2015-03-11 19:46 - 2014-10-29 05:55 - 00305192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpendp.dll
2015-03-11 19:46 - 2014-10-29 05:54 - 00685408 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2015-03-11 19:46 - 2014-10-29 05:53 - 00687496 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2015-03-11 19:46 - 2014-10-29 05:53 - 00411128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-03-11 19:46 - 2014-10-29 05:52 - 00734448 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00497936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00444728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00405456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00387872 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00356936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00311448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00225696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmmbase.dll
2015-03-11 19:46 - 2014-10-29 05:52 - 00020160 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2015-03-11 19:46 - 2014-10-29 05:51 - 00363080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2015-03-11 19:46 - 2014-10-29 05:51 - 00360992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2015-03-11 19:46 - 2014-10-29 05:51 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2015-03-11 19:46 - 2014-10-29 05:51 - 00179736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2015-03-11 19:46 - 2014-10-29 05:18 - 01782912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2015-03-11 19:46 - 2014-10-29 05:18 - 01103768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2015-03-11 19:46 - 2014-10-29 05:18 - 00848568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2015-03-11 19:46 - 2014-10-29 05:18 - 00320736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll
2015-03-11 19:46 - 2014-10-29 05:15 - 00340848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2015-03-11 19:46 - 2014-10-29 05:15 - 00340288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2015-03-11 19:46 - 2014-10-29 05:15 - 00245296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2015-03-11 19:46 - 2014-10-29 05:15 - 00192096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2015-03-11 19:46 - 2014-10-29 05:15 - 00089856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2015-03-11 19:46 - 2014-10-29 05:13 - 00185880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xmllite.dll
2015-03-11 19:46 - 2014-10-29 05:12 - 00616704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2015-03-11 19:46 - 2014-10-29 05:12 - 00430176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2015-03-11 19:46 - 2014-10-29 05:12 - 00416760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2015-03-11 19:46 - 2014-10-29 05:12 - 00403776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2015-03-11 19:46 - 2014-10-29 05:11 - 00914648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2015-03-11 19:46 - 2014-10-29 05:11 - 00492704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVSDECD.DLL
2015-03-11 19:46 - 2014-10-29 05:11 - 00488064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2015-03-11 19:46 - 2014-10-29 05:11 - 00463744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP4SDECD.DLL
2015-03-11 19:46 - 2014-10-29 05:11 - 00245296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMASF.DLL
2015-03-11 19:46 - 2014-10-29 05:11 - 00191104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2015-03-11 19:46 - 2014-10-29 05:11 - 00187488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 01906872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplaySwitch.exe
2015-03-11 19:46 - 2014-10-29 05:10 - 00569128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clbcatq.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00547992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00492232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00367248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00278352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shlwapi.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00276816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsta.dll
2015-03-11 19:46 - 2014-10-29 05:10 - 00272648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpendp.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00584120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00551064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00482360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmdev.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00409040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00399752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00336680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00331048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00320256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00260800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00202440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2015-03-11 19:46 - 2014-10-29 05:07 - 00019096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksuser.dll
2015-03-11 19:46 - 2014-10-29 05:06 - 00800008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll
2015-03-11 19:46 - 2014-10-29 05:06 - 00507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2015-03-11 19:46 - 2014-10-29 05:05 - 00321248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2015-03-11 19:46 - 2014-10-29 05:05 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll
2015-03-11 19:46 - 2014-10-29 04:56 - 01164288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2015-03-11 19:46 - 2014-10-29 04:56 - 00553984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfh264enc.dll
2015-03-11 19:46 - 2014-10-29 04:49 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp60.dll
2015-03-11 19:46 - 2014-10-29 04:48 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe
2015-03-11 19:46 - 2014-10-29 04:48 - 00636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll
2015-03-11 19:46 - 2014-10-29 04:46 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFRd.sys
2015-03-11 19:46 - 2014-10-29 04:45 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2015-03-11 19:46 - 2014-10-29 04:45 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\glmf32.dll
2015-03-11 19:46 - 2014-10-29 04:45 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\msls31.dll
2015-03-11 19:46 - 2014-10-29 04:45 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2015-03-11 19:46 - 2014-10-29 04:44 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2015-03-11 19:46 - 2014-10-29 04:44 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2015-03-11 19:46 - 2014-10-29 04:42 - 01091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2015-03-11 19:46 - 2014-10-29 04:42 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2015-03-11 19:46 - 2014-10-29 04:41 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2015-03-11 19:46 - 2014-10-29 04:41 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2015-03-11 19:46 - 2014-10-29 04:41 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-03-11 19:46 - 2014-10-29 04:40 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2015-03-11 19:46 - 2014-10-29 04:40 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput8.dll
2015-03-11 19:46 - 2014-10-29 04:37 - 02329088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0404.dll
2015-03-11 19:46 - 2014-10-29 04:36 - 00546304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlcese40.dll
2015-03-11 19:46 - 2014-10-29 04:36 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\prncache.dll
2015-03-11 19:46 - 2014-10-29 04:35 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsldp.dll
2015-03-11 19:46 - 2014-10-29 04:34 - 03438592 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0804.dll
2015-03-11 19:46 - 2014-10-29 04:33 - 07558144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0011.dll
2015-03-11 19:46 - 2014-10-29 04:33 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data001E.dll
2015-03-11 19:46 - 2014-10-29 04:33 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlsrv32.dll
2015-03-11 19:46 - 2014-10-29 04:32 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\migflt.dll
2015-03-11 19:46 - 2014-10-29 04:32 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlceoledb40.dll
2015-03-11 19:46 - 2014-10-29 04:31 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wvc.dll
2015-03-11 19:46 - 2014-10-29 04:31 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2015-03-11 19:46 - 2014-10-29 04:31 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\cewmdm.dll
2015-03-11 19:46 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70804.dll
2015-03-11 19:46 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70404.dll
2015-03-11 19:46 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7001E.dll
2015-03-11 19:46 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70011.dll
2015-03-11 19:46 - 2014-10-29 04:30 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsClassExtension.dll
2015-03-11 19:46 - 2014-10-29 04:29 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsound.dll
2015-03-11 19:46 - 2014-10-29 04:29 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhengine.dll
2015-03-11 19:46 - 2014-10-29 04:28 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskraid.exe
2015-03-11 19:46 - 2014-10-29 04:27 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdv.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssha.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasnap.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsRasterService.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmvdspa.dll
2015-03-11 19:46 - 2014-10-29 04:27 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfdvdec.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartCardSimulator.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00431104 _____ (Microsoft Corporation) C:\WINDOWS\system32\termmgr.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2015-03-11 19:46 - 2014-10-29 04:26 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpresult.exe
2015-03-11 19:46 - 2014-10-29 04:25 - 00995328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi3.dll
2015-03-11 19:46 - 2014-10-29 04:25 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdohlp.dll
2015-03-11 19:46 - 2014-10-29 04:25 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2015-03-11 19:46 - 2014-10-29 04:24 - 00644608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVXENCD.DLL
2015-03-11 19:46 - 2014-10-29 04:24 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2015-03-11 19:46 - 2014-10-29 04:24 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSNP.ax
2015-03-11 19:46 - 2014-10-29 04:23 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\offfilt.dll
