Code:
Alles auswählen Aufklappen ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:09-12-2015
durchgeführt von Senichiro (Administrator) auf SENICHIRO-PC (10-12-2015 21:49:50)
Gestartet von C:\Users\Senichiro\Downloads
Geladene Profile: Senichiro (Verfügbare Profile: Senichiro & DefaultAppPool)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Edge)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Lavasoft Limited) C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe
() C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Hi-Rez Studios) D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(TeamSpeak Systems GmbH) D:\Users\Senichiro\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe
(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.4632\Agent.exe
(Blizzard Entertainment) D:\Battle.net\Battle.net.6382\Battle.net.exe
() D:\DeepBot - Twitch Streamer Assistant\DeepBot.exe
() C:\Program Files\OBS\OBS.exe
(The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe
(The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe
(The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe
(The CefSharp Authors) D:\DeepBot - Twitch Streamer Assistant\CefSharp.BrowserSubprocess.exe
(Microsoft Corporation) C:\Windows\System32\SndVol.exe
(Acreon Inc.) C:\Users\Senichiro\Downloads\WowMatrix.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
() C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe
() C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUClient.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.23.23.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6508.23761.0_x64__8wekyb3d8bbwe\OHub.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1511.65020.0_x64__8wekyb3d8bbwe\Time.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\Senichiro\Downloads\FRST64 (2).exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14021336 2015-06-18] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1804432 2015-11-10] (NVIDIA Corporation)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [803200 2015-12-05] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66320 2015-10-14] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216 2015-06-15] (Intel Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [3011152 2015-11-10] (Valve Corporation)
HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50748544 2015-12-01] (Skype Technologies S.A.)
HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
Startup: C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IMVU.lnk [2015-12-10]
ShortcutTarget: IMVU.lnk -> C:\Users\Senichiro\AppData\Roaming\IMVUClient\IMVUQualityAgent.exe ()
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{ade0edd1-6c25-4247-ba9b-9483aa2ebb75}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{fbbede9e-64f8-453f-9131-ce9aea39b38f}: [DhcpNameServer] 192.168.2.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.avira.net/#web/result?source=art&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avira.net/#web/result?source=art&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q=
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q=
HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.avira.net/#web/result?source=art&q=
HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://search.avira.net/#web/result?source=art&q=
HKU\S-1-5-21-3766548690-2271658043-1216120868-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://search.avira.net/#web/result?source=art&q=
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_66\bin\ssv.dll [2015-12-03] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_66\bin\jp2ssv.dll [2015-12-03] (Oracle Corporation)
DPF: HKLM-x32 {93C449FA-ECFB-402F-A8C7-37E4F8D60E49} hxxp://dl.pmang.com/common/pmangctl/pmangax.cab
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll [2015-12-09] ()
FF Plugin: @java.com/DTPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll [2015-12-03] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.66.2 -> C:\Program Files\Java\jre1.8.0_66\bin\plugin2\npjp2.dll [2015-12-03] (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll [2015-12-09] ()
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-11-05] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-11-05] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.startfenster.com"
CHR Profile: C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (ProxFlow) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2015-12-04]
CHR Extension: (Google Slides) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-03]
CHR Extension: (Google Docs) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-03]
CHR Extension: (Google Drive) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-03]
CHR Extension: (YouTube) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-03]
CHR Extension: (Google Search) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-03]
CHR Extension: (Google Sheets) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-03]
CHR Extension: (AdBlock Premium) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\fndlhnanhedoklpdaacidomdnplcjcpj [2015-12-03]
CHR Extension: (Google Docs Offline) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-03]
CHR Extension: (AdBlock) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-12-04]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-12-03]
CHR Extension: (Gmail) - C:\Users\Senichiro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-03]
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [948392 2015-12-05] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466408 2015-12-05] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466408 2015-12-05] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1418560 2015-12-05] (Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [243968 2015-10-14] (Avira Operations GmbH & Co. KG)
R2 HiPatchService; D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2015-11-03] (Hi-Rez Studios) [Datei ist nicht signiert]
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-18] (Intel Corporation)
R2 LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.3.4.7\LavasoftTcpService.exe [2751760 2015-12-03] (Lavasoft Limited)
S2 MBAMScheduler; D:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes)
S2 MBAMService; D:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [3685968 2015-07-22] (INCA Internet Co., Ltd.)