2015-03-11 19:46 - 2014-10-29 04:22 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2015-03-11 19:46 - 2014-10-29 04:21 - 01664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2015-03-11 19:46 - 2014-10-29 04:21 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassdo.dll
2015-03-11 19:46 - 2014-10-29 04:21 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2015-03-11 19:46 - 2014-10-29 04:21 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2015-03-11 19:46 - 2014-10-29 04:20 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\QAGENTRT.DLL
2015-03-11 19:46 - 2014-10-29 04:20 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnp.dll
2015-03-11 19:46 - 2014-10-29 04:20 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll
2015-03-11 19:46 - 2014-10-29 04:19 - 09732096 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000a.dll
2015-03-11 19:46 - 2014-10-29 04:19 - 00451072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSENCD.DLL
2015-03-11 19:46 - 2014-10-29 04:18 - 06259712 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 04616704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001d.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 02403328 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000c.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 02140672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0007.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 01609216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0000.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2015-03-11 19:46 - 2014-10-29 04:18 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscandui.dll
2015-03-11 19:46 - 2014-10-29 04:18 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasppp.dll
2015-03-11 19:46 - 2014-10-29 04:17 - 04621312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0414.dll
2015-03-11 19:46 - 2014-10-29 04:17 - 04620288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0816.dll
2015-03-11 19:46 - 2014-10-29 04:17 - 03231232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004b.dll
2015-03-11 19:46 - 2014-10-29 04:17 - 02480128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000d.dll
2015-03-11 19:46 - 2014-10-29 04:17 - 01926144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0022.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 04621312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0010.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 04616704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0416.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 03235840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0039.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004a.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 00546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsnap.dll
2015-03-11 19:46 - 2014-10-29 04:16 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\lltdapi.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004e.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0049.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0047.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0046.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0020.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0026.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0024.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001b.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0002.dll
2015-03-11 19:46 - 2014-10-29 04:15 - 01904640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData002a.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004c.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 03209216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0045.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02075136 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0027.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0c1a.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData081a.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001a.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0018.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000f.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 02073600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0003.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 01904640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData003e.dll
2015-03-11 19:46 - 2014-10-29 04:14 - 01904640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0021.dll
2015-03-11 19:46 - 2014-10-29 04:13 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnfldr.dll
2015-03-11 19:46 - 2014-10-29 04:12 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-03-11 19:46 - 2014-10-29 04:12 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcat.dll
2015-03-11 19:46 - 2014-10-29 04:11 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2015-03-11 19:46 - 2014-10-29 04:11 - 00547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
2015-03-11 19:46 - 2014-10-29 04:11 - 00478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmon.ocx
2015-03-11 19:46 - 2014-10-29 04:11 - 00435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswmdm.dll
2015-03-11 19:46 - 2014-10-29 04:11 - 00243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll
2015-03-11 19:46 - 2014-10-29 04:11 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgprint.dll
2015-03-11 19:46 - 2014-10-29 04:10 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfh264enc.dll
2015-03-11 19:46 - 2014-10-29 04:09 - 00632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\psisdecd.dll
2015-03-11 19:46 - 2014-10-29 04:09 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\lltdsvc.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00858624 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmnet.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00390656 _____ (Microsoft Corporation) C:\WINDOWS\system32\difxapi.dll
2015-03-11 19:46 - 2014-10-29 04:08 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdprint.dll
2015-03-11 19:46 - 2014-10-29 04:07 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2015-03-11 19:46 - 2014-10-29 04:06 - 02902016 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2015-03-11 19:46 - 2014-10-29 04:06 - 01313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2015-03-11 19:46 - 2014-10-29 04:06 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2fs.dll
2015-03-11 19:46 - 2014-10-29 04:06 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL
2015-03-11 19:46 - 2014-10-29 04:05 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2015-03-11 19:46 - 2014-10-29 04:05 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\srchadmin.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IasMigPlugin.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\devmgr.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2015-03-11 19:46 - 2014-10-29 04:04 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WavDest.dll
2015-03-11 19:46 - 2014-10-29 04:03 - 02334720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2015-03-11 19:46 - 2014-10-29 04:03 - 00832000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe
2015-03-11 19:46 - 2014-10-29 04:03 - 00489472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-03-11 19:46 - 2014-10-29 04:03 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\xwtpdui.dll
2015-03-11 19:46 - 2014-10-29 04:02 - 00520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\localsec.dll
2015-03-11 19:46 - 2014-10-29 04:02 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xwizards.dll
2015-03-11 19:46 - 2014-10-29 04:02 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2015-03-11 19:46 - 2014-10-29 04:01 - 00819200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2015-03-11 19:46 - 2014-10-29 04:01 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2015-03-11 19:46 - 2014-10-29 04:01 - 00475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2015-03-11 19:46 - 2014-10-29 04:01 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroleui.dll
2015-03-11 19:46 - 2014-10-29 04:01 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 03814400 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 01861632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 00652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 00435200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glmf32.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 00371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe
2015-03-11 19:46 - 2014-10-29 04:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msls31.dll
2015-03-11 19:46 - 2014-10-29 04:00 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\riched32.dll
2015-03-11 19:46 - 2014-10-29 03:59 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2015-03-11 19:46 - 2014-10-29 03:59 - 00670720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2015-03-11 19:46 - 2014-10-29 03:59 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\riched20.dll
2015-03-11 19:46 - 2014-10-29 03:59 - 00404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncInfrastructure.dll
2015-03-11 19:46 - 2014-10-29 03:59 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2015-03-11 19:46 - 2014-10-29 03:58 - 01040384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2015-03-11 19:46 - 2014-10-29 03:58 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2015-03-11 19:46 - 2014-10-29 03:58 - 00423424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 02592256 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 01479168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 01431552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DxpTaskSync.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 01038336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2015-03-11 19:46 - 2014-10-29 03:57 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-03-11 19:46 - 2014-10-29 03:56 - 00796160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mblctr.exe
2015-03-11 19:46 - 2014-10-29 03:56 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2015-03-11 19:46 - 2014-10-29 03:56 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2015-03-11 19:46 - 2014-10-29 03:56 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPDSp.dll
2015-03-11 19:46 - 2014-10-29 03:56 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-03-11 19:46 - 2014-10-29 03:55 - 00669184 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2015-03-11 19:46 - 2014-10-29 03:54 - 00833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2015-03-11 19:46 - 2014-10-29 03:54 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscp.dll
2015-03-11 19:46 - 2014-10-29 03:54 - 00408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll
2015-03-11 19:46 - 2014-10-29 03:54 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dim.dll
2015-03-11 19:46 - 2014-10-29 03:54 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2015-03-11 19:46 - 2014-10-29 03:54 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\qasf.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 02238464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NL7Data0404.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 01065984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 00924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlcese40.dll
2015-03-11 19:46 - 2014-10-29 03:53 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NL7Data0804.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 02829312 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00846848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsecsnp.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00680960 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\netdiagfx.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00224768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsldp.dll
2015-03-11 19:46 - 2014-10-29 03:52 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2015-03-11 19:46 - 2014-10-29 03:51 - 07331840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NL7Data0011.dll
2015-03-11 19:46 - 2014-10-29 03:51 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2015-03-11 19:46 - 2014-10-29 03:50 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlsrv32.dll
2015-03-11 19:46 - 2014-10-29 03:50 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdri.dll
2015-03-11 19:46 - 2014-10-29 03:49 - 02236416 _____ (Microsoft Corporation) C:\WINDOWS\system32\certmgr.dll
2015-03-11 19:46 - 2014-10-29 03:49 - 00771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2015-03-11 19:46 - 2014-10-29 03:49 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2015-03-11 19:46 - 2014-10-29 03:49 - 00478720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wvc.dll
2015-03-11 19:46 - 2014-10-29 03:49 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2015-03-11 19:46 - 2014-10-29 03:49 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2015-03-11 19:46 - 2014-10-29 03:49 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmime.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 01364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\connect.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsmsnap.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB70804.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB70404.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB7001E.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB70011.dll
2015-03-11 19:46 - 2014-10-29 03:48 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dxpserver.exe
2015-03-11 19:46 - 2014-10-29 03:47 - 01096192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ogldrv.dll
2015-03-11 19:46 - 2014-10-29 03:47 - 01041920 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdt.exe
2015-03-11 19:46 - 2014-10-29 03:47 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpssvcs.dll
2015-03-11 19:46 - 2014-10-29 03:47 - 00616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe
2015-03-11 19:46 - 2014-10-29 03:47 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsound.dll
2015-03-11 19:46 - 2014-10-29 03:47 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wisp.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 01497600 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-03-11 19:46 - 2014-10-29 03:46 - 01001472 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2015-03-11 19:46 - 2014-10-29 03:46 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe
2015-03-11 19:46 - 2014-10-29 03:46 - 00293376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdv.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsnt.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskraid.exe
2015-03-11 19:46 - 2014-10-29 03:46 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoeacct.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmvdspa.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfdvdec.dll
2015-03-11 19:46 - 2014-10-29 03:46 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsRasterService.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00672768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdohlp.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00378880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\termmgr.dll
2015-03-11 19:46 - 2014-10-29 03:45 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\drmmgrtn.dll
2015-03-11 19:46 - 2014-10-29 03:44 - 00872960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapi3.dll
2015-03-11 19:46 - 2014-10-29 03:44 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXP.dll
2015-03-11 19:46 - 2014-10-29 03:44 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2015-03-11 19:46 - 2014-10-29 03:44 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00960000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00736256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVXENCD.DLL
2015-03-11 19:46 - 2014-10-29 03:43 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WmpDui.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2015-03-11 19:46 - 2014-10-29 03:43 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSNP.ax
2015-03-11 19:46 - 2014-10-29 03:43 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offfilt.dll
2015-03-11 19:46 - 2014-10-29 03:42 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2015-03-11 19:46 - 2014-10-29 03:42 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2015-03-11 19:46 - 2014-10-29 03:42 - 00376832 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2015-03-11 19:46 - 2014-10-29 03:41 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2015-03-11 19:46 - 2014-10-29 03:41 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassdo.dll
2015-03-11 19:46 - 2014-10-29 03:41 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnp.dll
2015-03-11 19:46 - 2014-10-29 03:40 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll
2015-03-11 19:46 - 2014-10-29 03:40 - 02036224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0007.dll
2015-03-11 19:46 - 2014-10-29 03:39 - 09604608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000a.dll
2015-03-11 19:46 - 2014-10-29 03:39 - 04531712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0416.dll
2015-03-11 19:46 - 2014-10-29 03:39 - 04530688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData001d.dll
2015-03-11 19:46 - 2014-10-29 03:39 - 01571328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2015-03-11 19:46 - 2014-10-29 03:39 - 00898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2015-03-11 19:46 - 2014-10-29 03:39 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVSENCD.DLL
2015-03-11 19:46 - 2014-10-29 03:39 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscandui.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 04945920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 04530688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0010.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 04530176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0414.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 04529664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0816.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 02387456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000d.dll
         

Alt 05.04.2015, 22:25   #15
Aaron666
 
Webseiten werden umgeleitet - iStartSurf und mehr - Standard

Webseiten werden umgeleitet - iStartSurf und mehr



FRST-Log Teil 2:

Code:
ATTFilter
2015-03-11 19:46 - 2014-10-29 03:38 - 02307072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000c.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 02012160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0026.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 02012160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData000f.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMPOSE.dll
2015-03-11 19:46 - 2014-10-29 03:38 - 00363008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.PointOfService.dll
2015-03-11 19:46 - 2014-10-29 03:37 - 03149824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0039.dll
2015-03-11 19:46 - 2014-10-29 03:37 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData002a.dll
2015-03-11 19:46 - 2014-10-29 03:37 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2015-03-11 19:46 - 2014-10-29 03:37 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsnap.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData004e.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData004c.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData004b.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData004a.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0049.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0047.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0046.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0045.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0020.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01999360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0027.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0c1a.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData081a.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0024.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData001b.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData001a.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0018.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0003.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0002.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData003e.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0022.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0021.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01252864 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 01008128 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 00943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFS.exe
2015-03-11 19:46 - 2014-10-29 03:36 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 00609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll
2015-03-11 19:46 - 2014-10-29 03:36 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2015-03-11 19:46 - 2014-10-29 03:35 - 00532480 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll
2015-03-11 19:46 - 2014-10-29 03:35 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2015-03-11 19:46 - 2014-10-29 03:34 - 00473600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnfldr.dll
2015-03-11 19:46 - 2014-10-29 03:34 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2.dll
2015-03-11 19:46 - 2014-10-29 03:34 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysmon.ocx
2015-03-11 19:46 - 2014-10-29 03:34 - 00353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswmdm.dll
2015-03-11 19:46 - 2014-10-29 03:34 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efscore.dll
2015-03-11 19:46 - 2014-10-29 03:34 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapisrv.dll