S3 Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-08] (Electronic Arts)
R2 SearchProtectionService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [17168 2015-12-03] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [135880 2015-12-08] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [146696 2015-12-08] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-08] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [73032 2015-12-08] (Avira Operations GmbH & Co. KG)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2015-12-08] (Malwarebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
S3 EverestDriver; \??\C:\Program Files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [X]
U3 idsvc; kein ImagePath
U3 wpcsvc; kein ImagePath
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-12-10 21:47 - 2015-12-10 21:49 - 02369024 _____ (Farbar) C:\Users\Senichiro\Downloads\FRST64 (2).exe
2015-12-10 21:46 - 2015-12-10 21:46 - 00000000 ____D C:\WINDOWS\system32\Drivers\etc\BACKUP
2015-12-10 21:45 - 2015-12-10 21:45 - 00000215 _____ C:\Users\Senichiro\Downloads\antiskypewerbung (1).zip
2015-12-10 21:44 - 2015-12-10 21:45 - 00000000 ____D C:\Users\Senichiro\Desktop\Neuer Ordner (2)
2015-12-10 21:44 - 2015-12-10 21:45 - 00000000 ____D C:\Users\Senichiro\Desktop\Neuer Ordner
2015-12-10 21:43 - 2015-12-10 21:43 - 00508823 _____ C:\Users\Senichiro\Downloads\bl_hst_edit.zip
2015-12-10 21:43 - 2015-12-10 21:43 - 00000215 _____ C:\Users\Senichiro\Downloads\antiskypewerbung.zip
2015-12-10 08:44 - 2015-12-10 08:44 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Acreon
2015-12-10 08:44 - 2015-12-10 08:44 - 00000000 ____D C:\Users\Senichiro\AppData\Local\._LiveCode_
2015-12-10 08:43 - 2015-12-10 08:44 - 09926144 _____ (Acreon Inc.) C:\Users\Senichiro\Downloads\WowMatrix.exe
2015-12-10 00:27 - 2015-12-10 00:27 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Vorlagen
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Startmenü
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Netzwerkumgebung
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Lokale Einstellungen
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Eigene Dateien
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Druckumgebung
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Videos
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Musik
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Bilder
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Verlauf
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Anwendungsdaten
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 _SHDL C:\Users\DefaultAppPool\Anwendungsdaten
2015-12-10 00:27 - 2015-12-10 00:27 - 00000000 ____D C:\Users\DefaultAppPool
2015-12-10 00:27 - 2015-12-08 20:06 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Media Center Programs
2015-12-10 00:25 - 2015-12-10 00:25 - 00000000 ____D C:\Users\Senichiro\Documents\BnS
2015-12-10 00:25 - 2015-12-10 00:25 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Awesomium
2015-12-10 00:24 - 2015-12-10 00:24 - 00000000 ____D C:\Program Files\Common Files\INCA Shared
2015-12-10 00:24 - 2015-07-22 14:01 - 03685968 _____ (INCA Internet Co., Ltd.) C:\WINDOWS\SysWOW64\GameMon.des
2015-12-10 00:24 - 2005-01-03 07:43 - 00004682 _____ (INCA Internet Co., Ltd.) C:\WINDOWS\SysWOW64\npptNT2.sys
2015-12-10 00:24 - 2003-07-18 22:17 - 00005174 _____ C:\WINDOWS\SysWOW64\nppt9x.vxd
2015-12-09 22:48 - 2015-12-09 22:48 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-12-09 22:40 - 2015-12-09 22:40 - 00000000 ____D C:\Users\Senichiro\AppData\Local\PeerDistRepub
2015-12-09 21:51 - 2015-12-09 21:51 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Blizzard
2015-12-09 21:18 - 2015-12-09 21:18 - 00001527 _____ C:\Users\Public\Desktop\Blade & Soul CBT.lnk
2015-12-09 21:18 - 2015-12-09 21:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT
2015-12-09 21:15 - 2015-12-09 21:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest
2015-12-09 21:15 - 2015-12-09 21:15 - 00000000 ____D C:\Program Files (x86)\NCWest
2015-12-09 21:12 - 2015-12-09 21:14 - 08998672 _____ (NC Interactive, LLC) C:\Users\Senichiro\Downloads\BnS_CBT Lite Installer.exe
2015-12-09 20:00 - 2015-12-09 20:00 - 00001282 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2015-12-09 20:00 - 2015-12-09 20:00 - 00001270 _____ C:\Users\Public\Desktop\Mozilla Thunderbird.lnk
2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Thunderbird
2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Mozilla
2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Thunderbird
2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2015-12-09 20:00 - 2015-12-09 20:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-09 19:59 - 2015-12-09 19:59 - 01466656 _____ C:\Users\Senichiro\Downloads\Thunderbird - CHIP-Installer.exe
2015-12-09 12:00 - 2015-12-09 12:00 - 00000000 ____D C:\Users\Senichiro\Documents\BioWare