2015-03-11 19:46 - 2014-10-29 03:33 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2015-03-11 19:46 - 2014-10-29 03:33 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2015-03-11 19:46 - 2014-10-29 03:33 - 00505856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2015-03-11 19:46 - 2014-10-29 03:32 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroles.dll
2015-03-11 19:46 - 2014-10-29 03:32 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comuid.dll
2015-03-11 19:46 - 2014-10-29 03:32 - 00512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psisdecd.dll
2015-03-11 19:46 - 2014-10-29 03:32 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmnet.dll
2015-03-11 19:46 - 2014-10-29 03:31 - 01278464 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2015-03-11 19:46 - 2014-10-29 03:31 - 00761344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2fs.dll
2015-03-11 19:46 - 2014-10-29 03:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2015-03-11 19:46 - 2014-10-29 03:31 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2015-03-11 19:46 - 2014-10-29 03:31 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\netjoin.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 06465536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2015-03-11 19:46 - 2014-10-29 03:30 - 01171456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2015-03-11 19:46 - 2014-10-29 03:30 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2015-03-11 19:46 - 2014-10-29 03:30 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmdial32.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2015-03-11 19:46 - 2014-10-29 03:30 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAC3ENC.DLL
2015-03-11 19:46 - 2014-10-29 03:29 - 02848768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IasMigPlugin.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\filemgmt.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devmgr.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00434176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2015-03-11 19:46 - 2014-10-29 03:29 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 02213888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncCenter.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2015-03-11 19:46 - 2014-10-29 03:28 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptnet.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ulib.dll
2015-03-11 19:46 - 2014-10-29 03:28 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00763392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2015-03-11 19:46 - 2014-10-29 03:27 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPTpm12.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xwizards.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwizeng.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasmontr.dll
2015-03-11 19:46 - 2014-10-29 03:27 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2015-03-11 19:46 - 2014-10-29 03:26 - 00838656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2015-03-11 19:46 - 2014-10-29 03:26 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSCOMEX.dll
2015-03-11 19:46 - 2014-10-29 03:26 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2015-03-11 19:46 - 2014-10-29 03:26 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2015-03-11 19:46 - 2014-10-29 03:26 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-03-11 19:46 - 2014-10-29 03:25 - 01058816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll
2015-03-11 19:46 - 2014-10-29 03:25 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\azroleui.dll
2015-03-11 19:46 - 2014-10-29 03:25 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncInfrastructure.dll
2015-03-11 19:46 - 2014-10-29 03:25 - 00333824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe
2015-03-11 19:46 - 2014-10-29 03:25 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certreq.exe
2015-03-11 19:46 - 2014-10-29 03:25 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 01389056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DxpTaskSync.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 01335296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 00902144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 00845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2015-03-11 19:46 - 2014-10-29 03:24 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2015-03-11 19:46 - 2014-10-29 03:24 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Geolocation.dll
2015-03-11 19:46 - 2014-10-29 03:24 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 01826304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00376320 _____ (Microsoft Corporation) C:\WINDOWS\system32\livessp.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WPDSp.dll
2015-03-11 19:46 - 2014-10-29 03:23 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 00839680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 00572416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-03-11 19:46 - 2014-10-29 03:22 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2015-03-11 19:46 - 2014-10-29 03:22 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-03-11 19:46 - 2014-10-29 03:22 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdelta.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2015-03-11 19:46 - 2014-10-29 03:22 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qasf.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2015-03-11 19:46 - 2014-10-29 03:21 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2015-03-11 19:46 - 2014-10-29 03:21 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscp.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFHost.exe
2015-03-11 19:46 - 2014-10-29 03:21 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2015-03-11 19:46 - 2014-10-29 03:21 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2015-03-11 19:46 - 2014-10-29 03:21 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipsecsnp.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\objsel.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Usb.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdscore.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedyn.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssphtb.dll
2015-03-11 19:46 - 2014-10-29 03:20 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 02714624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSync.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2015-03-11 19:46 - 2014-10-29 03:19 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10_1core.dll
2015-03-11 19:46 - 2014-10-29 03:19 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10core.dll
2015-03-11 19:46 - 2014-10-29 03:18 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certmgr.dll
2015-03-11 19:46 - 2014-10-29 03:18 - 00743936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFWMAAEC.DLL
2015-03-11 19:46 - 2014-10-29 03:18 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2015-03-11 19:46 - 2014-10-29 03:18 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2015-03-11 19:46 - 2014-10-29 03:18 - 00194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdt.exe
2015-03-11 19:46 - 2014-10-29 03:17 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipsmsnap.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2PGraph.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-03-11 19:46 - 2014-10-29 03:17 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtutil.exe
2015-03-11 19:46 - 2014-10-29 03:17 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 01242112 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00795136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_isv.exe
2015-03-11 19:46 - 2014-10-29 03:16 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authfwcfg.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc_isv.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drmmgrtn.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2015-03-11 19:46 - 2014-10-29 03:16 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msoeacct.dll
2015-03-11 19:46 - 2014-10-29 03:15 - 00809472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2015-03-11 19:46 - 2014-10-29 03:15 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate.exe
2015-03-11 19:46 - 2014-10-29 03:15 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Proximity.dll
2015-03-11 19:46 - 2014-10-29 03:14 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdosys.dll
2015-03-11 19:46 - 2014-10-29 03:14 - 00737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2015-03-11 19:46 - 2014-10-29 03:14 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2015-03-11 19:46 - 2014-10-29 03:14 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2015-03-11 19:46 - 2014-10-29 03:14 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_ssp_isv.exe
2015-03-11 19:46 - 2014-10-29 03:14 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_ssp.exe
2015-03-11 19:46 - 2014-10-29 03:14 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2015-03-11 19:46 - 2014-10-29 03:14 - 00301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll
2015-03-11 19:46 - 2014-10-29 03:13 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-03-11 19:46 - 2014-10-29 03:13 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-03-11 19:46 - 2014-10-29 03:13 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msTextPrediction.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00516608 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\hotspotauth.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2015-03-11 19:46 - 2014-10-29 03:12 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2015-03-11 19:46 - 2014-10-29 03:11 - 02597376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2015-03-11 19:46 - 2014-10-29 03:11 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2015-03-11 19:46 - 2014-10-29 03:11 - 00672768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-03-11 19:46 - 2014-10-29 03:11 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2015-03-11 19:46 - 2014-10-29 03:11 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtckrm.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 01096704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmsdk.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00442880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EncDec.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2015-03-11 19:46 - 2014-10-29 03:10 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00873984 _____ (Microsoft Corporation) C:\WINDOWS\system32\provcore.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00809984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00658944 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00633344 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2015-03-11 19:46 - 2014-10-29 03:09 - 00345088 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2015-03-11 19:46 - 2014-10-29 03:08 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2015-03-11 19:46 - 2014-10-29 03:08 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 01396736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 01197056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
2015-03-11 19:46 - 2014-10-29 03:07 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 00594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2015-03-11 19:46 - 2014-10-29 03:07 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 01086976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2015-03-11 19:46 - 2014-10-29 03:06 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 00301568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2015-03-11 19:46 - 2014-10-29 03:06 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2015-03-11 19:46 - 2014-10-29 03:05 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsCfg.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2015-03-11 19:46 - 2014-10-29 03:05 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptnet.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsvcs.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00364032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPTpm12.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netjoin.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2015-03-11 19:46 - 2014-10-29 03:04 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifsutil.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00781824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00608256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2015-03-11 19:46 - 2014-10-29 03:03 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2015-03-11 19:46 - 2014-10-29 03:02 - 00880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2015-03-11 19:46 - 2014-10-29 03:02 - 00695296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\perftrack.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00706048 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdelta.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winsku.dll
2015-03-11 19:46 - 2014-10-29 03:01 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 01574400 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wbemcomn.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10_1core.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedyn.dll
2015-03-11 19:46 - 2014-10-29 03:00 - 00200192 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DscCoreConfProv.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 01010688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2015-03-11 19:46 - 2014-10-29 02:59 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00603648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSync.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxApplicabilityEngine.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10core.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netprofm.dll
2015-03-11 19:46 - 2014-10-29 02:59 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00746496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2015-03-11 19:46 - 2014-10-29 02:58 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 01065472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate_isv.exe
2015-03-11 19:46 - 2014-10-29 02:57 - 00543744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate.exe
2015-03-11 19:46 - 2014-10-29 02:57 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2PGraph.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00364032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authfwcfg.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc_isv.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Proximity.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
2015-03-11 19:46 - 2014-10-29 02:57 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2015-03-11 19:46 - 2014-10-29 02:56 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00512512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2015-03-11 19:46 - 2014-10-29 02:56 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate_ssp_isv.exe
2015-03-11 19:46 - 2014-10-29 02:56 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RMActivate_ssp.exe
2015-03-11 19:46 - 2014-10-29 02:56 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2015-03-11 19:46 - 2014-10-29 02:56 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00887808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dim700.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanpref.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceApi.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscms.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2015-03-11 19:46 - 2014-10-29 02:55 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2015-03-11 19:46 - 2014-10-29 02:54 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprapi.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NAPMONTR.DLL
2015-03-11 19:46 - 2014-10-29 02:54 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceTypes.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2015-03-11 19:46 - 2014-10-29 02:54 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 01156608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00612352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provcore.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00550400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSATAPI.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_8.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll
2015-03-11 19:46 - 2014-10-29 02:53 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 01024512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00555008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00544256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2015-03-11 19:46 - 2014-10-29 02:52 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.SpeechSynthesis.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\provsvc.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2015-03-11 19:46 - 2014-10-29 02:51 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2015-03-11 19:46 - 2014-10-29 02:50 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallControlPanel.dll
2015-03-11 19:46 - 2014-10-29 02:50 - 00624128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2015-03-11 19:46 - 2014-10-29 02:50 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2015-03-11 19:46 - 2014-10-29 02:50 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2015-03-11 19:46 - 2014-10-29 02:50 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2015-03-11 19:46 - 2014-10-29 02:50 - 00399360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll
2015-03-11 19:46 - 2014-10-29 02:49 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsvcs.dll
2015-03-11 19:46 - 2014-10-29 02:49 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2015-03-11 19:46 - 2014-10-29 02:49 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2015-03-11 19:46 - 2014-10-29 02:49 - 00300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\umrdp.dll
2015-03-11 19:46 - 2014-10-29 02:49 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 01142272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 00949760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetcfg.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 00454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll
2015-03-11 19:46 - 2014-10-29 02:48 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL
2015-03-11 19:46 - 2014-10-29 02:47 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00628224 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrv.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2015-03-11 19:46 - 2014-10-29 02:47 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2015-03-11 19:46 - 2014-10-29 02:46 - 01305088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2015-03-11 19:46 - 2014-10-29 02:46 - 00455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2015-03-11 19:46 - 2014-10-29 02:46 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll
2015-03-11 19:46 - 2014-10-29 02:45 - 00918016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll
2015-03-11 19:46 - 2014-10-29 02:45 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2015-03-11 19:46 - 2014-10-29 02:45 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PortableDeviceApi.dll
2015-03-11 19:46 - 2014-10-29 02:45 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2015-03-11 19:46 - 2014-10-29 02:45 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2015-03-11 19:46 - 2014-10-29 02:45 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00732672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanpref.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DaOtpCredentialProvider.dll
2015-03-11 19:46 - 2014-10-29 02:44 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlanMM.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSATAPI.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcuiu.dll
2015-03-11 19:46 - 2014-10-29 02:43 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.HardwareId.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 01207808 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00865280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallControlPanel.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\provsvc.dll
2015-03-11 19:46 - 2014-10-29 02:42 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2015-03-11 19:46 - 2014-10-29 02:41 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2015-03-11 19:46 - 2014-10-29 02:41 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe
2015-03-11 19:46 - 2014-10-29 02:41 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2015-03-11 19:46 - 2014-10-29 02:41 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2015-03-11 19:46 - 2014-10-29 02:40 - 00651264 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-03-11 19:46 - 2014-10-29 02:40 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2015-03-11 19:46 - 2014-10-29 02:39 - 00565248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2015-03-11 19:46 - 2014-10-29 02:39 - 00454144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hnetcfg.dll
2015-03-11 19:46 - 2014-10-29 02:39 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrv.dll
2015-03-11 19:46 - 2014-10-29 02:38 - 00565760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2015-03-11 19:46 - 2014-10-29 02:37 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2015-03-11 19:46 - 2014-10-29 02:36 - 00955392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2015-03-11 19:46 - 2014-10-29 02:35 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2015-03-11 19:46 - 2014-10-29 02:32 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-03-11 19:46 - 2014-10-29 02:31 - 00626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2015-03-11 19:46 - 2014-10-29 02:30 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmIndexer.dll
2015-03-11 19:46 - 2014-10-29 02:30 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2015-03-11 19:46 - 2014-10-15 10:32 - 00551232 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2015-03-11 19:46 - 2014-10-15 10:32 - 00337728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2015-03-11 19:46 - 2014-10-09 00:09 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-03-11 19:46 - 2014-10-08 11:24 - 00467776 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-03-11 19:46 - 2014-10-08 09:33 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2015-03-11 19:46 - 2014-10-08 09:32 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2015-03-11 19:46 - 2014-10-07 08:44 - 00533824 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-03-11 19:46 - 2014-09-27 06:59 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2015-03-11 19:46 - 2014-08-26 05:30 - 00354112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2015-03-11 19:46 - 2014-07-04 23:29 - 00478528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-03-11 19:45 - 2014-10-29 06:13 - 00021824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2015-03-11 19:45 - 2014-10-29 06:11 - 00038792 _____ (Microsoft Corporation) C:\WINDOWS\system32\svchost.exe
2015-03-11 19:45 - 2014-10-29 06:10 - 00177688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2015-03-11 19:45 - 2014-10-29 06:10 - 00089344 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhost.exe
2015-03-11 19:45 - 2014-10-29 06:10 - 00084184 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostex.exe
2015-03-11 19:45 - 2014-10-29 06:09 - 00371304 _____ (Microsoft Corporation) C:\WINDOWS\system32\verifier.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00277368 _____ (Microsoft Corporation) C:\WINDOWS\system32\powrprof.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00191032 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2015-03-11 19:45 - 2014-10-29 06:09 - 00155456 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00145144 _____ (Microsoft Corporation) C:\WINDOWS\system32\cabinet.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00108864 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootsect.exe
2015-03-11 19:45 - 2014-10-29 06:09 - 00044912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00033600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2015-03-11 19:45 - 2014-10-29 06:09 - 00033088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00033064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel.appcore.dll
2015-03-11 19:45 - 2014-10-29 06:09 - 00028480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2015-03-11 19:45 - 2014-10-29 06:09 - 00017560 _____ (Microsoft Corporation) C:\WINDOWS\system32\psapi.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00224600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntasn1.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00197832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssenh.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00196264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntmarta.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00181816 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2015-03-11 19:45 - 2014-10-29 06:04 - 00153336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00149240 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00136912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00135304 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00131648 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2015-03-11 19:45 - 2014-10-29 06:04 - 00124992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptxml.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00122912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsp.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00120384 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00097608 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00093000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00086744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00080056 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\msasn1.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlrmdr.exe
2015-03-11 19:45 - 2014-10-29 06:04 - 00044368 _____ (Microsoft Corporation) C:\WINDOWS\system32\netutils.dll
2015-03-11 19:45 - 2014-10-29 06:04 - 00025352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsrole.dll
2015-03-11 19:45 - 2014-10-29 06:03 - 00196928 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll
2015-03-11 19:45 - 2014-10-29 06:00 - 00297512 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2015-03-11 19:45 - 2014-10-29 06:00 - 00210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2015-03-11 19:45 - 2014-10-29 06:00 - 00142000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxva2.dll
2015-03-11 19:45 - 2014-10-29 06:00 - 00125504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-03-11 19:45 - 2014-10-29 06:00 - 00030472 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogHost.exe
2015-03-11 19:45 - 2014-10-29 05:59 - 00136512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2015-03-11 19:45 - 2014-10-29 05:59 - 00105944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2015-03-11 19:45 - 2014-10-29 05:59 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2015-03-11 19:45 - 2014-10-29 05:59 - 00025920 ____C (Microsoft Corporation) C:\WINDOWS\system32\streamci.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00447256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00299048 _____ (Microsoft Corporation) C:\WINDOWS\system32\VIDRESZR.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00250488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPG4DECD.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00248408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP43DECD.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00246832 _____ (Microsoft Corporation) C:\WINDOWS\system32\RESAMPLEDMO.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00216920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVol.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00203504 _____ (Microsoft Corporation) C:\WINDOWS\system32\COLORCNV.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00116696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2015-03-11 19:45 - 2014-10-29 05:57 - 00111024 _____ (Microsoft Corporation) C:\WINDOWS\system32\RestoreOptIn.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00098664 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00089816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfvdsp.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2015-03-11 19:45 - 2014-10-29 05:57 - 00045464 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00038736 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00035664 _____ (Microsoft Corporation) C:\WINDOWS\system32\avrt.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00031968 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordOnWakeSettingFlyout.exe
2015-03-11 19:45 - 2014-10-29 05:57 - 00029960 _____ (Microsoft Corporation) C:\WINDOWS\system32\version.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00027872 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2015-03-11 19:45 - 2014-10-29 05:57 - 00022208 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.exe
2015-03-11 19:45 - 2014-10-29 05:56 - 00097048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2015-03-11 19:45 - 2014-10-29 05:56 - 00089368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2015-03-11 19:45 - 2014-10-29 05:56 - 00061208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhv.sys
2015-03-11 19:45 - 2014-10-29 05:56 - 00049944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2015-03-11 19:45 - 2014-10-29 05:55 - 00278392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbroker.exe
2015-03-11 19:45 - 2014-10-29 05:55 - 00076432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sessionmsg.exe
2015-03-11 19:45 - 2014-10-29 05:55 - 00067656 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcRtRemote.dll
2015-03-11 19:45 - 2014-10-29 05:55 - 00064040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wtsapi32.dll
2015-03-11 19:45 - 2014-10-29 05:55 - 00043888 _____ (Microsoft Corporation) C:\WINDOWS\system32\utildll.dll
2015-03-11 19:45 - 2014-10-29 05:55 - 00033576 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuntimeBroker.exe
2015-03-11 19:45 - 2014-10-29 05:55 - 00019264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhost.exe
2015-03-11 19:45 - 2014-10-29 05:53 - 00095048 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-03-11 19:45 - 2014-10-29 05:53 - 00080528 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2015-03-11 19:45 - 2014-10-29 05:52 - 00244272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00132232 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00126056 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00106384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00101736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfAACEnc.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00100672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2015-03-11 19:45 - 2014-10-29 05:52 - 00090880 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00043888 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdmo.dll
2015-03-11 19:45 - 2014-10-29 05:52 - 00041880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msgsm32.acm
2015-03-11 19:45 - 2014-10-29 05:52 - 00035664 _____ (Microsoft Corporation) C:\WINDOWS\system32\imaadp32.acm
2015-03-11 19:45 - 2014-10-29 05:52 - 00034088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msadp32.acm
2015-03-11 19:45 - 2014-10-29 05:52 - 00029408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2015-03-11 19:45 - 2014-10-29 05:52 - 00025312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msg711.acm
2015-03-11 19:45 - 2014-10-29 05:52 - 00022208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksuser.dll
2015-03-11 19:45 - 2014-10-29 05:51 - 00159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2015-03-11 19:45 - 2014-10-29 05:51 - 00070288 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2015-03-11 19:45 - 2014-10-29 05:51 - 00047024 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2015-03-11 19:45 - 2014-10-29 05:51 - 00033032 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2015-03-11 19:45 - 2014-10-29 05:51 - 00031528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptbase.dll
2015-03-11 19:45 - 2014-10-29 05:51 - 00024800 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00348048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\verifier.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00255136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powrprof.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00241168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00164264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00148728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00127552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00120352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cabinet.dll
2015-03-11 19:45 - 2014-10-29 05:18 - 00029920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel.appcore.dll
2015-03-11 19:45 - 2014-10-29 05:17 - 00033088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\svchost.exe
2015-03-11 19:45 - 2014-10-29 05:15 - 00168256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00165728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntasn1.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00156992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dssenh.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00154392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntmarta.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00119800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncrypt.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00115672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00110512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00099104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptxml.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00098152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00096032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptsp.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00074352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00073840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00068168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00064552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00051608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msasn1.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00035592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netutils.dll
2015-03-11 19:45 - 2014-10-29 05:15 - 00021696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsrole.dll
2015-03-11 19:45 - 2014-10-29 05:12 - 00241680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2015-03-11 19:45 - 2014-10-29 05:12 - 00116696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxva2.dll
2015-03-11 19:45 - 2014-10-29 05:12 - 00102728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2015-03-11 19:45 - 2014-10-29 05:12 - 00087224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpr.dll
2015-03-11 19:45 - 2014-10-29 05:12 - 00051096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2015-03-11 19:45 - 2014-10-29 05:11 - 00275280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MPG4DECD.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00274256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP43DECD.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00229248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RESAMPLEDMO.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVol.exe
2015-03-11 19:45 - 2014-10-29 05:11 - 00184888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\COLORCNV.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00183832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VIDRESZR.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00150776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpps.dll
2015-03-11 19:45 - 2014-10-29 05:11 - 00099104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL
2015-03-11 19:45 - 2014-10-29 05:11 - 00076912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfvdsp.dll
2015-03-11 19:45 - 2014-10-29 05:11 - 00031496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\avrt.dll
2015-03-11 19:45 - 2014-10-29 05:11 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CameraSettingsUIHost.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00094464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RestoreOptIn.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00091936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wtsapi32.dll
2015-03-11 19:45 - 2014-10-29 05:10 - 00052664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RpcRtRemote.dll
2015-03-11 19:45 - 2014-10-29 05:10 - 00040816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00038184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\utildll.dll
2015-03-11 19:45 - 2014-10-29 05:10 - 00034016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialUIBroker.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00030944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountBroker.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PasswordOnWakeSettingFlyout.exe
2015-03-11 19:45 - 2014-10-29 05:10 - 00026304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\version.dll
2015-03-11 19:45 - 2014-10-29 05:10 - 00026304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PickerHost.exe
2015-03-11 19:45 - 2014-10-29 05:09 - 00017216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dllhost.exe
2015-03-11 19:45 - 2014-10-29 05:07 - 00136840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00134280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmmbase.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00110512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00089816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00081008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devenum.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00039720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdmo.dll
2015-03-11 19:45 - 2014-10-29 05:07 - 00036136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msgsm32.acm
2015-03-11 19:45 - 2014-10-29 05:07 - 00029960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imaadp32.acm
2015-03-11 19:45 - 2014-10-29 05:07 - 00028896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msadp32.acm
2015-03-11 19:45 - 2014-10-29 05:07 - 00026816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2015-03-11 19:45 - 2014-10-29 05:07 - 00022720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msg711.acm
2015-03-11 19:45 - 2014-10-29 05:07 - 00018040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll
2015-03-11 19:45 - 2014-10-29 05:06 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RTWorkQ.dll
2015-03-11 19:45 - 2014-10-29 05:06 - 00090368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfAACEnc.dll
2015-03-11 19:45 - 2014-10-29 05:06 - 00080016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2015-03-11 19:45 - 2014-10-29 05:06 - 00074824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2015-03-11 19:45 - 2014-10-29 05:05 - 00120864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IPHLPAPI.DLL
2015-03-11 19:45 - 2014-10-29 05:05 - 00052152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profapi.dll
2015-03-11 19:45 - 2014-10-29 05:05 - 00030984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptbase.dll
2015-03-11 19:45 - 2014-10-29 05:05 - 00026304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2015-03-11 19:45 - 2014-10-29 05:05 - 00020120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2015-03-11 19:45 - 2014-10-29 04:49 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcirt.dll
2015-03-11 19:45 - 2014-10-29 04:48 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SSShim.dll
2015-03-11 19:45 - 2014-10-29 04:48 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2015-03-11 19:45 - 2014-10-29 04:48 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2015-03-11 19:45 - 2014-10-29 04:48 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2015-03-11 19:45 - 2014-10-29 04:48 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\lmhsvc.dll
2015-03-11 19:45 - 2014-10-29 04:47 - 00089088 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2015-03-11 19:45 - 2014-10-29 04:46 - 00272384 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2015-03-11 19:45 - 2014-10-29 04:46 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFPf.sys
2015-03-11 19:45 - 2014-10-29 04:46 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2015-03-11 19:45 - 2014-10-29 04:46 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncui.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pacer.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rassstp.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2015-03-11 19:45 - 2014-10-29 04:45 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc_os.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\shgina.dll
2015-03-11 19:45 - 2014-10-29 04:45 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 02022912 _____ (Microsoft Corporation) C:\WINDOWS\system32\batmeter.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdadiag.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds_ps.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\spfileq.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SPInf.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciavi32.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolss.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\feclient.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmocx.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\bderepair.dll
2015-03-11 19:45 - 2014-10-29 04:44 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\cnvfat.dll
2015-03-11 19:45 - 2014-10-29 04:43 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\repair-bde.exe
2015-03-11 19:45 - 2014-10-29 04:43 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\radardt.dll
2015-03-11 19:45 - 2014-10-29 04:43 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\fmapi.dll
2015-03-11 19:45 - 2014-10-29 04:43 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2015-03-11 19:45 - 2014-10-29 04:43 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2015-03-11 19:45 - 2014-10-29 04:43 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\comp.exe
2015-03-11 19:45 - 2014-10-29 04:43 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fc.exe
2015-03-11 19:45 - 2014-10-29 04:43 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2015-03-11 19:45 - 2014-10-29 04:42 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\aelupsvc.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\uudf.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmiv2.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbnetlib.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\makecab.exe
2015-03-11 19:45 - 2014-10-29 04:42 - 00082432 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\l3codeca.acm
2015-03-11 19:45 - 2014-10-29 04:42 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdmat.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NapiNSP.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\drttransport.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcicda.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcbcp.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2015-03-11 19:45 - 2014-10-29 04:42 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\convert.exe
2015-03-11 19:45 - 2014-10-29 04:41 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\drt.dll
2015-03-11 19:45 - 2014-10-29 04:41 - 00281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2015-03-11 19:45 - 2014-10-29 04:41 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsldpc.dll
2015-03-11 19:45 - 2014-10-29 04:41 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2015-03-11 19:45 - 2014-10-29 04:41 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dispdiag.exe
2015-03-11 19:45 - 2014-10-29 04:41 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpapi.dll
2015-03-11 19:45 - 2014-10-29 04:41 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\expand.exe
2015-03-11 19:45 - 2014-10-29 04:41 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2015-03-11 19:45 - 2014-10-29 04:41 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-03-11 19:45 - 2014-10-29 04:41 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll
2015-03-11 19:45 - 2014-10-29 04:41 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\serwvdrv.dll
2015-03-11 19:45 - 2014-10-29 04:40 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2015-03-11 19:45 - 2014-10-29 04:40 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll
2015-03-11 19:45 - 2014-10-29 04:40 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dimsroam.dll
2015-03-11 19:45 - 2014-10-29 04:39 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtfwd.dll
2015-03-11 19:45 - 2014-10-29 04:39 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2015-03-11 19:45 - 2014-10-29 04:39 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\easconsent.dll
2015-03-11 19:45 - 2014-10-29 04:38 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpsapi.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfui.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\avicap32.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\drtprov.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsiCofire.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2015-03-11 19:45 - 2014-10-29 04:37 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LldpNotify.dll
2015-03-11 19:45 - 2014-10-29 04:37 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2015-03-11 19:45 - 2014-10-29 04:36 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2015-03-11 19:45 - 2014-10-29 04:36 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfp.dll
2015-03-11 19:45 - 2014-10-29 04:36 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll
2015-03-11 19:45 - 2014-10-29 04:36 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\chartv.dll
2015-03-11 19:45 - 2014-10-29 04:36 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcshext.dll
2015-03-11 19:45 - 2014-10-29 04:36 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapistub.dll
2015-03-11 19:45 - 2014-10-29 04:36 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2015-03-11 19:45 - 2014-10-29 04:36 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlaySndSrv.dll
2015-03-11 19:45 - 2014-10-29 04:36 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnification.dll
2015-03-11 19:45 - 2014-10-29 04:36 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzSqlExt.dll
2015-03-11 19:45 - 2014-10-29 04:36 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bridgeunattend.exe
2015-03-11 19:45 - 2014-10-29 04:36 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe
2015-03-11 19:45 - 2014-10-29 04:35 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7.dll
2015-03-11 19:45 - 2014-10-29 04:35 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionQueue.dll
2015-03-11 19:45 - 2014-10-29 04:35 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsutil.exe
2015-03-11 19:45 - 2014-10-29 04:35 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertPolEng.dll
2015-03-11 19:45 - 2014-10-29 04:35 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-03-11 19:45 - 2014-10-29 04:35 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3dlg.dll
2015-03-11 19:45 - 2014-10-29 04:35 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToStatusProvider.dll
2015-03-11 19:45 - 2014-10-29 04:35 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmib.dll
2015-03-11 19:45 - 2014-10-29 04:35 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsdyn.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rgb9rast.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2015-03-11 19:45 - 2014-10-29 04:34 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ocsetapi.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fms.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc_ssp_isv.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc_ssp.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasdatastore.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprovisionsp.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsigd.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmloader.dll
2015-03-11 19:45 - 2014-10-29 04:34 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ias.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsdmo.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbceip.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvfw32.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\oledlg.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmsynth.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\atl.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\KMSVC.DLL
2015-03-11 19:45 - 2014-10-29 04:33 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhevents.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsRdpWebAccess.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\cttunesvr.exe
2015-03-11 19:45 - 2014-10-29 04:33 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthpanapi.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxsstore.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dswave.dll
2015-03-11 19:45 - 2014-10-29 04:33 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsldr.exe
2015-03-11 19:45 - 2014-10-29 04:33 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshcon.dll
2015-03-11 19:45 - 2014-10-29 04:32 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll
2015-03-11 19:45 - 2014-10-29 04:32 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlcecompact40.dll
2015-03-11 19:45 - 2014-10-29 04:32 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\avifil32.dll
2015-03-11 19:45 - 2014-10-29 04:32 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\amstream.dll
2015-03-11 19:45 - 2014-10-29 04:32 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\g711codc.ax
2015-03-11 19:45 - 2014-10-29 04:32 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdiagschd.dll
2015-03-11 19:45 - 2014-10-29 04:32 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDisplayStatusManager.dll
2015-03-11 19:45 - 2014-10-29 04:31 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSyncMetastore.dll
2015-03-11 19:45 - 2014-10-29 04:31 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\PkgMgr.exe
2015-03-11 19:45 - 2014-10-29 04:31 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmview.ocx
2015-03-11 19:45 - 2014-10-29 04:31 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSTPager.ax
2015-03-11 19:45 - 2014-10-29 04:31 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\cca.dll
2015-03-11 19:45 - 2014-10-29 04:31 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsrchph.dll
2015-03-11 19:45 - 2014-10-29 04:31 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gacinstall.dll
2015-03-11 19:45 - 2014-10-29 04:31 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcleanup.dll
2015-03-11 19:45 - 2014-10-29 04:31 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsCtfMonitor.dll
2015-03-11 19:45 - 2014-10-29 04:30 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaatext.dll
2015-03-11 19:45 - 2014-10-29 04:30 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Syncreg.dll
         

Antwort

Themen zu Webseiten werden umgeleitet - iStartSurf und mehr
aktiv, anleitung, autostart, biete, bietet, code, deaktiviert, deinstallieren, download, hoffe, hängt, installmanager.exe, liebe, nichts, onedrive, rechner, schei, systems, systemsteuerung, troja, umgeleitet, unerwünschte, ungefragt, webseite, webseiten, werbung, öffnen




Ähnliche Themen: Webseiten werden umgeleitet - iStartSurf und mehr


  1. Windows 7: Webseiten werden auf Werbung umgeleitet.
    Log-Analyse und Auswertung - 28.10.2015 (24)
  2. Windows 7: Webseiten werden auf Werbung umgeleitet
    Log-Analyse und Auswertung - 19.08.2015 (11)
  3. Windows 7: Webseiten werden auf Werbung umgeleitet
    Log-Analyse und Auswertung - 15.07.2015 (19)
  4. Windows 7: Webseiten werden auf Werbung umgeleitet, Chrome startet nicht mehr
    Log-Analyse und Auswertung - 03.06.2015 (3)
  5. Windows 7: Webseiten werden auf Werbung umgeleitet
    Log-Analyse und Auswertung - 24.04.2015 (31)
  6. Windows 8.1: Webseiten werden auf Werbung umgeleitet
    Log-Analyse und Auswertung - 13.01.2015 (8)
  7. Windows 7: Webseiten werden auf Werbung umgeleitet.
    Log-Analyse und Auswertung - 10.01.2015 (10)
  8. Windows 7: Webseiten werden auf Werbung umgeleitet.
    Plagegeister aller Art und deren Bekämpfung - 25.11.2014 (9)
  9. Windows 7: Webseiten werden auf Werbung umgeleitet.
    Log-Analyse und Auswertung - 12.11.2014 (8)
  10. Webseiten werden auf Werbung umgeleitet
    Plagegeister aller Art und deren Bekämpfung - 08.06.2014 (49)
  11. Windows 7: Webseiten werden auf De.reimageplus.com umgeleitet.
    Log-Analyse und Auswertung - 21.05.2014 (13)
  12. Windows 7: Webseiten werden auf Werbung umgeleitet
    Log-Analyse und Auswertung - 28.04.2014 (9)
  13. Windows 7: Webseiten werden auf Werbung umgeleitet.
    Plagegeister aller Art und deren Bekämpfung - 26.04.2014 (4)
  14. Webseiten werden auf Werbung umgeleitet
    Log-Analyse und Auswertung - 13.04.2014 (5)
  15. Windows 7: Webseiten werden auf Werbung umgeleitet.
    Log-Analyse und Auswertung - 30.11.2013 (12)
  16. Windows 8: Webseiten werden auf Werbung umgeleitet
    Log-Analyse und Auswertung - 24.08.2013 (5)
  17. Links werden umgeleitet, AV Webseiten und Programme funktionieren nicht mehr, Homepage gehackt
    Plagegeister aller Art und deren Bekämpfung - 13.07.2010 (12)

Zum Thema Webseiten werden umgeleitet - iStartSurf und mehr - Hallo liebe Trojaner-Boarder, mein Sohn hat sich offenbar mit einem Download den iStartSurf runtergeladen. Nun haben wir auf dem Rechner ständig Werbung und zig Webseiten öffnen sich ungefragt gleich nach - Webseiten werden umgeleitet - iStartSurf und mehr...
Archiv
Du betrachtest: Webseiten werden umgeleitet - iStartSurf und mehr auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.