2015-12-09 11:59 - 2015-12-09 11:59 - 00000996 _____ C:\Users\Public\Desktop\Dragon Age Inquisition.lnk
2015-12-09 11:28 - 2015-12-10 19:04 - 00004174 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{471E0BF4-76F9-4020-AD86-AA65C40E47B1}
2015-12-09 10:06 - 2015-12-09 10:06 - 00000000 ____D C:\Users\Senichiro\AppData\Local\MicrosoftEdge
2015-12-09 09:03 - 2015-12-09 09:04 - 02369024 _____ (Farbar) C:\Users\Senichiro\Downloads\FRST64 (1).exe
2015-12-08 21:11 - 2015-12-08 21:11 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2015-12-08 21:06 - 2015-12-09 12:00 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Origin
2015-12-08 21:06 - 2015-12-08 21:07 - 00000000 ____D C:\Users\Senichiro\AppData\Roaming\Origin
2015-12-08 20:57 - 2015-12-09 12:00 - 00000000 ____D C:\ProgramData\Origin
2015-12-08 20:57 - 2015-12-09 12:00 - 00000000 ____D C:\ProgramData\Electronic Arts
2015-12-08 20:57 - 2015-12-08 20:57 - 00000733 _____ C:\Users\Public\Desktop\Origin.lnk
2015-12-08 20:55 - 2015-12-08 20:57 - 31335616 _____ (Electronic Arts, Inc.) C:\Users\Senichiro\Downloads\OriginThinSetup.exe
2015-12-08 20:40 - 2015-12-08 20:40 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Comms
2015-12-08 20:32 - 2015-12-08 20:32 - 00002370 _____ C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-12-08 20:32 - 2015-12-08 20:32 - 00000000 ___RD C:\Users\Senichiro\OneDrive
2015-12-08 20:21 - 2015-12-08 20:21 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-12-08 20:20 - 2015-10-29 19:43 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2015-12-08 20:20 - 2015-10-29 19:43 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2015-12-08 20:20 - 2015-10-29 19:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll
2015-12-08 20:20 - 2015-10-29 19:25 - 06359040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2015-12-08 20:20 - 2015-10-29 19:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2015-12-08 20:19 - 2015-12-08 20:19 - 00001051 _____ C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk
2015-12-08 20:19 - 2015-12-08 20:19 - 00000000 ____D C:\Users\Senichiro\AppData\Local\ActiveSync
2015-12-08 20:18 - 2015-12-08 20:18 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Publishers
2015-12-08 20:17 - 2015-12-09 08:57 - 00000000 ____D C:\Users\Senichiro\AppData\Local\Packages
2015-12-08 20:17 - 2015-12-08 21:09 - 00000000 __RHD C:\Users\Public\AccountPictures
2015-12-08 20:17 - 2015-12-08 20:17 - 00000020 ___SH C:\Users\Senichiro\ntuser.ini
2015-12-08 20:17 - 2015-12-08 20:17 - 00000000 ____D C:\Users\Senichiro\AppData\Local\TileDataLayer
2015-12-08 20:16 - 2015-12-08 20:16 - 00000000 ____D C:\ProgramData\USOShared
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Vorlagen
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Startmenü
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2015-12-08 20:15 - 2015-12-08 20:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2015-12-08 20:14 - 2015-12-09 12:46 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-12-08 20:14 - 2015-12-08 20:14 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-12-08 20:06 - 2015-12-08 20:06 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-12-08 20:06 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2015-12-08 20:06 - 2015-12-08 20:06 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2015-12-08 20:04 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2015-12-08 20:03 - 2015-12-09 12:52 - 02086168 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-12-08 20:03 - 2015-12-09 12:48 - 00000000 ____D C:\Users\Senichiro
2015-12-08 20:03 - 2015-12-08 20:03 - 01989310 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Vorlagen
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Startmenü
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Netzwerkumgebung
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Lokale Einstellungen
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Eigene Dateien
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Druckumgebung
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Documents\Eigene Videos
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Documents\Eigene Musik
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Documents\Eigene Bilder
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\AppData\Local\Verlauf
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\AppData\Local\Anwendungsdaten
2015-12-08 20:03 - 2015-12-08 20:03 - 00000000 _SHDL C:\Users\Senichiro\Anwendungsdaten
2015-12-08 20:00 - 2015-12-09 12:49 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-12-08 20:00 - 2015-12-09 12:46 - 00000000 ____D C:\ProgramData\NVIDIA
2015-12-08 20:00 - 2015-12-08 20:05 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-12-08 20:00 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-12-08 20:00 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2015-12-08 20:00 - 2015-12-08 20:00 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2015-12-08 20:00 - 2015-12-08 20:00 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-12-08 20:00 - 2015-12-08 20:00 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2015-12-08 20:00 - 2015-12-08 20:00 - 00000000 ____D C:\Program Files\Realtek
2015-12-08 20:00 - 2015-08-07 01:24 - 06873904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-12-08 20:00 - 2015-08-07 01:24 - 03492984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2015-12-08 20:00 - 2015-08-07 01:24 - 02558768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2015-12-08 20:00 - 2015-08-07 01:24 - 00937592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2015-12-08 20:00 - 2015-08-07 01:24 - 00385328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2015-12-08 20:00 - 2015-08-07 01:24 - 00062584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-12-08 20:00 - 2015-08-03 11:04 - 05133709 _____ C:\WINDOWS\system32\nvcoproc.bin
2015-12-08 20:00 - 2015-07-17 23:58 - 00082432 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2015-12-08 19:59 - 2015-12-08 20:04 - 00000000 ____D C:\Program Files\Intel
2015-12-08 19:59 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2015-12-08 19:55 - 2015-12-08 20:07 - 00189344 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-12-08 19:54 - 2015-12-08 20:16 - 00000000 ___DC C:\WINDOWS\Panther
2015-12-08 19:52 - 2015-12-08 19:52 - 00000000 ____D C:\Windows.old
2015-12-08 19:51 - 2015-12-08 19:51 - 24601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 22572632 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 22393856 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 21125408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 19338240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 13381120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 13017600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 07476576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 03671896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02918808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02772584 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2015-12-08 19:51 - 2015-12-08 19:51 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2015-12-08 19:51 - 2015-12-08 19:51 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02653816 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02647552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02598400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02587136 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02280448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02185840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02152800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 02126848 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-12-08 19:51 - 2015-12-08 19:51 - 02121216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02064384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 02049024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-12-08 19:51 - 2015-12-08 19:51 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01859448 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01817160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01540768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01505280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 01387008 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01284960 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00975200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00969728 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00809312 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00795840 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00791552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00783360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00704352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00686592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00536768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2015-12-08 19:51 - 2015-12-08 19:51 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00440160 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00431232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00408128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00405048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2015-12-08 19:51 - 2015-12-08 19:51 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00245848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2015-12-08 19:51 - 2015-12-08 19:51 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2015-12-08 19:51 - 2015-12-08 19:51 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2015-12-08 19:51 - 2015-12-08 19:51 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll