Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 18.02.2016, 08:48   #1
MarcS
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



Hallo liebes Trojaner-Board.de Team,

ich hoffe ihr könnt mir weiterhelfen. Und zwar habe ich schon seit einiger Zeit das Problem, dass sich ständig nach ein paar Minuten ohne Eingabe am PC irgendwelche englischsprachigen Websides öffnen. Ich habe schon herausgefunden das sich alle Seiten über "repadnet.com" verbinden. Ich weiß nicht genau ob es denen um Seitenaufrufe geht oder ob das ganze noch schwerwiegendere Auswirkungen hat. Auf jedenfall muss das weg

Wäre für jede Hilfe dankbar

MarcS

Alt 18.02.2016, 09:05   #2
Deathkid535
/// Malwareteam
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK





Mein Name ist Dennis und ich werde dir bei der Bereinigung helfen.

Bitte beachte, dass es ein paar Regeln gibt:
  • Bitte lies meine Posts komplett durch bevor du sie abarbeitest
  • Wenn ein Problem auftauchen sollte, unterbreche deine Arbeit, poste die entstandenen Logs und schildere dieses so genau wie möglich.
  • Bitte kein Crossposting
  • Installiere oder Deinstalliere keine Software ohne Aufforderung
  • Bitte verwende nur die Tools welche hier im Thread erwähnt werden
  • Antworte innerhalb von 24h um eine sinnvolle Bereinigung zu ermöglichen
  • Poste die Logs immer in CODE-Tags (#-Button), zur Not die Logs einfach aufteilen

Sollte ich nicht innerhalb von 48h antworten, schreibe mir eine PM!

Wir benötigen für eine sinnvolle Analyse zuerst ein FRST-Log.

Schritt # 1: FRST

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)



Schritt # 2: Bitte Posten
  • Die FRST.txt
  • Die Addition.txt
__________________

__________________

Alt 18.02.2016, 09:29   #3
MarcS
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



Hallo Dennis,
vielen Dank für die schnelle Antwort und für deine Hilfe

Hier die FRST.txt
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:17-02-2016
durchgeführt von Marc (Administrator) auf MARCPC (18-02-2016 10:18:37)
Gestartet von C:\Users\Marc\Downloads
Geladene Profile: Marc (Verfügbare Profile: Marc)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\MAX\nimxs.exe
(Mentor Graphics Corporation) H:\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\remotesolverdispatcherservice.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\nisvcloc\nisvcloc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Mentor Graphics Corporation) H:\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\dispatcher.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lktsrv.exe
(National Instruments, Inc.) C:\Windows\SysWOW64\lkcitdl.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe
(Spotify Ltd) C:\Users\Marc\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Dropbox, Inc.) C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet 5740 series\Bin\ScanToPCActivationApp.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet 5740 series\Bin\HPNetworkCommunicatorCom.exe
(Spotify Ltd) C:\Users\Marc\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\Marc\AppData\Roaming\Spotify\SpotifyCrashService.exe
(Spotify Ltd) C:\Users\Marc\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\Marc\AppData\Roaming\Spotify\Spotify.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
(Corsair Components  Inc) C:\Program Files (x86)\Corsair\M60 Mouse\M60Hid.exe
(Dassault Systèmes SolidWorks Corp.) H:\SOLIDWORKS Corp\SOLIDWORKS\sldworks_fs.exe
(Corsair Components  Inc) C:\Program Files (x86)\Corsair\M60 Mouse\CorsTra.exe
(Dropbox, Inc.) C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.16941.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2016.27.2.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.49020.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-12-17] (Apple Inc.)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4888264 2016-02-03] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Corsair M60 Mouse] => C:\Program Files (x86)\Corsair\M60 Mouse\M60Hid.exe [1766912 2013-06-05] (Corsair Components  Inc)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-11] (Raptr, Inc)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [212000 2016-01-18] (Geek Software GmbH)
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [Spotify Web Helper] => C:\Users\Marc\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2355312 2016-01-30] (Spotify Ltd)
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [ExpoThemes-Driver] => C:\Program Files (x86)\ExpoThemes\Ex8Starter.exe [5120 2014-01-28] (ExpoThemes)
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [NIRegistrationWizard] => C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe [847000 2013-04-19] ()
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [Dropbox Update] => C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.)
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [HP Officejet 5740 series (NET)] => C:\Program Files\HP\HP Officejet 5740 series\Bin\ScanToPCActivationApp.exe [3483656 2014-08-22] (Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [Spotify] => C:\Users\Marc\AppData\Roaming\Spotify\Spotify.exe [8449136 2016-01-30] (Spotify Ltd)
ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE OC_GURU.lnk [2015-03-24]
ShortcutTarget: GIGABYTE OC_GURU.lnk -> C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe (GIGABYTE Technology Co.,Ltd.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting.lnk [2015-05-05]
ShortcutTarget: NI Error Reporting.lnk -> C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe (National Instruments Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SOLIDWORKS 2015 Schnellstart.lnk [2016-01-16]
ShortcutTarget: SOLIDWORKS 2015 Schnellstart.lnk -> C:\Windows\Installer\{F8093877-4F2C-40ED-9BA7-2F9F48F5176F}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe (Flexera Software LLC)
Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-12-13]
ShortcutTarget: Dropbox.lnk -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Winsock: Catalog5 07 C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [26512 2014-06-06] (National Instruments Corporation)
Winsock: Catalog5-x64 07 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [28560 2014-06-06] (National Instruments Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{68ad92a0-c68f-48ed-822d-7ee599e8900a}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{a727a2b6-e543-47ab-b562-f7ced5ba86b9}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com/
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-12-15] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-25] (Oracle Corporation)
BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-11-20] (AO Kaspersky Lab)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-22] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-25] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2015-12-15] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-25] (Oracle Corporation)
BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-11-20] (AO Kaspersky Lab)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2016-01-22] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-25] (Oracle Corporation)
Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-11-20] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-11-20] (AO Kaspersky Lab)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-08-10] (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL [2015-08-10] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104
FF Homepage: hxxp://www.t-online.de/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-09] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-25] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-25] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-08-10] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-09] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1215155.dll [Keine Datei]
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-25] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-25] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-03] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL [2015-08-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin HKU\.DEFAULT: @hola.org/FlashPlayer -> C:\Users\Marc\AppData\Local\Hola\firefox_hola\app\flash\NPSWF32_18_0_0_232.dll [Keine Datei]
FF Plugin HKU\.DEFAULT: @hola.org/vlc -> C:\Users\Marc\AppData\Local\Hola\firefox_hola\app\vlc\npvlc.dll [Keine Datei]
FF Plugin HKU\S-1-5-21-1693380438-3469794576-592618473-1001: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\Marc\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-07-25] (RocketLife, LLP)
FF Plugin HKU\S-1-5-21-1693380438-3469794576-592618473-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Marc\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-04-27] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2012win32.dll [2014-05-13] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2013win32.dll [2014-04-02] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2014win32.dll [2014-06-25] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Extension: FoxTab - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}.xpi [2015-12-29]
FF Extension: Greasemonkey - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2015-12-29]
FF Extension: Tab Mix Plus - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2015-12-29]
FF Extension: Download Manager Tweak - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi [2015-12-29]
FF Extension: Thumbnail Zoom - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{E10A6337-382E-4FE6-96DE-936ADC34DD04}.xpi [2015-12-29]
FF Extension: DownThemAll! - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2015-12-29]
FF Extension: MetaProducts Integration - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{D249FD00-4DF9-11D9-9FDC-0080481ADA61}.xpi [2015-12-29]
FF Extension: Gutscheinaffe - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{9220f99f-5b7d-4a4d-97ca-209991796400}.xpi [2015-12-29]
FF Extension: TV-Fox - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{2f17f610-5e97-4fed-828f-9940b7b577a4} [2015-12-29]
FF Extension: Flash and Video Download - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} [2015-12-31]
FF Extension: Autofill Forms - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\autofillForms@blueimp.net.xpi [2016-01-22]
FF Extension: ImTranslator - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2016-01-23]
FF Extension: Personas Plus - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\personas@christopher.beard.xpi [2016-01-29]
FF Extension: FoxyProxy Standard - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\foxyproxy@eric.h.jung [2016-02-17]
FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox [2015-12-02]
FF Extension: Video Downloader Professional - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\ffext_basicvideoext@startpage24.xpi [2015-12-29]
FF Extension: gui:config - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\guiconfig@slosd.net.xpi [2015-12-29]
FF Extension: ProxTube - Unblock YouTube - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\ich@maltegoetz.de.xpi [2015-12-29]
FF Extension: Auto Shutdown NG - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\jid0-HZ5UvAEiWWAxT9TKLuhEgUCARqo@jetpack.xpi [2015-12-29]
FF Extension: Flagfox - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2016-02-17]
FF Extension: Adblock Plus - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-01-22]
FF Extension: Super Web Accelerator ! - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\firefox [2016-02-13] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_D772DC8D6FAF43A29B25C4EBAA5AD1DE@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox

Chrome: 
=======
CHR Profile: C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-26]
CHR Extension: (Google Drive) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-13]
CHR Extension: (OkayFreedom) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bckipplcmnfhblnpibpbehenelnkpecd [2015-07-22]
CHR Extension: (YouTube) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-13]
CHR Extension: (Google-Suche) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-13]
CHR Extension: (Google Docs Offline) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-13]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-11-13]
CHR Extension: (Google Mail) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-30]
CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka
CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 AbAdminService; C:\Program Files (x86)\ToolbarTerminator\AbAdminService.exe [34568 2015-10-20] (Ascora GmbH)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000 2015-11-20] (Kaspersky Lab ZAO)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2787512 2015-12-22] (Microsoft Corporation)
S3 CoordinatorServiceHost; H:\SOLIDWORKS Corp\SOLIDWORKS\swScheduler\DTSCoordinatorService.exe [81400 2015-11-11] (Dassault Systèmes SolidWorks Corporation)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Datei ist nicht signiert]
R2 LkCitadelServer; C:\WINDOWS\SysWOW64\lkcitdl.exe [695136 2014-01-14] (National Instruments, Inc.)
R2 lkClassAds; C:\WINDOWS\SysWOW64\lkads.exe [53032 2014-06-09] (National Instruments Corporation)
R2 lkTimeSync; C:\WINDOWS\SysWOW64\lktsrv.exe [63280 2014-06-09] (National Instruments Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation)
R2 mxssvr; C:\Program Files (x86)\National Instruments\MAX\nimxs.exe [84280 2014-06-07] (National Instruments Corporation)
R2 NIApplicationWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [57184 2014-06-10] (National Instruments Corporation)
S4 NIApplicationWebServer64; C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [80736 2014-06-10] (National Instruments Corporation)
R2 niauth; C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe [569152 2014-06-20] (National Instruments Corporation)
R2 NIDomainService; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [394544 2014-06-09] (National Instruments Corporation)
S3 NILM License Manager; C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe [1427688 2010-08-02] (Macrovision Corporation)
R2 nimDNSResponder; C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [320368 2014-06-06] (National Instruments Corporation)
R2 NINetworkDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [177536 2014-06-19] (National Instruments Corporation)
R2 NiSvcLoc; C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe [89928 2014-06-06] (National Instruments Corporation)
R2 NISystemWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [57168 2014-06-10] (National Instruments Corporation)
R2 NITaggerService; C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe [692040 2014-06-10] (National Instruments Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2016-02-03] (Electronic Arts)
R2 RemoteSolverDispatcher; H:\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\remotesolverdispatcherservice.exe [238848 2015-11-10] (Mentor Graphics Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [290520 2014-01-08] (Realtek Semiconductor)
S3 SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2016-01-16] (SolidWorks) [Datei ist nicht signiert]
S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111120 2016-01-24] (Advanced Micro Devices)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
S3 GPCIDrv; C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\GPCIDrv64.sys [14376 2010-02-04] ()
R2 IntelHaxm; C:\Windows\system32\DRIVERS\IntelHaxm.sys [84992 2014-11-18] (Intel  Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70512 2015-06-27] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [68280 2015-06-06] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [181640 2015-11-20] (AO Kaspersky Lab)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [227512 2015-11-20] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [934272 2015-12-02] (AO Kaspersky Lab)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [39608 2015-06-11] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [41656 2015-06-06] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-11-20] (AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [87944 2015-11-20] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [102584 2015-06-16] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-03-17] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-03-17] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [193336 2015-10-01] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R3 WIMBLEMS; C:\Windows\system32\drivers\WIMBLEMS.sys [25600 2012-03-27] ( )

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-02-18 10:18 - 2016-02-18 10:18 - 00032561 _____ C:\Users\Marc\Downloads\FRST.txt
2016-02-18 10:18 - 2016-02-18 10:18 - 00000000 ____D C:\FRST
2016-02-18 10:17 - 2016-02-18 10:18 - 02371072 _____ (Farbar) C:\Users\Marc\Downloads\FRST64.exe
2016-02-18 09:07 - 2016-02-18 09:07 - 00000000 ___HD C:\OneDriveTemp
2016-02-14 18:31 - 2016-02-14 18:31 - 00002424 _____ C:\Users\Marc\Desktop\Rise of the Tomb Raider.lnk
2016-02-14 15:25 - 2016-02-14 15:25 - 00018366 _____ C:\Users\Marc\Downloads\Stundenplanentwurf-SS2016-08022016.pdf
2016-02-14 11:53 - 2016-02-14 11:53 - 00209920 _____ C:\Users\Marc\Downloads\Grillfall_überarbeitet_Juli_2015.ppt
2016-02-14 11:51 - 2016-02-14 11:51 - 00094720 _____ C:\Users\Marc\Downloads\Haut.ppt
2016-02-14 11:33 - 2016-02-14 11:33 - 00071475 _____ C:\Users\Marc\Downloads\2016-02-03_Klausur_mit_lsg.pdf
2016-02-14 11:31 - 2016-02-14 11:31 - 00004194 _____ C:\Users\Marc\Downloads\Ergebnisse_klausur_WS_2015-16.pdf
2016-02-13 17:38 - 2016-02-13 17:38 - 00000000 ____D C:\Program Files (x86)\AMD
2016-02-13 17:37 - 2016-02-13 17:38 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2016-02-13 17:27 - 2016-02-13 17:36 - 329420248 _____ (AMD Inc.) C:\Users\Marc\Downloads\non-whql-64bit-radeon-software-crimson-16.1.1-win10-win8.1-win7-feb3.exe
2016-02-13 10:59 - 2016-02-13 17:39 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-02-10 14:20 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-02-10 14:20 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-02-10 14:20 - 2016-01-27 07:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-02-10 14:20 - 2016-01-27 07:15 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-02-10 14:20 - 2016-01-27 07:01 - 07476064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-02-10 14:20 - 2016-01-27 07:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-02-10 14:20 - 2016-01-27 07:01 - 01819720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-02-10 14:20 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-02-10 14:20 - 2016-01-27 06:57 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-02-10 14:20 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-02-10 14:20 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-02-10 14:20 - 2016-01-27 06:56 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-02-10 14:20 - 2016-01-27 06:55 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-02-10 14:20 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-02-10 14:20 - 2016-01-27 06:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-02-10 14:20 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-02-10 14:20 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-02-10 14:20 - 2016-01-27 06:45 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-02-10 14:20 - 2016-01-27 06:45 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-02-10 14:20 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-02-10 14:20 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-02-10 14:20 - 2016-01-27 06:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-02-10 14:20 - 2016-01-27 06:37 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-02-10 14:20 - 2016-01-27 06:37 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-02-10 14:20 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-02-10 14:20 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-02-10 14:20 - 2016-01-27 06:13 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-02-10 14:20 - 2016-01-27 06:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-02-10 14:20 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-02-10 14:20 - 2016-01-27 06:10 - 22394368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-02-10 14:20 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-02-10 14:20 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-10 14:20 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-02-10 14:20 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-02-10 14:20 - 2016-01-27 06:05 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-02-10 14:20 - 2016-01-27 06:05 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-02-10 14:20 - 2016-01-27 06:05 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-02-10 14:20 - 2016-01-27 06:05 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-02-10 14:20 - 2016-01-27 06:04 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-02-10 14:20 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-02-10 14:20 - 2016-01-27 06:03 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-02-10 14:20 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-02-10 14:20 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-02-10 14:20 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-02-10 14:20 - 2016-01-27 05:58 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-02-10 14:20 - 2016-01-27 05:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-02-10 14:20 - 2016-01-27 05:55 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-02-10 14:20 - 2016-01-27 05:55 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-02-10 14:20 - 2016-01-27 05:54 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-02-10 14:20 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-02-10 14:20 - 2016-01-27 05:50 - 02230784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-02-10 14:20 - 2016-01-27 05:50 - 01504768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-02-10 14:20 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-02-10 14:20 - 2016-01-27 05:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-02-10 14:20 - 2016-01-27 05:48 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-02-10 14:20 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-02-10 14:20 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-02-10 14:20 - 2016-01-27 05:41 - 03592704 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-02-10 14:20 - 2016-01-27 05:39 - 02275328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-02-10 14:20 - 2016-01-27 05:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-02-10 14:20 - 2016-01-27 05:38 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-02-10 14:20 - 2016-01-27 05:37 - 04894720 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-02-10 14:20 - 2016-01-27 05:36 - 02757120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-02-10 14:20 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-02-10 14:20 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-02-09 19:40 - 2016-02-09 19:40 - 00696524 _____ C:\Users\Marc\Downloads\ges_16-0002623273_6b50461e19a4707da5ff7c5f4153da5e.pdf
2016-02-03 17:14 - 2016-02-03 17:14 - 00118608 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00458472 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00141792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-02-03 17:12 - 2016-02-03 17:12 - 10963496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-02-03 17:12 - 2016-02-03 17:12 - 00120656 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-02-03 17:09 - 2016-02-03 17:09 - 00296648 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2016-02-03 17:01 - 2016-02-03 17:01 - 49984512 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-02-03 17:01 - 2016-02-03 17:01 - 00235008 _____ C:\WINDOWS\system32\clinfo.exe
2016-02-03 16:58 - 2016-02-03 16:58 - 00065024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-02-03 16:58 - 2016-02-03 16:58 - 00059392 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-02-03 16:57 - 2016-02-03 16:57 - 27596800 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-02-03 16:35 - 2016-02-03 16:35 - 06643200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-02-03 16:35 - 2016-02-03 16:35 - 00677888 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-02-03 16:35 - 2016-02-03 16:35 - 00562688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2016-02-03 16:35 - 2016-02-03 16:35 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-02-03 16:35 - 2016-02-03 16:35 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2016-02-03 16:30 - 2016-02-03 16:30 - 05223936 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2016-02-03 16:27 - 2016-02-03 16:27 - 00134656 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-02-03 16:27 - 2016-02-03 16:27 - 00123392 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-02-03 16:26 - 2016-02-03 16:26 - 31378432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-02-03 16:26 - 2016-02-03 16:26 - 00096256 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-02-03 16:26 - 2016-02-03 16:26 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2016-02-03 16:25 - 2016-02-03 16:25 - 08007680 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2016-02-03 16:24 - 2016-02-03 16:24 - 09803264 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2016-02-03 16:23 - 2016-02-03 16:23 - 15711744 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-02-03 16:23 - 2016-02-03 16:23 - 00685672 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2016-02-03 16:23 - 2016-02-03 16:23 - 00685672 _____ C:\WINDOWS\system32\atiapfxx.blb
2016-02-03 16:23 - 2016-02-03 16:23 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-02-03 16:23 - 2016-02-03 16:23 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-02-03 16:23 - 2016-02-03 16:23 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-02-03 16:23 - 2016-02-03 16:23 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-02-03 16:23 - 2016-02-03 16:23 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-02-03 16:22 - 2016-02-03 16:22 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-02-03 16:21 - 2016-02-03 16:21 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-02-03 16:21 - 2016-02-03 16:21 - 00039424 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-02-03 16:20 - 2016-02-03 16:20 - 25841152 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-02-03 16:19 - 2016-02-03 16:19 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2016-02-03 16:16 - 2016-02-03 16:16 - 00561664 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-02-03 16:16 - 2016-02-03 16:16 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-02-03 16:16 - 2016-02-03 16:16 - 00246272 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-02-03 16:16 - 2016-02-03 16:16 - 00224256 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-02-03 16:16 - 2016-02-03 16:16 - 00209920 _____ C:\WINDOWS\system32\GameManager64.dll
2016-02-03 16:16 - 2016-02-03 16:16 - 00204800 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-02-03 16:16 - 2016-02-03 16:16 - 00189952 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-02-03 16:16 - 2016-02-03 16:16 - 00186368 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2016-02-03 16:16 - 2016-02-03 16:16 - 00162304 _____ C:\WINDOWS\system32\atieah64.exe
2016-02-03 16:16 - 2016-02-03 16:16 - 00145408 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-02-03 16:16 - 2016-02-03 16:16 - 00078336 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-02-03 16:15 - 2016-02-03 16:15 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-02-03 16:14 - 2016-02-03 16:14 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2016-02-03 16:11 - 2016-02-03 16:11 - 01272832 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-02-03 16:11 - 2016-02-03 16:11 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00941568 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00157696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00075776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-02-03 16:09 - 2016-02-03 16:09 - 00195072 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-02-03 16:09 - 2016-02-03 16:09 - 00174592 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-02-03 16:05 - 2016-02-03 16:05 - 05544012 _____ C:\Users\Marc\Downloads\StepStone_Gehaltsreport_2016.pdf
2016-02-02 15:25 - 2016-02-02 15:25 - 08324442 _____ C:\Users\Marc\Downloads\RE_2_-_Solar-_und_Windenergie___-Dokumente.zip
2016-02-02 14:20 - 2016-02-02 14:21 - 00574942 _____ C:\Users\Marc\Downloads\MSTLaborWS15_Schütz_Eryilmaz_Handout.pdf
2016-02-02 12:24 - 2016-02-02 12:24 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-02-01 10:09 - 2016-02-01 10:09 - 00000000 ____D C:\Users\Marc\AppData\Local\PackageStaging
2016-02-01 09:54 - 2016-02-01 09:54 - 00000000 ____D C:\Users\Marc\AppData\Local\ActiveSync
2016-02-01 09:52 - 2016-02-01 09:52 - 00000020 ___SH C:\Users\Marc\ntuser.ini
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-02-01 09:50 - 2016-02-13 17:40 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-02-01 09:48 - 2016-02-01 09:48 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default\AppData\Roaming\ATI
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default\AppData\Local\ATI
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default User\AppData\Roaming\ATI
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default User\AppData\Local\ATI
2016-02-01 09:44 - 2016-02-16 11:40 - 00000000 ____D C:\Users\Marc
2016-02-01 09:44 - 2016-02-01 09:49 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Vorlagen
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Startmenü
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Netzwerkumgebung
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Lokale Einstellungen
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Eigene Dateien
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Druckumgebung
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Documents\Eigene Videos
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Documents\Eigene Musik
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Documents\Eigene Bilder
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\AppData\Local\Verlauf
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\AppData\Local\Anwendungsdaten
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Anwendungsdaten
2016-02-01 09:43 - 2016-02-13 17:37 - 00000000 ____D C:\Program Files\AMD
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 ____D C:\WINDOWS\system32\SRSLabs
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 ____D C:\Program Files\Realtek
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2016-02-01 09:43 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-02-01 09:42 - 2016-02-10 10:05 - 00366976 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-02-01 09:42 - 2016-02-01 15:20 - 00000000 ___DC C:\WINDOWS\Panther
2016-02-01 09:40 - 2016-02-01 09:40 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 08728920 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 06971752 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02796032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02772584 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2016-02-01 09:40 - 2016-02-01 09:40 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-02-01 09:40 - 2016-02-01 09:40 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02653816 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02185840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02180128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02152800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-02-01 09:40 - 2016-02-01 09:40 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-02-01 09:40 - 2016-02-01 09:40 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01995776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01859448 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01594408 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 01371792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-02-01 09:40 - 2016-02-01 09:40 - 01309376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01281376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 01223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01155944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01141496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01092456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01089880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 01065080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01053696 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01020096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00983464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00973664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00898184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00884256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00871936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00848160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00823264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00796352 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00786696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00716928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00701384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00695752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00671472 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00613888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00558592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00526856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-02-01 09:40 - 2016-02-01 09:40 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00499432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00462760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00450904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00440152 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00412512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-02-01 09:40 - 2016-02-01 09:40 - 00389120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00337840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2016-02-01 09:40 - 2016-02-01 09:40 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00264544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00260608 _____ C:\WINDOWS\system32\MTFServer.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2016-02-01 09:40 - 2016-02-01 09:40 - 00234504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00208176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00202472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2016-02-01 09:40 - 2016-02-01 09:40 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx
2016-02-01 09:40 - 2016-02-01 09:40 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommon.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00119320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00100160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundTransferHost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00000000 ____D C:\Windows.old
2016-02-01 09:38 - 2016-02-01 09:38 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-02-01 09:37 - 2016-02-01 09:37 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-02-01 09:37 - 2016-02-01 09:37 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-02-01 09:37 - 2016-02-01 09:37 - 00000000 ____D C:\Program Files\MSBuild
2016-02-01 09:37 - 2016-02-01 09:37 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-02-01 09:37 - 2016-02-01 09:37 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-02-01 09:37 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-02-01 09:37 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-02-01 09:37 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-02-01 09:37 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-02-01 09:37 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-02-01 09:37 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-01-31 18:55 - 2016-01-31 18:55 - 00024612 _____ C:\Users\Marc\Downloads\Formular-Rahmenvereinbarung_BPS-Physikalische_Technik(1).pdf
2016-01-31 18:53 - 2016-01-31 18:53 - 00076178 _____ C:\Users\Marc\Downloads\Anmeldung_Berufspraktische_Taetigkeit.pdf
2016-01-31 18:53 - 2016-01-31 18:53 - 00058126 _____ C:\Users\Marc\Downloads\Hinweise_Berufspraktische_Taetigkeit.pdf
2016-01-31 18:53 - 2016-01-31 18:53 - 00000633 _____ C:\Users\Marc\Downloads\Literatur_Berufspraktische_Taetigkeit.txt
2016-01-31 18:52 - 2016-01-31 18:52 - 00070946 _____ C:\Users\Marc\Downloads\Checkliste_Berufspraktische_Taetigkeit.pdf
2016-01-31 13:34 - 2016-01-31 13:34 - 00068766 _____ C:\Users\Marc\Downloads\Klausuraufgaben_ME_W14(1).pdf
2016-01-31 10:32 - 2016-01-31 10:32 - 00084218 _____ C:\Users\Marc\Downloads\Zeitplan_WS_2015_Vorläufig1.pdf
2016-01-31 10:28 - 2016-01-31 10:28 - 00024612 _____ C:\Users\Marc\Downloads\Formular-Rahmenvereinbarung_BPS-Physikalische_Technik.pdf
2016-01-30 18:55 - 2016-01-30 18:55 - 00003531 _____ C:\Users\Marc\Downloads\Stata.do
2016-01-30 14:16 - 2016-01-30 14:16 - 00091657 _____ C:\Users\Marc\Downloads\Anmeldung Laborplatzvergabe Bachelor2 2010-(1).pdf
2016-01-29 18:30 - 2016-01-29 18:30 - 00044852 _____ C:\Users\Marc\Downloads\WS15-Noten_TA-Labortheorie-20150129.pdf
2016-01-24 23:01 - 2016-01-24 23:01 - 00113400 _____ (Advanced Micro Devices) C:\WINDOWS\system32\DelayAPO.dll
2016-01-24 19:07 - 2016-01-24 19:07 - 00186086 _____ C:\Users\Marc\Desktop\Scan0015.pdf
2016-01-24 19:00 - 2016-01-24 19:00 - 00698527 _____ C:\Users\Marc\Desktop\Scan0014.pdf
2016-01-24 17:58 - 2016-01-24 17:58 - 01121554 _____ C:\Users\Marc\Downloads\Poster_Gruppe_7_-_PQ.pdf
2016-01-24 17:32 - 2016-01-24 17:32 - 00048716 _____ C:\Users\Marc\Downloads\Termine_BA_-Master_WS_2015-2016.pdf
2016-01-24 17:29 - 2016-01-24 17:29 - 00047869 _____ C:\Users\Marc\Downloads\Termine_BA_-Master_SS_2016.pdf
2016-01-24 17:28 - 2016-01-24 17:28 - 00180607 _____ C:\Users\Marc\Downloads\Prüfungsanmeldung_-_Info.pdf
2016-01-24 17:24 - 2016-01-24 17:24 - 00039588 _____ C:\Users\Marc\Downloads\Prüfungsanmeldung_im_Wahlmodul.pdf
2016-01-24 14:45 - 2016-01-24 14:45 - 02677934 _____ C:\Users\Marc\Downloads\WSL_ST2_Folien_komplett.pdf
2016-01-24 14:41 - 2016-01-24 14:41 - 01611944 _____ C:\Users\Marc\Downloads\Plakat.pdf
2016-01-24 10:43 - 2016-01-24 10:43 - 00272937 _____ C:\Users\Marc\Downloads\WSL-Übungen_WS15.pdf
2016-01-23 19:38 - 2016-01-23 19:38 - 00286157 _____ C:\Users\Marc\Downloads\Prüfungsordnung_PO_BSc_2010_Amtl._Mitt.(1).pdf
2016-01-23 19:00 - 2016-01-23 19:00 - 00053094 _____ C:\Users\Marc\Downloads\Firmenverzeichnis_Berufspraktische_Taetigkeit.pdf
2016-01-23 18:46 - 2016-01-23 18:46 - 00264567 _____ C:\Users\Marc\Downloads\Bewerbung Aushifsjob REWE.pdf
2016-01-23 10:19 - 2016-01-23 10:19 - 00049823 _____ C:\Users\Marc\Downloads\Biomechanik_Gutachten.pdf
2016-01-22 18:50 - 2016-01-22 18:50 - 00000000 ____D C:\Users\Marc\AppData\Local\PDF24
2016-01-22 18:49 - 2016-02-01 09:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24
2016-01-22 18:49 - 2016-01-22 18:49 - 16485128 _____ (Geek Software GmbH ) C:\Users\Marc\Downloads\pdf24-creator-7.5.0.exe
2016-01-22 18:49 - 2016-01-22 18:49 - 00001159 _____ C:\Users\Public\Desktop\PDF24.lnk
2016-01-22 18:49 - 2016-01-22 18:49 - 00000000 ____D C:\Program Files (x86)\PDF24
         
__________________

Alt 18.02.2016, 09:31   #4
MarcS
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



und der Rest davon
Code:
ATTFilter
==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-02-18 09:45 - 2015-12-06 12:35 - 00001132 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-02-18 09:43 - 2015-10-27 13:53 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-02-18 09:23 - 2014-12-13 18:37 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2016-02-18 09:20 - 2015-12-17 16:36 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-02-18 09:12 - 2014-12-13 16:18 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Spotify
2016-02-18 09:10 - 2014-12-13 16:18 - 00000000 ____D C:\Users\Marc\AppData\Local\Spotify
2016-02-18 09:09 - 2015-12-08 17:13 - 00004150 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{997001AE-3139-4B8B-9378-D841DF4F4486}
2016-02-18 09:07 - 2015-02-08 15:19 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Raptr
2016-02-18 09:07 - 2014-12-13 15:57 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Dropbox
2016-02-18 09:07 - 2014-03-07 18:36 - 00000000 __RDO C:\Users\Marc\SkyDrive
2016-02-18 09:07 - 2014-02-15 12:08 - 00000000 ___RD C:\Users\Marc\Dropbox
2016-02-18 09:06 - 2015-12-06 12:35 - 00001128 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-02-15 14:16 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF
2016-02-14 16:53 - 2014-02-14 22:15 - 00000000 ____D C:\Users\Marc\AppData\Local\Packages
2016-02-13 17:44 - 2015-10-30 19:35 - 00775524 _____ C:\WINDOWS\system32\perfh007.dat
2016-02-13 17:44 - 2015-10-30 19:35 - 00155338 _____ C:\WINDOWS\system32\perfc007.dat
2016-02-13 17:44 - 2015-08-06 16:39 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-02-13 17:40 - 2015-01-10 21:16 - 00000091 _____ C:\HaxLogs.txt
2016-02-13 17:39 - 2015-12-06 12:32 - 00004296 _____ C:\WINDOWS\System32\Tasks\AMD Updater
2016-02-13 17:39 - 2015-10-30 07:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-02-13 17:39 - 2014-12-13 15:43 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-02-13 17:38 - 2015-12-06 12:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2016-02-13 17:37 - 2015-10-19 19:32 - 00000000 ____D C:\Users\Marc\AppData\Local\AMD
2016-02-13 17:37 - 2014-12-13 16:21 - 00000000 ____D C:\Program Files (x86)\Steam
2016-02-13 17:36 - 2014-02-14 23:22 - 00000000 ____D C:\AMD
2016-02-13 10:20 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-02-12 08:40 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-02-11 10:33 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache
2016-02-11 09:57 - 2015-08-06 17:59 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-02-10 23:04 - 2015-10-30 19:47 - 00000000 ____D C:\Program Files\Windows Journal
2016-02-10 22:57 - 2014-12-14 11:22 - 00000000 ____D C:\Users\Marc\AppData\Local\Battle.net
2016-02-10 20:46 - 2015-01-18 14:11 - 00002270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-10 20:46 - 2015-01-18 14:11 - 00002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-02-10 14:38 - 2014-12-15 10:00 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-02-10 14:34 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-02-10 14:34 - 2014-12-15 10:00 - 146614896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-02-09 18:43 - 2015-10-27 13:53 - 00003870 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-02-08 16:45 - 2015-08-06 18:01 - 00002386 _____ C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-02-03 20:01 - 2015-10-30 08:26 - 00828920 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-02-03 20:01 - 2015-10-30 08:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-02-03 17:14 - 2015-12-16 20:43 - 00110344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-02-03 17:13 - 2015-12-16 20:45 - 00152056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-02-03 17:12 - 2015-12-16 20:45 - 09176928 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-02-03 17:12 - 2015-12-16 20:45 - 09017808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-02-03 17:12 - 2015-12-16 20:45 - 08089248 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-02-03 17:12 - 2015-12-16 20:45 - 00133528 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-02-03 17:12 - 2015-12-16 20:45 - 00102616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-02-03 17:12 - 2015-12-16 20:44 - 13395360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-02-03 17:12 - 2015-12-16 20:44 - 11098920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-02-03 17:12 - 2015-12-16 20:44 - 01503416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-02-03 17:12 - 2015-12-16 20:44 - 01235128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-02-03 17:06 - 2015-12-16 20:31 - 23976448 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-02-03 16:59 - 2015-12-16 20:20 - 41510912 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2016-02-03 16:57 - 2015-12-16 20:21 - 22348288 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-02-03 16:24 - 2015-12-16 20:41 - 00865280 _____ (AMD) C:\WINDOWS\system32\coinst_15.30.dll
2016-02-03 16:10 - 2015-12-16 20:31 - 00672768 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-02-03 16:10 - 2015-12-16 20:29 - 00142336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-02-03 16:10 - 2015-12-16 20:25 - 00941568 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-02-03 15:52 - 2014-12-13 16:28 - 00000000 ____D C:\ProgramData\Origin
2016-02-03 15:51 - 2014-12-13 16:28 - 00000000 ____D C:\Program Files (x86)\Origin
2016-02-02 11:40 - 2015-12-06 12:35 - 00004190 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-02-02 11:40 - 2015-12-06 12:35 - 00003958 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-02-02 11:08 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-02-01 16:25 - 2015-11-22 12:44 - 00000000 ___RD C:\Users\Marc\3D Objects
2016-02-01 16:19 - 2015-08-06 17:59 - 00000000 ____D C:\Users\Marc\AppData\Local\Comms
2016-02-01 10:09 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-02-01 09:52 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-02-01 09:52 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-02-01 09:52 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-02-01 09:52 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Registration
2016-02-01 09:52 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows NT
2016-02-01 09:52 - 2015-10-30 07:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-02-01 09:51 - 2015-11-17 13:18 - 00002386 _____ C:\WINDOWS\System32\Tasks\Urla1
2016-02-01 09:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-02-01 09:51 - 2015-08-06 16:36 - 00023056 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-02-01 09:51 - 2015-05-05 19:31 - 00003434 _____ C:\WINDOWS\System32\Tasks\JKIUpdateTask
2016-02-01 09:51 - 2014-12-15 09:49 - 00002394 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2016-02-01 09:51 - 2014-12-13 15:29 - 00032388 _____ C:\WINDOWS\diagwrn.xml
2016-02-01 09:51 - 2014-12-13 15:29 - 00032388 _____ C:\WINDOWS\diagerr.xml
2016-02-01 09:50 - 2015-11-17 13:18 - 00002386 _____ C:\WINDOWS\System32\Tasks\Urla3
2016-02-01 09:50 - 2015-11-17 13:18 - 00002386 _____ C:\WINDOWS\System32\Tasks\Urla2
2016-02-01 09:50 - 2015-10-30 08:24 - 00000000 __RHD C:\Users\Public\Libraries
2016-02-01 09:50 - 2015-10-17 16:45 - 00002954 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-02-01 09:50 - 2014-12-15 09:49 - 00002420 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2016-02-01 09:50 - 2014-12-15 09:49 - 00002392 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2016-02-01 09:50 - 2014-12-15 09:49 - 00002378 _____ C:\WINDOWS\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2016-02-01 09:50 - 2014-12-15 09:49 - 00002376 _____ C:\WINDOWS\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2016-02-01 09:49 - 2016-01-16 17:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SOLIDWORKS Tools 2015
2016-02-01 09:49 - 2016-01-16 17:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SOLIDWORKS 2015
2016-02-01 09:49 - 2015-12-23 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-02-01 09:49 - 2015-12-23 15:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AudibleManager
2016-02-01 09:49 - 2015-12-13 10:55 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-02-01 09:49 - 2015-12-10 19:00 - 00000000 ____D C:\WINDOWS\de
2016-02-01 09:49 - 2015-11-20 18:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2016-02-01 09:49 - 2015-11-20 18:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STAR WARS Battlefront
2016-02-01 09:49 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-02-01 09:49 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-02-01 09:49 - 2015-08-10 15:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-02-01 09:49 - 2015-08-10 11:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2016-02-01 09:49 - 2015-08-05 22:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft-Maus- und Tastatur-Center
2016-02-01 09:49 - 2015-05-05 19:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\National Instruments
2016-02-01 09:49 - 2015-04-23 21:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-02-01 09:49 - 2015-04-11 18:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ExpoThemes
2016-02-01 09:49 - 2015-03-08 23:02 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2016-02-01 09:49 - 2015-03-08 00:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git
2016-02-01 09:49 - 2015-03-07 17:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A3Launcher
2016-02-01 09:49 - 2015-02-28 13:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCG Launcher
2016-02-01 09:49 - 2015-01-31 21:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-02-01 09:49 - 2015-01-31 13:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro
2016-02-01 09:49 - 2015-01-17 20:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-02-01 09:49 - 2015-01-10 21:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio
2016-02-01 09:49 - 2015-01-10 21:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2016-02-01 09:49 - 2015-01-07 14:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IP Camera Adapter
2016-02-01 09:49 - 2014-12-26 23:39 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-02-01 09:49 - 2014-12-26 23:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-02-01 09:49 - 2014-12-14 11:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2016-02-01 09:49 - 2014-12-13 17:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4
2016-02-01 09:49 - 2014-12-13 16:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2016-02-01 09:49 - 2014-12-13 16:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-02-01 09:49 - 2014-12-13 16:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2016-02-01 09:49 - 2014-12-13 16:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-02-01 09:49 - 2014-12-13 16:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prismatik
2016-02-01 09:49 - 2014-12-13 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-02-01 09:49 - 2014-12-13 15:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN
2016-02-01 09:48 - 2015-07-10 10:05 - 00000000 ____D C:\Users\Default.migrated
2016-02-01 09:45 - 2015-11-15 00:06 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\spool
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\InputMethod
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\USOPrivate
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-02-01 09:45 - 2015-10-06 20:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-02-01 09:45 - 2015-06-07 12:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005
2016-02-01 09:45 - 2015-05-05 19:31 - 00000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin
2016-02-01 09:45 - 2015-05-05 19:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JKI
2016-02-01 09:45 - 2015-05-05 19:26 - 00000000 ____D C:\WINDOWS\SysWOW64\cvirte
2016-02-01 09:45 - 2015-05-05 19:26 - 00000000 ____D C:\WINDOWS\system32\cvirte
2016-02-01 09:45 - 2015-04-08 01:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2016-02-01 09:45 - 2015-03-24 17:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE
2016-02-01 09:45 - 2015-02-08 15:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Raptr
2016-02-01 09:45 - 2015-01-20 18:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corsair
2016-02-01 09:45 - 2014-12-26 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\Adobe
2016-02-01 09:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2016-02-01 09:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2016-02-01 09:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\ADFS
2016-02-01 09:44 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-02-01 09:44 - 2015-08-20 13:25 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP
2016-02-01 09:44 - 2015-03-01 18:25 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ClockworkMod
2016-02-01 09:44 - 2014-12-13 16:11 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2016-02-01 09:42 - 2015-10-30 19:58 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-02-01 09:42 - 2015-10-30 08:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-02-01 09:40 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-02-01 09:40 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-02-01 09:37 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-02-01 09:37 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-02-01 09:30 - 2015-10-30 20:28 - 00000000 ___HD C:\$WINDOWS.~BT
2016-01-24 23:01 - 2015-09-18 01:38 - 00111120 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\AtihdWT6.sys
2016-01-24 10:09 - 2015-08-10 15:48 - 00000000 ____D C:\Program Files\Microsoft Office 15

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2015-01-13 17:54 - 2015-05-28 16:47 - 0004107 _____ () C:\Users\Marc\AppData\Roaming\LTspiceIV.ini
2015-09-29 17:29 - 2015-09-29 17:29 - 0000338 _____ () C:\Users\Marc\AppData\Local\5Bj3i9.vbs
2015-09-13 14:05 - 2015-09-13 14:05 - 0000364 _____ () C:\Users\Marc\AppData\Local\c4T3gB.vbs
2015-08-08 11:01 - 2015-08-08 11:01 - 3531374 _____ () C:\Users\Marc\AppData\Local\curl.zip
2015-04-11 18:42 - 2015-04-11 18:42 - 0000396 _____ () C:\Users\Marc\AppData\Local\F6bSEMx.vbs
2015-09-13 13:44 - 2015-09-13 13:44 - 0000364 _____ () C:\Users\Marc\AppData\Local\iwhe2V.vbs
2015-05-01 11:27 - 2015-12-01 17:37 - 0007608 _____ () C:\Users\Marc\AppData\Local\Resmon.ResmonCfg
2015-09-13 14:03 - 2015-09-13 14:03 - 0000364 _____ () C:\Users\Marc\AppData\Local\SPDjFI3.vbs
2015-08-23 10:19 - 2015-08-23 10:19 - 0000364 _____ () C:\Users\Marc\AppData\Local\TzFhUO.vbs
2015-01-17 20:27 - 2015-01-17 20:27 - 0000057 _____ () C:\ProgramData\Ament.ini

==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-02-13 10:44

==================== Ende von FRST.txt ============================
         
und die Addition.txt
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-02-2016
durchgeführt von Marc (2016-02-18 10:19:05)
Gestartet von C:\Users\Marc\Downloads
Windows 10 Pro (X64) (2016-02-01 08:52:29)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-1693380438-3469794576-592618473-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1693380438-3469794576-592618473-503 - Limited - Disabled)
Gast (S-1-5-21-1693380438-3469794576-592618473-501 - Limited - Disabled)
Marc (S-1-5-21-1693380438-3469794576-592618473-1001 - Administrator - Enabled) => C:\Users\Marc

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Kaspersky Internet Security (Enabled - Up to date) {B41C7598-35F6-4D89-7D0E-7ADE69B4047B}
AS: Kaspersky Internet Security (Enabled - Up to date) {0F7D947C-13CC-4207-47BE-41AC12334EC6}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {8C27F4BD-7F99-4CD1-5651-D3EB97674300}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

µTorrent (HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\uTorrent) (Version: 3.4.2.38656 - BitTorrent Inc.)
A3Launcher version 0.0.0.9 (HKLM-x32\...\{E31045B4-9DB5-9EBD-44DF-BD4CFDE640DF}_is1) (Version: 0.0.0.9 - Maca134)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20059 - Adobe Systems Incorporated)
Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.5.155 - Adobe Systems, Inc.)
Always Sometimes Monsters (HKLM-x32\...\Steam App 274310) (Version:  - Vagabond Dog)
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.)
Android Studio (HKLM\...\Android Studio) (Version: 1.0 - Google Inc.)
Apple Application Support (32-Bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
AudibleManager (HKLM-x32\...\AudibleManager) (Version: 40.822083888.822083888.36513384 - Audible, Inc.)
AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version: 1.2.0.0 - AVM Berlin)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.4.2.23831 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.6.2 - EA Digital Illusions CE AB)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Catalyst Control Center Next Localization BR (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0203.1043.19267 - Advanced Micro Devices, Inc.) Hidden
CCG Launcher version 0.6 (HKLM-x32\...\{28362054-F79B-4697-A246-3ECF730E7E9D}_is1) (Version: 0.6 - Custom Combat Gaming)
Cities: Skylines (HKLM-x32\...\Steam App 255710) (Version:  - Colossal Order Ltd.)
Corsair M60 Firmware Update Application (HKLM-x32\...\{4D0449F9-FA4D-4050-8388-2EF221C0C251}_is1) (Version:  - )
Corsair M60 Maustreiber V1.0 (HKLM-x32\...\{337CDF25-8F3C-4DEF-8A94-5A9BFC961368}_is1) (Version: 1.00.00.37 - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Defy Gravity (HKLM-x32\...\Steam App 96100) (Version:  - Fish Factory Games)
Dropbox (HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Dropbox) (Version: 3.12.5 - Dropbox, Inc.)
Far Cry 4 (HKLM-x32\...\Uplay Install 420) (Version:  - Ubisoft)
Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
GIGABYTE OC_GURU II (HKLM-x32\...\InstallShield_{5588D686-D23B-4C9D-BDFA-2A7875CD3722}) (Version: 1.56.0000 - GIGABYTE Technology Co.,Ltd.)
GIGABYTE OC_GURU II (x32 Version: 1.56.0000 - GIGABYTE Technology Co.,Ltd.) Hidden
Git version 1.9.5-preview20141217 (HKLM-x32\...\Git_is1) (Version: 1.9.5-preview20141217 - The Git Development Community)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.109 - Google Inc.)
Google Earth Pro (HKLM-x32\...\{44FC61F0-2F8A-11E3-8CAE-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games)
Helium (HKLM-x32\...\{9A781940-AC41-4D5E-8E1E-76A04B916FB9}) (Version: 1.0.0 - ClockworkMod)
HP Officejet 5740 series - Grundlegende Software für das Gerät (HKLM\...\{4029319E-A53E-4FAA-A2FA-D0091D85EB17}) (Version: 34.2.117.50647 - Hewlett-Packard Co.)
HP Officejet 5740 series Hilfe (HKLM-x32\...\{0C0C43A4-CDBF-4CF6-9902-4CF6BBD09C80}) (Version: 34.0.0 - Hewlett Packard)
HP Photo Creations (HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\HP Photo Creations) (Version: 1.0.0.18922 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Intel® Hardware Accelerated Execution Manager (HKLM\...\{ECCB31F5-435D-4F37-A98D-5854D3C62718}) (Version: 1.1.1 - Intel Corporation)
IP Camera Adapter (HKLM-x32\...\{6D140BFF-7CC5-4BFE-AD6D-47035FFE5F14}) (Version: 2.0.0.0 - Pavel Khlebovich)
iTunes (HKLM\...\{FBEB98F8-64E4-4FA3-A15E-4A9F42FF962E}) (Version: 12.3.2.35 - Apple Inc.)
Java 8 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java SE Development Kit 7 Update 71 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170710}) (Version: 1.7.0.710 - Oracle)
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}) (Version: 16.0.0.614 - Kaspersky Lab)
Kaspersky Internet Security (x32 Version: 16.0.0.614 - Kaspersky Lab) Hidden
LTspice IV (HKLM-x32\...\LTspice IV) (Version:  - )
Malwarebytes Anti-Malware Version 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation)
Math Kernel Libraries (64-bit) (Version: 1.0.33.0 - National Instruments) Hidden
Math Kernel Libraries (64-bit) (Version: 13.0.13 - National Instruments) Hidden
Math Kernel Libraries (64-bit) (Version: 14.0.6 - National Instruments) Hidden
Math Kernel Libraries (x32 Version: 1.0.33.0 - National Instruments) Hidden
Math Kernel Libraries (x32 Version: 13.0.13 - National Instruments) Hidden
Math Kernel Libraries (x32 Version: 14.0.6 - National Instruments) Hidden
Microsoft Office 2003 Web Components (HKLM-x32\...\{90120000-00A4-0409-0000-0000000FF1CE}) (Version: 12.0.6213.1000 - Microsoft Corporation)
Microsoft Office 365 ProPlus - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 15.0.4787.1002 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU (HKLM\...\Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU) (Version:  - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.5.166.0 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Mozilla Firefox 44.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 de)) (Version: 44.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla)
MURDERED: SOUL SUSPECT™ (HKLM-x32\...\Steam App 233290) (Version:  - Airtight Games)
National Instruments - Software (HKLM-x32\...\NI Uninstaller) (Version:  - National Instruments)
NI .NET Framework 4.0 (x32 Version: 4.01.49152 - National Instruments) Hidden
NI ActiveX Container (64-bit) (Version: 14.0.5 - National Instruments) Hidden
NI ActiveX Container (x32 Version: 14.0.5 - National Instruments) Hidden
NI Assistant Framework (x32 Version: 14.0.40 - National Instruments) Hidden
NI Assistant Framework 64-bit (Version: 14.0.49 - National Instruments) Hidden
NI Assistant Framework LabVIEW 2014 Support (x32 Version: 14.0.34 - National Instruments) Hidden
NI Assistant Framework LabVIEW Code Generator 2014 (x32 Version: 14.0.40 - National Instruments) Hidden
NI Authentication 2014 (64-bit) (Version: 14.0.344 - National Instruments) Hidden
NI Authentication 2014 (x32 Version: 14.0.344 - National Instruments) Hidden
NI CodeSignAPI (x32 Version: 2.70.346 - National Instruments) Hidden
NI Curl 14.0.0 (64-bit) (Version: 14.0.294 - National Instruments) Hidden
NI Curl 2014 (x32 Version: 14.0.295 - National Instruments) Hidden
NI Customer Experience Improvement Program (x32 Version: 2.1.27 - National Instruments) Hidden
NI DataSocket 5.2 (64-bit) (Version: 5.2.218 - National Instruments) Hidden
NI DataSocket 5.2 (x32 Version: 5.2.218 - National Instruments) Hidden
NI Distributed System Manager 2014 (x32 Version: 14.0.382 - National Instruments) Hidden
NI Error Reporting 2014 (x32 Version: 14.0.379 - National Instruments) Hidden
NI Error Reporting Interface 14.0 (x32 Version: 14.0.241 - National Instruments) Hidden
NI Error Reporting Interface 14.0 for Windows (64-bit) (Version: 14.0.241 - National Instruments) Hidden
NI EulaDepot (x32 Version: 3.30.268 - National Instruments) Hidden
NI Example Finder 14.0 (x32 Version: 14.0.133 - National Instruments) Hidden
NI Help Assistant 2.0 (64bit) (Version: 2.0.3 - National Instruments) Hidden
NI Help Assistant 2.0 (x32 Version: 2.0.3 - National Instruments) Hidden
NI Instrument IO Assistant for LabVIEW 2014 32-bit (x32 Version: 14.0.12 - National Instruments) Hidden
NI JSON Map Files (x32 Version: 14.0.14 - National Instruments) Hidden
NI LabVIEW 2012 Real-Time NBFifo (x32 Version: 12.0.219.0 - National Instruments) Hidden
NI LabVIEW 2012 Real-Time NBFifo (x32 Version: 13.0.336 - National Instruments) Hidden
NI LabVIEW 2012 Real-Time NBFifo (x32 Version: 14.0.386 - National Instruments) Hidden
NI LabVIEW 2012 Run-Time Engine Web Server (x32 Version: 12.5.198.0 - National Instruments) Hidden
NI LabVIEW 2012 SP1 Run-Time Engine Non-English Support. (x32 Version: 12.1.52.0 - National Instruments) Hidden
NI LabVIEW 2013 Real-Time Error Dialog (x32 Version: 13.0.123 - National Instruments) Hidden
NI LabVIEW 2013 Run-Time Engine Web Server (x32 Version: 13.5.27 - National Instruments) Hidden
NI LabVIEW 2013 SP1 Run-Time Engine Non-English Support. (x32 Version: 13.1.99 - National Instruments) Hidden
NI LabVIEW 2014 (32-bit) (Version: 14.0.654 - National Instruments) Hidden
NI LabVIEW 2014 (32-bit) (x32 Version: 14.0.383 - National Instruments) Hidden
NI LabVIEW 2014 (x32 Version: 14.0.378 - National Instruments) Hidden
NI LabVIEW 2014 Compare Utility (x32 Version: 14.0.380 - National Instruments) Hidden
NI LabVIEW 2014 Database Connectivity Toolkit (x32 Version: 14.0.259 - National Instruments) Hidden
NI LabVIEW 2014 Database Connectivity Toolkit License (x32 Version: 14.0.260 - National Instruments) Hidden
NI LabVIEW 2014 Deployable License (x32 Version: 14.0.381 - National Instruments) Hidden
NI LabVIEW 2014 Deployment Framework (x32 Version: 14.0.390 - National Instruments) Hidden
NI LabVIEW 2014 Help (x32 Version: 14.0.380 - National Instruments) Hidden
NI LabVIEW 2014 Help File (x32 Version: 14.0.378 - National Instruments) Hidden
NI LabVIEW 2014 License (x32 Version: 14.0.381 - National Instruments) Hidden
NI LabVIEW 2014 License 64-bit (Version: 14.0.140 - National Instruments) Hidden
NI LabVIEW 2014 Manuals (x32 Version: 14.0.380 - National Instruments) Hidden
NI LabVIEW 2014 MeasAppChm File (x32 Version: 14.0.377 - National Instruments) Hidden
NI LabVIEW 2014 Merge Utility (x32 Version: 14.0.380 - National Instruments) Hidden
NI LabVIEW 2014 Report Generation Toolkit for Microsoft Office (x32 Version: 14.0.239 - National Instruments) Hidden
NI LabVIEW 2014 Report Generation Toolkit License (x32 Version: 14.0.239 - National Instruments) Hidden
NI LabVIEW 2014 Run-Time Engine Web Server (x32 Version: 14.0.420 - National Instruments) Hidden
NI LabVIEW 2014 Scripting Code Generator (x32 Version: 14.0.313 - National Instruments) Hidden
NI LabVIEW 2014 Search (x32 Version: 14.0.5 - National Instruments) Hidden
NI LabVIEW 2014 Simulation (x32 Version: 14.0.380 - National Instruments) Hidden
NI LabVIEW 2014 Touch Panel (x32 Version: 14.0.123 - National Instruments) Hidden
NI LabVIEW 2014 Touch Panel for English (x32 Version: 14.0.123 - National Instruments) Hidden
NI LabVIEW 2014 Variable Web Service (x32 Version: 14.0.379 - National Instruments) Hidden
NI LabVIEW 2014 Web Server (x32 Version: 14.0.439 - National Instruments) Hidden
NI LabVIEW Broker (64 bit) (Version: 6.8.10.0 - National Instruments) Hidden
NI LabVIEW Broker (x32 Version: 6.8.10.0 - National Instruments) Hidden
NI LabVIEW C Interface (x32 Version: 1.0.1 - National Instruments) Hidden
NI LabVIEW MAX XML (x32 Version: 9.0.6.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine 2012 SP1 f9 (x32 Version: 12.1.72.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine 2013 SP1 f2 (x32 Version: 13.1.109 - National Instruments) Hidden
NI LabVIEW Run-Time Engine 2014 (x32 Version: 14.0.397 - National Instruments) Hidden
NI LabVIEW Run-Time Engine 2014 Non-English Support. (x32 Version: 14.0.381 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2012 SP1 (x32 Version: 12.1.72.0 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2013 (x32 Version: 13.1.109 - National Instruments) Hidden
NI LabVIEW Run-Time Engine Interop 2014 (x32 Version: 14.0.400 - National Instruments) Hidden
NI LabVIEW Web Services Runtime (x32 Version: 14.0.363 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Analysis Library (64-bit) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Analysis Library (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Network Variable Library (64-bit) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Network Variable Library (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 Run-Time Engine (64-bit) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 TDM Streaming Library (64-bit) (Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2010 SP1 TDM Streaming Library (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI 2012 SP1 LabVIEW DLL Builder (x32 Version: 12.0.1133 - National Instruments) Hidden
NI LabWindows/CVI 2013 SP1 Code Generator (x32 Version: 13.0.1201 - National Instruments) Hidden
NI LabWindows/CVI 2013 SP1 Low-Level Driver (Original) (x32 Version: 13.0.1201 - National Instruments) Hidden
NI LabWindows/CVI 2013 SP1 Low-Level Driver (Updated) (x32 Version: 13.0.1201 - National Instruments) Hidden
NI LabWindows/CVI Run-Time Engine 2010 SP1 (Updated) (x32 Version: 10.0.1434 - National Instruments) Hidden
NI LabWindows/CVI Run-Time Engine 2010 SP1 (x32 Version: 10.0.1434 - National Instruments) Hidden
NI Launcher (x32 Version: 3.30.268 - National Instruments) Hidden
NI License Manager (x32 Version: 3.7.73 - National Instruments) Hidden
NI Logos 5.6 (64-bit) (Version: 5.6.254 - National Instruments) Hidden
NI Logos 5.6 (x32 Version: 5.6.254 - National Instruments) Hidden
NI Logos XT Support (x32 Version: 5.6.253 - National Instruments) Hidden
NI Logos64 XT Support (Version: 5.6.253 - National Instruments) Hidden
NI Math Kernel Libraries (64-bit) (Version: 1.0.5.0 - National Instruments) Hidden
NI Math Kernel Libraries (x32 Version: 1.0.5.0 - National Instruments) Hidden
NI MAX Remote Configuration 64-bit Installer 14.0 (Version: 14.00.49152 - National Instruments) Hidden
NI MAX Remote Configuration Installer 14.0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI MAX Support for 64 Bit Windows (Version: 14.00.49152 - National Instruments) Hidden
NI MDF Support (x32 Version: 3.30.268 - National Instruments) Hidden
NI mDNS Responder 14.0 for Windows 64-bit (Version: 14.00.49152 - National Instruments) Hidden
NI mDNS Responder 14.0.0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI Measurement & Automation Explorer 14.0.0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI Measurement Studio ComponentWorks 3D Graph (x32 Version: 8.6.10603 - National Instruments) Hidden
NI Measurement Studio ComponentWorks UI (x32 Version: 8.6.10603 - National Instruments) Hidden
NI Measurement Studio Recipe Processor (x32 Version: 8.0.0101 - National Instruments) Hidden
NI MetaSuite Installer (x32 Version: 3.30.268 - National Instruments) Hidden
NI MXS 14.0.0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI MXS 14.0.0 for 64 Bit Windows (Version: 14.00.49152 - National Instruments) Hidden
NI Network Discovery 14.0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI Network Discovery 14.0 for Windows 64-bit (Version: 14.00.49152 - National Instruments) Hidden
NI OPC Support (x32 Version: 14.0.281 - National Instruments) Hidden
NI OPCEnum Shared (x32 Version: 5.5.2018 - National Instruments) Hidden
NI Portable Configuration 14.0.0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI Portable Configuration for 64 Bit Windows 14.0.0 (Version: 14.00.49152 - National Instruments) Hidden
NI Registration Wizard (x32 Version: 1.3.97.0 - National Instruments) Hidden
NI Remote Provider for MAX 14.0.0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI Remote PXI Provider for MAX 14.0.0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI Search Shared (x32 Version: 14.0.5 - National Instruments) Hidden
NI Security Update (KB 67L8LCQW) (64-bit) (Version: 1.0.29.0 - National Instruments) Hidden
NI Security Update (KB 67L8LCQW) (x32 Version: 1.0.29.0 - National Instruments) Hidden
NI Service Locator 2014 (x32 Version: 14.0.217 - National Instruments) Hidden
NI SLCP 2.1 (x32 Version: 2.1.16 - National Instruments) Hidden
NI Software Provider for MAX 14.0.0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI SSL LabVIEW 2014 Support (x32 Version: 14.0.389 - National Instruments) Hidden
NI SSL LabVIEW RTE 2012 SP1 Support (x32 Version: 12.5.8.0 - National Instruments) Hidden
NI SSL LabVIEW RTE 2013 SP1 Support (x32 Version: 13.5.27 - National Instruments) Hidden
NI SSL LabVIEW RTE 2014 Support (x32 Version: 14.0.376 - National Instruments) Hidden
NI SSL Support (64-bit) (Version: 14.0.303 - National Instruments) Hidden
NI SSL Support (x32 Version: 14.0.303 - National Instruments) Hidden
NI System API .NET 14.0.0 (x32 Version: 14.0.310 - National Instruments) Hidden
NI System API Client for WIF 14.0.0 (x32 Version: 14.0.289 - National Instruments) Hidden
NI System API Web-Service 32-bit 14.0.0 (x32 Version: 14.0.291 - National Instruments) Hidden
NI System API Windows 32-bit 14.0.0 (x32 Version: 14.0.302 - National Instruments) Hidden
NI System API Windows 64-bit 14.0.0 (Version: 14.0.302 - National Instruments) Hidden
NI System Configuration 14.0.0 LabVIEW Support (x32 Version: 14.0.140 - National Instruments) Hidden
NI System Configuration LV2014 Support 14.0.0 (x32 Version: 14.0.124 - National Instruments) Hidden
NI System Configuration Runtime 14.0.0 (x32 Version: 14.0.142 - National Instruments) Hidden
NI System Configuration Runtime 14.0.0 for Windows 64-bit (Version: 14.0.142 - National Instruments) Hidden
NI System State Publisher (64-bit) (Version: 14.0.380 - National Instruments) Hidden
NI System State Publisher (x32 Version: 14.0.383 - National Instruments) Hidden
NI System Web Server 2014 (x32 Version: 14.0.303 - National Instruments) Hidden
NI System Web Server Base 2014 (64-bit) (Version: 14.0.249 - National Instruments) Hidden
NI System Web Server Base 2014 (x32 Version: 14.0.249 - National Instruments) Hidden
NI TDM Excel Add-In 14.0 (x32 Version: 14.0.23 - National Instruments) Hidden
NI TDM Excel Add-In 14.0 64-bit (Version: 14.0.23 - National Instruments) Hidden
NI TDM Streaming 14.0 (64-bit) (Version: 14.0.43 - National Instruments) Hidden
NI TDM Streaming 14.0 (x32 Version: 14.0.43 - National Instruments) Hidden
NI Trace Engine (64-bit) (Version: 14.0.177 - National Instruments) Hidden
NI Trace Engine (x32 Version: 14.0.177 - National Instruments) Hidden
NI Uninstaller (x32 Version: 3.30.268 - National Instruments) Hidden
NI Update Service 2014 (64-bit) (Version: 14.0.34 - National Instruments) Hidden
NI Update Service 2014 (x32 Version: 14.0.34 - National Instruments) Hidden
NI USI 14.0.0 (x32 Version: 14.0.05640 - National Instruments) Hidden
NI USI 14.0.0 64-bit (Version: 14.0.05640 - National Instruments) Hidden
NI Variable Engine (64-bit) (Version: 2.8.282 - National Instruments) Hidden
NI Variable Engine 2.8.0 (x32 Version: 2.8.282 - National Instruments) Hidden
NI Variable Engine LabVIEW 2014 Support (x32 Version: 14.0.380 - National Instruments) Hidden
NI VC2005MSMs x64 (Version: 8.05.0 - National Instruments) Hidden
NI VC2005MSMs x86 (x32 Version: 8.05.0 - National Instruments) Hidden
NI VC2008MSMs x64 (Version: 9.0.401 - National Instruments) Hidden
NI VC2008MSMs x86 (x32 Version: 9.0.401 - National Instruments) Hidden
NI VC2010SP1MSMs x64 (Version: 10.0.100 - National Instruments) Hidden
NI VC2010SP1MSMs x86 (x32 Version: 10.0.100 - National Instruments) Hidden
NI VIPM Helper 2014 (x32 Version: 14.0.194 - National Instruments) Hidden
NI Web Application Server 2014 (64-bit) (Version: 14.0.308 - National Instruments) Hidden
NI Web Application Server 2014 (x32 Version: 14.0.308 - National Instruments) Hidden
NI Web Pipeline 2014 (64-bit) (Version: 14.0.16 - National Instruments) Hidden
NI Web Pipeline 2014 (x32 Version: 14.0.16 - National Instruments) Hidden
NI Web-Based Configuration and Monitoring 14.0 (x32 Version: 14.0.410 - National Instruments) Hidden
NI Xalan Delay Load 1.10.3 (x32 Version: 1.10.85 - National Instruments) Hidden
NI Xalan Delay Load 1.10.3 64-bit (Version: 1.10.86 - National Instruments) Hidden
NI Xerces Delay Load 2.7.6 (x32 Version: 2.7.218 - National Instruments) Hidden
NI Xerces Delay Load 2.7.6 64-bit (Version: 2.7.228 - National Instruments) Hidden
NI-DAQmx/LabVIEW shared documentation 14.0.0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI-DAQmx/LabVIEW shared documentation for 64 Bit Windows 14.0.0 (Version: 14.00.49152 - National Instruments) Hidden
NI-Mesa (Version: 12.0.7.0 - National Instruments) Hidden
NI-Mesa (x32 Version: 12.0.7.0 - National Instruments) Hidden
NI-RPC 14.0.0f0 (x32 Version: 14.00.49152 - National Instruments) Hidden
NI-RPC 14.0.0f0 for 64 Bit Windows (Version: 14.00.49152 - National Instruments) Hidden
NI-RPC 14.0.0f0 for Phar Lap ETS (x32 Version: 14.00.49152 - National Instruments) Hidden
Office 15 Click-to-Run Extensibility Component (Version: 15.0.4787.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4787.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (Version: 15.0.4787.1002 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 9.5.2.2829 - Electronic Arts, Inc.)
PDF24 Creator 7.5.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
Prismatik (remove only) (HKLM-x32\...\{2175EE1B-0160-4862-9096-C522B1B99042}_is1) (Version: 5.11.1 - Woodenshark LLC)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.994 - Even Balance, Inc.)
Raptr (HKLM-x32\...\Raptr) (Version:  - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Reset NI Config 14.0.0 (x32 Version: 14.0.177 - National Instruments) Hidden
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games)
Ryse: Son of Rome (HKLM-x32\...\Steam App 302510) (Version:  - Crytek)
Skype™ 7.10 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.10.101 - Skype Technologies S.A.)
SOLIDWORKS 2015 x64 Edition SP05 (HKLM-x32\...\SolidWorks Installation Manager 20150-40500-1100-100) (Version: 23.5.0.81 - SolidWorks Corporation)
SOLIDWORKS 2015 x64 Edition SP05 (Version: 23.150.81 - Dassault Systemes SolidWorks Corp) Hidden
SOLIDWORKS 2015 x64 German Resources (Version: 23.150.81 - Dassault Systèmes SolidWorks Corp) Hidden
SOLIDWORKS Composer Player 2015 SP05 x64 Edition (Version: 23.50.81 - Dassault Systèmes SolidWorks Corp) Hidden
SOLIDWORKS eDrawings 2015 x64 Edition SP05 (Version: 15.5.0009 - Dassault Systèmes SolidWorks Corp) Hidden
SOLIDWORKS Flow Simulation 2015 SP05 x64 Edition  (Version: 23.50.82 - Dassault Systemes SolidWorks Corp) Hidden
SOLIDWORKS Plastics 2015 SP05 x64 Edition (Version: 23.50.81 - Dassault Systemes SolidWorks Corp) Hidden
Spotify (HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Spotify) (Version: 1.0.21.143.g76c19bcd - Spotify AB)
STAR WARS™ Battlefront™ (HKLM-x32\...\{E402D891-4E45-4ce9-B41F-DD35864EF170}) (Version: 1.0.4.24147 - Electronic Arts)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Studie zur Verbesserung von HP Officejet 5740 series (HKLM\...\{E49940D5-31DD-40BA-851D-3B82C4FF7A18}) (Version: 34.2.117.50647 - Hewlett-Packard Co.)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
The Banner Saga (HKLM-x32\...\Steam App 237990) (Version:  - Stoic)
The Crew (Worldwide) (HKLM-x32\...\Uplay Install 413) (Version:  - Ubisoft)
Tom Clancy's Rainbow Six Siege (HKLM-x32\...\Uplay Install 635) (Version:  - Ubisoft)
Toolbar Terminator (HKLM-x32\...\Toolbar Terminator_is1) (Version: 2.06 - Abelssoft)
Unity Web Player (HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\UnityWebPlayer) (Version: 4.6.5f1 - Unity Technologies ApS)
Uplay (HKLM-x32\...\Uplay) (Version: 4.9 - Ubisoft)
VI Package Manager 2014 (HKLM-x32\...\{2BBF3D65-2975-414E-B64A-92DF54373136}) (Version: 14.0.1941 - JKI)
VI Package Manager 2014 (x32 Version: 14.0.0 - National Instruments) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WIF Core Dependencies Windows 14.0.0 (x32 Version: 14.0.119 - National Instruments) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
WinRAR 5.20 (32-Bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)
World of Tanks (HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version:  - Wargaming.net)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Marc\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1693380438-3469794576-592618473-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll (Dropbox, Inc.)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {0949A757-A4EA-4955-B00C-E7E58065785F} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2015-07-08] (Microsoft)
Task: {0B35298D-FCB8-4DE0-89CE-CD497E7EE232} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {1125D2CC-A8C0-4850-A9F9-020458E3E758} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-12-22] (Microsoft Corporation)
Task: {162B129A-B985-4F9B-96E1-56C3DDCBF833} - System32\Tasks\Abelssoft\ToolbarTerminator Continous Scan_Marc => C:\Program Files (x86)\ToolbarTerminator\ToolbarTerminator.exe
Task: {202B6B00-AEC2-443F-AA10-506EE1D87D11} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-02-10] (Microsoft Corporation)
Task: {20B6DDB4-BAC6-403D-8402-6F0FB02E0607} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {2B72BD48-C46B-4641-BA44-02BBA5384E26} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
Task: {4EF939E2-B0CC-4E6F-BC4F-0759EF79EFFA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-30] (Microsoft Corporation)
Task: {5525525A-36B9-4748-A979-BA4363494AA8} - System32\Tasks\Urla3 => hxxp://www.repadnet.com/iti/usaa/file.php
Task: {5EA16931-032A-47DF-8B0D-02E6AFDE2DF0} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {6A5BFF85-C0FB-4C30-B435-BCC19802B756} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {6B8C28AC-E0C5-484A-802E-E0EAA9151F21} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {7485331F-4B26-4221-A535-6D8C124A40E7} - System32\Tasks\Urla2 => hxxp://www.repadnet.com/iti/usaa/file.php
Task: {7863E7DC-3F05-4AD5-AF02-85EAA85D2189} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.)
Task: {7AEED305-C271-4B3F-8F0B-C4A8BE177068} - System32\Tasks\Abelssoft\ToolbarTerminator AutoScan_Marc => C:\Program Files (x86)\ToolbarTerminator\ToolbarTerminator.exe
Task: {7CC4EE90-0A1A-4902-B723-61226A424433} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {88457A6F-C868-4960-AC74-1B1033C8240D} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {8A38B09A-A8B3-4986-B911-157A005C66C8} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {8D7E5B6F-7565-4DF4-B1C8-0DF8F90B73BE} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2016-01-22] (Microsoft Corporation)
Task: {9503BC8D-366D-4895-A135-3C5746A58D7A} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-09] (Adobe Systems Incorporated)
Task: {9A373CE6-9BEF-4236-9DF0-40DE4FA286EC} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-07-08] (Microsoft Corporation)
Task: {AD44C93C-325A-4F7C-B090-1103FE1BCCD4} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {AE4C2FB8-0708-41D9-8D14-1511BA2917AC} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-02-03] (Advanced Micro Devices, Inc.)
Task: {AF75C376-5582-4E51-BE9E-A16367709C2C} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-07-08] (Microsoft Corporation)
Task: {B05E8F5B-638C-4ED5-B02D-EF83F86C1509} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-07-08] (Microsoft Corporation)
Task: {B6BAF62C-3DF6-418C-AF83-AC8D6090ECB6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-10-30] (Microsoft Corporation)
Task: {C6932D5E-1436-4580-B10D-6C64088614FA} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2015-08-27] (Apple Inc.)
Task: {CFE7EC35-8C53-4C51-AF33-1987AF71D63C} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {D1EAA1C0-D379-4DE1-A705-CB3B8B0B5207} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {E320A403-B2FF-430D-9257-6DC7D918EBD1} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG
Task: {E4844B49-6344-454F-8138-DCB6027BDA7E} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-12-22] (Microsoft Corporation)
Task: {EF34FA98-52C9-41AD-858C-9AACD547E7E2} - System32\Tasks\JKIUpdateTask => C:\Program Files (x86)\JKI\VI Package Manager\support\JKIUpdate.exe [2014-04-22] (JKI)
Task: {F807025A-11C4-4247-8464-B81A74EBFEC9} - System32\Tasks\Urla1 => hxxp://www.repadnet.com/iti/usaa/file.php
Task: {FBC1BE8D-5279-478B-9F1F-BDD388C551A8} - System32\Tasks\Abelssoft\ToolbarTerminator Background Guard => C:\Program Files (x86)\ToolbarTerminator\TTBackgroundGuard.exe
Task: {FBE133F4-E830-489E-9245-A6B722C8AC87} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-07-08] (Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2015-10-30 08:17 - 2015-10-30 08:17 - 00028672 _____ () C:\WINDOWS\SYSTEM32\efsext.dll
2015-12-17 18:38 - 2015-12-17 18:38 - 00085800 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-12-17 18:38 - 2015-12-17 18:38 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-08-10 15:48 - 2015-10-13 04:34 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00936960 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-06-25 16:34 - 2015-06-25 16:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2015-06-25 16:37 - 2015-06-25 16:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-06-25 16:35 - 2015-06-25 16:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2015-06-25 16:38 - 2015-06-25 16:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-06-25 15:53 - 2015-06-25 15:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
2015-06-25 15:51 - 2015-06-25 15:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2015-08-10 15:49 - 2015-08-10 15:54 - 00393376 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\AppVIsvStream64.dll
2015-11-11 13:05 - 2015-11-11 13:05 - 00268280 _____ () H:\SOLIDWORKS Corp\SOLIDWORKS\sldBodyDiffu.dll
2016-02-01 16:21 - 2016-02-01 16:22 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-02-12 08:39 - 2016-02-12 08:39 - 09789952 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2016.27.2.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll
2016-02-01 16:21 - 2016-02-01 16:21 - 03746816 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.49020.0_x64__8wekyb3d8bbwe\Calculator.exe
2015-12-15 15:35 - 2015-12-15 15:35 - 00258560 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.49020.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2015-07-08 23:18 - 2015-07-08 23:18 - 00794920 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\kpcengine.2.3.dll
2012-01-26 09:36 - 2012-01-26 09:36 - 00278528 ____R () C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\xerces-depdom_2_6.dll
2015-03-11 16:57 - 2016-01-30 10:35 - 50679920 _____ () C:\Users\Marc\AppData\Roaming\Spotify\libcef.dll
2015-03-11 16:57 - 2016-01-30 10:35 - 01882224 _____ () C:\Users\Marc\AppData\Roaming\Spotify\libglesv2.dll
2015-03-11 16:57 - 2016-01-30 10:35 - 00082544 _____ () C:\Users\Marc\AppData\Roaming\Spotify\libegl.dll
2015-01-20 18:00 - 2012-05-14 12:41 - 00043008 _____ () C:\Program Files (x86)\Corsair\M60 Mouse\hidGetKey.dll
2015-12-13 10:55 - 2015-10-31 01:59 - 00034768 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\faulthandler.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00022848 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\Crypto.Random.OSRNG.winrandom.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00023352 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\Crypto.Util._counter.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00042296 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\Crypto.Cipher._AES.pyd
2015-12-13 10:55 - 2015-10-31 01:59 - 00116688 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\pywintypes27.dll
2015-12-13 10:55 - 2015-10-31 01:59 - 00093640 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\_ctypes.pyd
2015-12-13 10:55 - 2015-10-31 01:59 - 00018376 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\select.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00019760 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00105928 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32api.pyd
2015-12-13 10:55 - 2015-10-31 01:59 - 00392144 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\pythoncom27.dll
2015-12-13 10:55 - 2015-12-08 22:36 - 00381752 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd
2015-12-13 10:55 - 2015-10-31 01:59 - 00692688 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\unicodedata.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00020816 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00109520 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 01737032 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00020808 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00020800 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\_cffi_python_x66cf7a7cx17a72769.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00021840 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00038696 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\fastpath.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00024528 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32event.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00020936 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\mmapfile.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00114640 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32security.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00021320 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_xde9e4433x360333f0.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00124880 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32file.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00030160 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32pipe.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00043472 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32process.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00175560 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32gui.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00028616 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32ts.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32clipboard.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00048592 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32service.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00024392 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00036296 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\librsync.dll
2015-12-13 10:55 - 2015-10-31 02:00 - 00024016 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\win32profile.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00117056 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00031568 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\enterprise_data.compiled._enterprise_data.pyd
2015-10-02 14:59 - 2015-11-05 01:04 - 00293392 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\EnterpriseDataAdapter.dll
2015-12-13 10:55 - 2015-12-08 22:36 - 00023376 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd
2015-12-13 10:55 - 2015-10-31 01:59 - 00134608 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\_elementtree.pyd
2015-12-13 10:55 - 2015-10-31 01:59 - 00134088 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\pyexpat.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00240584 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\jpegtran.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00020280 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00052024 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00021304 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\Crypto.Util.strxor.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00350152 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\winxpgui.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00084792 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2015-12-13 10:55 - 2015-12-08 22:36 - 01826608 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd
2015-12-13 10:55 - 2015-10-31 02:00 - 00083912 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\sip.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 03891504 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 01950000 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00519984 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00133936 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00225080 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00207672 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00024904 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00486704 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd
2015-12-13 10:55 - 2015-12-08 22:36 - 00357680 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd
2015-03-04 22:45 - 2015-10-31 02:01 - 00019920 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll
2015-03-04 22:45 - 2015-10-31 02:00 - 00786904 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-08-02 22:20 - 2015-10-31 02:00 - 00063448 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-03-04 22:45 - 2015-10-31 02:00 - 00019408 _____ () C:\Users\Marc\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd
2011-02-15 19:17 - 2011-02-15 19:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll
2010-11-22 23:57 - 2010-11-22 23:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd
2015-10-21 21:29 - 2015-10-21 21:29 - 00113171 _____ () C:\Program Files (x86)\Raptr\libvlc.dll
2015-10-21 21:29 - 2015-10-21 21:29 - 02396691 _____ () C:\Program Files (x86)\Raptr\libvlccore.dll
2015-06-27 00:09 - 2015-06-27 00:09 - 00271872 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll
2010-11-22 23:57 - 2010-11-22 23:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00324608 _____ () C:\Program Files (x86)\Raptr\PIL._imaging.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00024064 _____ () C:\Program Files (x86)\Raptr\win32pipe.pyd
2016-01-22 18:49 - 2016-01-18 11:10 - 00074272 _____ () C:\Program Files (x86)\PDF24\zlib.dll
2016-01-22 18:49 - 2016-01-18 11:10 - 00052256 _____ () C:\Program Files (x86)\PDF24\OperationUI.dll
2010-11-22 23:57 - 2010-11-22 23:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd
2014-06-18 01:56 - 2014-06-18 01:56 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd
2011-02-15 19:17 - 2011-02-15 19:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll
2010-11-23 00:06 - 2010-11-23 00:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll
2016-02-01 16:21 - 2016-02-01 16:22 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-02-01 16:21 - 2016-02-01 16:22 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE trusted site: HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\hola.org -> hxxp://hola.org

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-1693380438-3469794576-592618473-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Marc\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\acer01.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKLM\...\StartupApproved\StartupFolder: => "NI Error Reporting.lnk"
HKLM\...\StartupApproved\Run: => "hola"
HKLM\...\StartupApproved\Run32: => "iTunesHelper"
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\StartupApproved\StartupFolder: => "OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk"
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\StartupApproved\Run: => "ExpoThemes-Driver"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{04C0C2BD-8330-48DB-8416-E6BFB74849E8}] => (Allow) H:\SOLIDWORKS Corp\SOLIDWORKS\swScheduler\DTSCoordinatorService.exe
FirewallRules: [{2292F10C-8697-4D24-97D3-4743E1E3C8ED}] => (Allow) H:\SOLIDWORKS Corp\SOLIDWORKS\swScheduler\DTSCoordinatorService.exe
FirewallRules: [{05F09BF6-26A6-41AC-9578-C441A76A483F}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{968D5142-694F-4559-A2FE-F92C04ED41C0}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{5B0489A3-5C43-440F-83AB-90881EC9B2CC}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{F824238D-2B2E-4E9E-9542-52209F85AA44}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{B28F293E-F1FA-42BE-81BC-F1848F0810CC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{61963FFF-89EB-450A-B5FB-91D7F1D9C7BB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{3BC1A24F-D5E0-4F49-86BC-0845510A6747}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{460D100E-AD31-46AC-9811-650DF48B17A1}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{47D03541-4D1A-429F-B53E-3364E071C82A}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{56C29C22-FBDD-4D4E-90AC-EEE2A06F0EC6}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{E7808474-1544-41C2-9EBF-4D6E799EA66F}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{E5F1C619-6F9D-42E5-A53E-53EEF178E935}] => (Allow) LPort=1900
FirewallRules: [{1FC8B7ED-E963-42A2-B849-0C7938CBB08D}] => (Allow) LPort=2869
FirewallRules: [{90910DB4-A77A-4D16-934C-2D72B120FBEE}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{DB0BD846-FC0E-4D8B-8C7A-BBD098E8A516}] => (Allow) D:\Origin Games\STAR WARS Battlefront\starwarsbattlefront.exe
FirewallRules: [{82CE4199-4BB6-4CC6-A178-46BEA53E0ED2}] => (Allow) D:\Origin Games\STAR WARS Battlefront\starwarsbattlefront.exe
FirewallRules: [{5D172498-28B9-41A4-AB58-3A9DC4D9BF59}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{FD303308-1F3B-4582-AB1C-B5724F89E547}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [UDP Query User{D09C083E-323A-41D7-B712-23831CAF5405}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{3ACA699A-EE7A-4CD7-9F70-A47D976A651E}E:\hearthstone\hearthstone.exe] => (Allow) E:\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{60FC7AF6-44CE-4597-B1BA-C11C0D76BA79}E:\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{B273F3FD-1693-4738-A808-7B690661E729}E:\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base38793\heroesofthestorm_x64.exe
FirewallRules: [{A2403FE3-3881-4E58-AFB4-094176415C42}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{D58DDD5C-CD89-4A12-86DC-C07024582570}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{97659533-8F07-4D4B-B9E5-8E77D00EB0CB}] => (Allow) E:\SteamLibrary\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe
FirewallRules: [{EE2DBBE4-635A-4FDB-AF75-BE1A49681DDA}] => (Allow) E:\SteamLibrary\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe
FirewallRules: [{B7548E43-20E1-40E4-8CEF-24A663FE55B0}] => (Allow) E:\SteamLibrary\SteamApps\common\Portal 2\portal2.exe
FirewallRules: [{E47FC27C-DF34-415A-9E8C-1EA9852233E8}] => (Allow) E:\SteamLibrary\SteamApps\common\Portal 2\portal2.exe
FirewallRules: [UDP Query User{7B4E9F3B-FC45-4F01-872F-C5BAA6E65C16}E:\heroes of the storm\versions\base37274\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base37274\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{277633A7-149F-4460-B0A9-08AA498B3ED5}E:\heroes of the storm\versions\base37274\heroesofthestorm_x64.exe] => (Allow) E:\heroes of the storm\versions\base37274\heroesofthestorm_x64.exe
FirewallRules: [{B078DF06-6C47-4021-BA7A-66EF4219CF7F}] => (Allow) C:\Program Files\HP\HP Officejet 5740 series\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{3D05B1F0-DCE4-4A28-975F-F4D07796FBB3}] => (Allow) LPort=5357
FirewallRules: [{6B0571EB-CB0C-4C04-9FB2-9BD7D17A88D3}] => (Allow) C:\Program Files\HP\HP Officejet 5740 series\Bin\DeviceSetup.exe
FirewallRules: [{57CE99B2-2EA3-4EBA-918A-6F6F760BAECF}] => (Allow) C:\Program Files\HP\HP Officejet 5740 series\bin\SendAFax.exe
FirewallRules: [{0E20CC7D-C8BC-4956-B16B-63BCF4345EE5}] => (Allow) C:\Program Files\HP\HP Officejet 5740 series\bin\DigitalWizards.exe
FirewallRules: [{57027692-25FA-4AD2-84B7-EA34DF82CFA9}] => (Allow) C:\Program Files\HP\HP Officejet 5740 series\bin\FaxApplications.exe
FirewallRules: [{3142A446-BD40-462B-A21A-9D1B8B20A9BA}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe
FirewallRules: [{7FC345D0-FAEB-47F0-A353-C9AAF87FA169}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe
FirewallRules: [{5CC4D6EF-479A-441F-9719-143453ECC8CD}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [UDP Query User{DE552768-7BAB-4EFF-9D5E-B4B0E2ABED2B}C:\users\marc\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marc\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{0DF71BC6-F362-4E92-909D-32A874FB0E39}C:\users\marc\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marc\appdata\roaming\spotify\spotify.exe
FirewallRules: [{577F28BA-ABD7-463E-8475-318D3993CAB7}] => (Allow) C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{F18E12FA-739C-4252-90AE-FD03B6CBF786}] => (Allow) C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [TCP Query User{2390AD15-8ABA-4FAC-B5AD-F037FBA03B1F}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{A1FD5BC2-CBE8-45EC-B60B-574AD2FE632C}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{DAE88FF8-0B7B-4B73-B8A0-979072937FD5}C:\users\marc\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marc\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{485B7C97-32FC-4677-A95A-55D7872D093E}C:\users\marc\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marc\appdata\roaming\spotify\spotify.exe
FirewallRules: [{B008A409-9480-4FB5-B4D6-EA433BE6D9BE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{9AF76308-0A57-4990-A1E5-3847417FD83A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{7508FE0A-49F6-4BD7-B5EA-096A7028302D}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{C74F5DAF-7FD1-4ABF-8087-88C4C0F8052B}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [TCP Query User{1B970F28-E1DB-45D5-A1CC-A754B04D3593}E:\programme\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) E:\programme\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [UDP Query User{BC907225-8312-4C3E-B133-41EA9C6AC4AC}E:\programme\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) E:\programme\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [TCP Query User{42501918-B4E2-426E-8EC4-D44D01C76174}E:\programme\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) E:\programme\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [UDP Query User{1B2D608A-EA34-45F6-B021-4685A49CE8F3}E:\programme\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) E:\programme\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [TCP Query User{B675978D-1991-4306-8EEE-56E572029BAF}E:\steamlibrary\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) E:\steamlibrary\steamapps\common\counter-strike global offensive\csgo.exe
FirewallRules: [UDP Query User{2B67D401-91C3-4888-B7F5-84C0CA6DB7E7}E:\steamlibrary\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) E:\steamlibrary\steamapps\common\counter-strike global offensive\csgo.exe
FirewallRules: [{FB38E16B-5A21-41BC-BC37-CCCD40B777E9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{5092319D-DBA7-4F93-9914-93939133E46B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{285F7AFE-0DE3-4167-B193-91D1868656EE}] => (Allow) E:\Battle.net\Battle.net\Battle.net.exe
FirewallRules: [{FB309935-1418-47FF-9814-6CF8D00CA90C}] => (Allow) E:\Battle.net\Battle.net\Battle.net.exe
FirewallRules: [{7860ACEF-E12B-4491-B484-526069EA6768}] => (Allow) E:\SteamLibrary\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{8165B654-33BC-4537-A738-D3593BCD0D49}] => (Allow) E:\SteamLibrary\SteamApps\common\dota 2 beta\dota.exe
FirewallRules: [{C042DEFE-D805-4930-9C3D-52CC2CDCD228}] => (Allow) E:\SteamLibrary\SteamApps\common\Natural Selection 2\NS2.exe
FirewallRules: [{B0450AC7-FE2F-4207-8DD6-83157249FCF8}] => (Allow) E:\SteamLibrary\SteamApps\common\Natural Selection 2\NS2.exe
FirewallRules: [{563F101A-E512-4423-AB7E-780B8691101A}] => (Allow) E:\SteamLibrary\SteamApps\common\Heroes & Generals\hngsteamlauncher.exe
FirewallRules: [{05E335E6-10FE-4A47-A6E2-9988AFCFFA33}] => (Allow) E:\SteamLibrary\SteamApps\common\Heroes & Generals\hngsteamlauncher.exe
FirewallRules: [{59A13E3C-C960-4AE2-8825-120236BBFB79}] => (Allow) E:\SteamLibrary\SteamApps\common\Prison Architect\Prison Architect.exe
FirewallRules: [{0B9C464A-490E-4043-8FDC-FA5175D1B354}] => (Allow) E:\SteamLibrary\SteamApps\common\Prison Architect\Prison Architect.exe
FirewallRules: [{89A64CBC-F271-4C1D-9F81-B8CE317AB9DE}] => (Allow) E:\SteamLibrary\SteamApps\common\DayZ\DayZ_BE.exe
FirewallRules: [{8834A30F-2E8A-45DD-ABFA-2E17EB726D3A}] => (Allow) E:\SteamLibrary\SteamApps\common\DayZ\DayZ_BE.exe
FirewallRules: [{049C5F21-6E26-4163-8E1E-DFA3A1C7AC2A}] => (Allow) E:\SteamLibrary\SteamApps\common\Defy Gravity\DefyGravity.exe
FirewallRules: [{6A868E52-E306-4222-8E9B-0A81737174EF}] => (Allow) E:\SteamLibrary\SteamApps\common\Defy Gravity\DefyGravity.exe
FirewallRules: [{6351F154-2FD1-4A3C-A774-D9440571C43B}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\The Crew (Worldwide)\TheCrew.exe
FirewallRules: [{297B9536-438C-4F19-91C6-A92478BEBD52}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\The Crew (Worldwide)\TheCrew.exe
FirewallRules: [{A4AC4358-FE83-4DD3-9522-74535C77B1A7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{62B5C57D-F7F4-4EB2-87E9-01BD0AB195AD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{A1AECECB-7310-4E55-B3C3-79CB5C920786}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{AC289F71-B8B0-4DE4-B38B-CED7F6B6C1B0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{CEF9F608-5236-4ED3-B103-EA62689858EC}] => (Allow) C:\Users\Marc\AppData\Local\Temp\nsm89E.tmp\CnetInstaller-10909598.exe
FirewallRules: [{82A2A759-C921-4505-B85B-15F4E4147C5C}] => (Allow) C:\Users\Marc\AppData\Local\Temp\nsm89E.tmp\CnetInstaller-10909598.exe
FirewallRules: [{34807523-1AEE-47DE-AE8B-3A51F566A4F3}] => (Allow) D:\Origin Games\Battlefield 4\bf4_x86.exe
FirewallRules: [{08A58ECE-9D03-43C1-B62A-45080955E34C}] => (Allow) D:\Origin Games\Battlefield 4\bf4_x86.exe
FirewallRules: [{5BCFA792-EFF3-407A-8511-A980449764A4}] => (Allow) D:\Origin Games\Battlefield 4\bf4.exe
FirewallRules: [{F922CCE1-D1FA-43EE-850B-D64D0729908F}] => (Allow) D:\Origin Games\Battlefield 4\bf4.exe
FirewallRules: [{62ABDD42-806B-4A42-88E3-49A055FD46DF}] => (Allow) E:\SteamLibrary\SteamApps\common\Source SDK Base 2013 Multiplayer\hl2.exe
FirewallRules: [{5B7E3D48-1BC1-47D6-AA06-C84D04F3C0F4}] => (Allow) E:\SteamLibrary\SteamApps\common\Source SDK Base 2013 Multiplayer\hl2.exe
FirewallRules: [{6B2DABE6-FE84-4ED0-A27F-C0E98029B593}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{9678E37C-DF9F-4935-9AF3-7922CAE8AF34}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{159D8D49-CDE0-436C-B556-5F6AF05140D9}] => (Allow) E:\SteamLibrary\SteamApps\common\EvolveBeta\Bin64_SteamRetail\StaticLauncher64.exe
FirewallRules: [{021D36BE-300D-45B6-AF9A-72DAB9A04378}] => (Allow) E:\SteamLibrary\SteamApps\common\EvolveBeta\Bin64_SteamRetail\StaticLauncher64.exe
FirewallRules: [{CB422325-3C8E-425A-8B1C-03080E9EF74C}] => (Allow) E:\SteamLibrary\SteamApps\common\Arma 3\arma3.exe
FirewallRules: [{EF9B3A98-96E8-4857-8385-0A646CB5A7E2}] => (Allow) E:\SteamLibrary\SteamApps\common\Arma 3\arma3.exe
FirewallRules: [{36E2E851-8B42-4E80-87EE-C3D9D45F1B2E}] => (Allow) E:\SteamLibrary\SteamApps\common\Arma 3\arma3launcher.exe
FirewallRules: [{2696B0BB-46ED-4FDB-B552-FD80BFE578AD}] => (Allow) E:\SteamLibrary\SteamApps\common\Arma 3\arma3launcher.exe
FirewallRules: [{E9BB9C68-CBAD-451B-A685-2BF8D3CB7A3F}] => (Allow) E:\SteamLibrary\SteamApps\common\Ryse Son of Rome\Bin64\Ryse.exe
FirewallRules: [{D23B1367-9913-417F-87AB-D3396B40F699}] => (Allow) E:\SteamLibrary\SteamApps\common\Ryse Son of Rome\Bin64\Ryse.exe
FirewallRules: [{4A0D424C-F51F-4B5C-9770-10D5744DB7DF}] => (Allow) E:\SteamLibrary\SteamApps\common\State of Decay\StateOfDecay.exe
FirewallRules: [{46775F97-6527-4325-8FA3-D3CCC87DA2A4}] => (Allow) E:\SteamLibrary\SteamApps\common\State of Decay\StateOfDecay.exe
FirewallRules: [{1BEB60DD-2B94-4E3F-B111-3692BB3F5514}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{600A881F-27ED-49FE-B3CB-FC260D79FCCF}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{D8F0A9AE-F1E1-49C3-887B-6211F6584261}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{389B377E-F600-49F6-91AC-8AAA641D3FD4}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{0A40B17E-54FF-4BC9-B70A-ACF67BB451D6}] => (Allow) E:\SteamLibrary\SteamApps\common\Yet Another Zombie Defense\YetAnotherZombieDefense.exe
FirewallRules: [{AEB6C624-F212-44A9-8D0D-EDBA03DA218E}] => (Allow) E:\SteamLibrary\SteamApps\common\Yet Another Zombie Defense\YetAnotherZombieDefense.exe
FirewallRules: [{68FF0A96-6A23-4308-BA67-4EF952FD1D27}] => (Allow) E:\SteamLibrary\SteamApps\common\Murdered Soul Suspect\Binaries\Win64\Murdered.exe
FirewallRules: [{632AFE47-E70F-45D0-8ABC-1996365D7886}] => (Allow) E:\SteamLibrary\SteamApps\common\Murdered Soul Suspect\Binaries\Win64\Murdered.exe
FirewallRules: [{E8487115-3709-44D0-91C4-B986FF6D2971}] => (Allow) E:\SteamLibrary\SteamApps\common\Always Sometimes Monsters\Game.exe
FirewallRules: [{19AE9337-1B49-40B0-8705-34ED6F1BC3CC}] => (Allow) E:\SteamLibrary\SteamApps\common\Always Sometimes Monsters\Game.exe
FirewallRules: [{1E8941CF-94D0-45F2-BE59-BA574B93DB48}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe
FirewallRules: [{4BFAABFE-5D77-445B-8C7E-A2C09ACDA5F3}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe
FirewallRules: [{30374157-3827-4A3A-8983-7D57859E0FC0}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe
FirewallRules: [{EE6714E2-1C05-4907-A4B3-85550D502819}] => (Allow) E:\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe
FirewallRules: [{97322B45-BDFF-41FD-B5B9-B8432B8A1C88}] => (Allow) C:\Users\Marc\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{4EA9CDCF-2BC0-4865-A8CE-3DD5F7A82D1E}] => (Allow) C:\Users\Marc\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{774819F0-DD02-455A-8F6A-4CDC6CACF483}] => (Allow) E:\SteamLibrary\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [{AAF6C5AC-E206-4911-8E0A-C0A1625EDD4F}] => (Allow) E:\SteamLibrary\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [TCP Query User{30DDB936-8C03-4E40-B3A4-CC3F433F2840}C:\users\marc\appdata\local\hola\firefox\app\hola_plugin.exe] => (Allow) C:\users\marc\appdata\local\hola\firefox\app\hola_plugin.exe
FirewallRules: [UDP Query User{90CE08A2-BCD8-4FCC-8592-476739ED91D8}C:\users\marc\appdata\local\hola\firefox\app\hola_plugin.exe] => (Allow) C:\users\marc\appdata\local\hola\firefox\app\hola_plugin.exe
FirewallRules: [TCP Query User{CAAE8447-E03F-4743-B8D3-712498B5DA90}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{ACCA5787-DA7B-4E9F-AA8C-35C4C7BCF3AB}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{6FD8BF62-3904-487C-9C16-FFC0F2ED2BAF}] => (Allow) E:\SteamLibrary\SteamApps\common\Cities_Skylines\Cities.exe
FirewallRules: [{3000C338-0044-40C3-86B7-B6351A6B8F86}] => (Allow) E:\SteamLibrary\SteamApps\common\Cities_Skylines\Cities.exe
FirewallRules: [{05A5BA5C-EA50-48C3-8731-08DB5CC1411A}] => (Allow) E:\SteamLibrary\SteamApps\common\Trine 2\trine2_launcher.exe
FirewallRules: [{2194C4B0-07A9-44F4-A3F7-1C3B06682167}] => (Allow) E:\SteamLibrary\SteamApps\common\Trine 2\trine2_launcher.exe
FirewallRules: [{A9C2A7E2-75FE-4C61-8B15-6FCD44513AE3}] => (Allow) C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
FirewallRules: [{3B848BF1-A2CB-49D8-BEDD-6E15C4BDB929}] => (Allow) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
FirewallRules: [{22EC3136-CADE-4416-9D77-F40268D55AD2}] => (Allow) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
FirewallRules: [{C229CA86-D1D2-4089-A45B-2E31E803BAF1}] => (Allow) C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
FirewallRules: [{4F08CF52-B016-4A68-944C-1304C9C0BE35}] => (Allow) C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
FirewallRules: [{CD4A55A3-AC69-4910-B11D-11764353D2A1}] => (Allow) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
FirewallRules: [{E9F3CA92-CAD3-46F6-BDA4-C9D733553497}] => (Allow) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
FirewallRules: [{8A3BB187-468E-4D84-9792-02A814D0A23C}] => (Allow) C:\Program Files (x86)\National Instruments\Shared\nisvcloc\nisvcloc.exe
FirewallRules: [{DF58609B-7294-4D7B-8E9A-A4EABA727F0B}] => (Allow) C:\Program Files (x86)\National Instruments\Shared\nisvcloc\nisvcloc.exe
FirewallRules: [{5913619C-FD02-4678-8573-9C0DA30DE15A}] => (Allow) C:\Program Files (x86)\JKI\VI Package Manager\support\JKIUpdate.exe
FirewallRules: [{77FD5A9D-B19B-4DE6-B427-3FD0236E8178}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
FirewallRules: [{0A7F140C-2E55-44DA-8F2C-91838ADDC30A}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\swScheduler\DTSCoordinatorService.exe
FirewallRules: [{BD30720E-867F-497B-A174-D6E5ADC4FAD6}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\photoview\photoview360.exe
FirewallRules: [{3E6250DA-9E35-4EE2-9023-EFBBB339979C}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\photoview\photoview360.exe
FirewallRules: [{9E0483EE-4EC2-4672-96AE-D881FBFF5A0B}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\photoview\photoview360_cl.exe
FirewallRules: [{D3DD8ACF-F8CC-479F-9537-E32C5460B8BB}] => (Allow) C:\Program Files\SolidWorks Corp\SolidWorks\photoview\photoview360_cl.exe
FirewallRules: [{090DC086-DFCC-476D-BFAC-205FBC441EE8}] => (Allow) E:\SteamLibrary\SteamApps\common\tbs\win32\The Banner Saga.exe
FirewallRules: [{BB02F860-538F-464C-9941-3F2519F35B0F}] => (Allow) E:\SteamLibrary\SteamApps\common\tbs\win32\The Banner Saga.exe
FirewallRules: [{FF3C903E-CDA3-4EB6-A389-33DD37861394}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{8020054C-570B-4B29-8A99-46E98C5AC61B}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{C10FB07B-DC49-4028-924B-6970893684FE}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{9A299600-7E64-4E02-B3F0-EA1E7F1D4D4F}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{C6A5C690-0CC4-4D31-A52A-B2D44BEAD854}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Wiederherstellungspunkte =========================

ACHTUNG: Systemwiederherstellung ist deaktiviert

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (02/18/2016 09:20:32 AM) (Source: MsiInstaller) (EventID: 1024) (User: MARCPC)
Description: Produkt: Adobe Acrobat Reader DC - Deutsch - Update "{AC76BA86-7AD7-0000-2550-AC0F0A4E5B00}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127

Error: (02/17/2016 04:09:09 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (02/17/2016 03:17:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f0
Name des fehlerhaften Moduls: Cortana.Core.dll, Version: 0.0.0.0, Zeitstempel: 0x568b1b1b
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000001325d
ID des fehlerhaften Prozesses: 0xd48
Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0
Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1
Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2
Berichtskennung: backgroundTaskHost.exe3
Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5

Error: (02/16/2016 11:30:06 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (02/14/2016 11:28:00 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (02/14/2016 11:27:39 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARCPC)
Description: Bei der Aktivierung der App „Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2147023174. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (02/13/2016 05:40:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f0
Name des fehlerhaften Moduls: Cortana.Core.dll, Version: 0.0.0.0, Zeitstempel: 0x568b1b1b
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000001325d
ID des fehlerhaften Prozesses: 0x23d8
Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0
Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1
Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2
Berichtskennung: backgroundTaskHost.exe3
Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5

Error: (02/13/2016 10:56:55 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (02/13/2016 10:21:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d8f0
Name des fehlerhaften Moduls: Cortana.Core.dll, Version: 0.0.0.0, Zeitstempel: 0x568b1b1b
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000001325d
ID des fehlerhaften Prozesses: 0xd58
Startzeit der fehlerhaften Anwendung: 0xbackgroundTaskHost.exe0
Pfad der fehlerhaften Anwendung: backgroundTaskHost.exe1
Pfad des fehlerhaften Moduls: backgroundTaskHost.exe2
Berichtskennung: backgroundTaskHost.exe3
Vollständiger Name des fehlerhaften Pakets: backgroundTaskHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: backgroundTaskHost.exe5

Error: (02/12/2016 08:57:58 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8


Systemfehler:
=============
Error: (02/18/2016 09:09:54 AM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}

Error: (02/17/2016 04:17:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenzugriff_1fe7d4c" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (02/17/2016 04:17:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenspeicher _1fe7d4c" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (02/17/2016 04:17:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Kontaktdaten_1fe7d4c" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (02/17/2016 04:17:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_1fe7d4c" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (02/17/2016 04:17:45 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (02/17/2016 03:20:40 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}

Error: (02/17/2016 03:17:57 PM) (Source: DCOM) (EventID: 10016) (User: MARCPC)
Description: ComputerstandardLokalAktivierung{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}MarcPCMarcS-1-5-21-1693380438-3469794576-592618473-1001LocalHost (unter Verwendung von LRPC)Microsoft.WindowsStore_2016.27.2.0_x64__8wekyb3d8bbweS-1-15-2-1609473798-1231923017-684268153-4268514328-882773646-2760585773-1760938157

Error: (02/16/2016 11:40:53 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenzugriff_1c2dc2e" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (02/16/2016 11:40:53 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenspeicher _1c2dc2e" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.


CodeIntegrity:
===================================
  Date: 2016-02-15 17:30:04.378
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr\ltc_help64-106568.dll that did not meet the Store signing level requirements.

  Date: 2016-02-15 17:30:04.063
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr\ltc_help64-106568.dll that did not meet the Store signing level requirements.

  Date: 2016-02-15 17:25:25.709
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr\ltc_help64-106568.dll that did not meet the Store signing level requirements.

  Date: 2016-02-11 17:00:18.325
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-02-11 09:51:17.793
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-02-10 17:08:38.541
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-02-10 17:04:38.394
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr\ltc_help64-106568.dll that did not meet the Store signing level requirements.

  Date: 2016-02-08 16:47:27.583
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-02-02 14:23:13.237
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-02-01 18:44:10.500
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Xeon(R) CPU E3-1230 v3 @ 3.30GHz
Prozentuale Nutzung des RAM: 39%
Installierter physikalischer RAM: 8111.42 MB
Verfügbarer physikalischer RAM: 4928.73 MB
Summe virtueller Speicher: 9391.42 MB
Verfügbarer virtueller Speicher: 5545.02 MB

==================== Laufwerke ================================

Drive c: (System) (Fixed) (Total:111.01 GB) (Free:9.37 GB) NTFS
Drive d: (MARC 2) (Removable) (Total:29.43 GB) (Free:12.06 GB) FAT32
Drive e: (Spiele und Daten) (Fixed) (Total:931.51 GB) (Free:142.18 GB) NTFS
Drive g: (TOSHIBA EXT) (Fixed) (Total:931.51 GB) (Free:31.46 GB) NTFS
Drive h: (SSD) (Fixed) (Total:119.24 GB) (Free:56.1 GB) NTFS
Drive i: () (Fixed) (Total:335.35 GB) (Free:300.93 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: 32463C54)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: 35D7A228)
Partition 1: (Not Active) - (Size=119.2 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 792FABD5)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 1A389442)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

========================================================
Disk: 4 (MBR Code: Windows 7 or Vista) (Size: 335.4 GB) (Disk ID: 834FDA0F)
Partition 1: (Not Active) - (Size=335.3 GB) - (Type=07 NTFS)

========================================================
Disk: 5 (MBR Code: Windows XP) (Size: 29.4 GB) (Disk ID: C3072E18)
Partition 1: (Not Active) - (Size=29.4 GB) - (Type=0C)

==================== Ende von Addition.txt ============================
         

Alt 18.02.2016, 10:36   #5
Deathkid535
/// Malwareteam
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



Hi,

Schritt # 1: AdwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).


Schritt # 2: FRST

Bitte noch ein frisches FRST-Log.



Schritt # 3: Bitte Posten
  • Das Log von AdwCleaner
  • Das frische FRST-Log


Alt 18.02.2016, 11:11   #6
MarcS
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



AdwCleaner Logfile:
Code:
ATTFilter
# AdwCleaner v5.021 - Bericht erstellt am 21/11/2015 um 15:15:32
# Aktualisiert am 14/11/2015 von Xplode
# Datenbank : 2015-11-19.4 [Server]
# Betriebssystem : Windows 10 Pro  (x64)
# Benutzername : Marc - MARCPC
# Gestartet von : C:\Users\Marc\Downloads\adwcleaner_5.021.exe
# Option : Löschen
# Unterstützung : hxxp://toolslib.net/forum

***** [ Dienste ] *****


***** [ Ordner ] *****

[-] Ordner Gelöscht : C:\Program Files (x86)\Convertor
[-] Ordner Gelöscht : C:\Program Files (x86)\winsta
[!] Ordner Nicht Gelöscht : C:\Program Files (x86)\Winsta
[-] Ordner Gelöscht : C:\ProgramData\Convertor
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Local\Hola
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Local\Temp\FoxTab
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Roaming\Convertor
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Roaming\pdfie
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Roaming\WinKit
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Roaming\jellylam
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Roaming\winsta
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Roaming\PDFConvert
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Roaming\NewNotepad
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Roaming\PlusN
[!] Ordner Nicht Gelöscht : C:\Users\Marc\AppData\Roaming\Winsta
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\xk1lzbrb.default\FoxTab
[-] Ordner Gelöscht : C:\Users\Marc\Documents\benko

***** [ Dateien ] *****

[-] Datei Gelöscht : C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_okanipcmceoeemlbjnmnbdibhgpbllgc_0.localstorage
[-] Datei Gelöscht : C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_okanipcmceoeemlbjnmnbdibhgpbllgc_0.localstorage-journal
[-] Datei Gelöscht : C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\xk1lzbrb.default\foxydeal.sqlite
[-] Datei Gelöscht : C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\xk1lzbrb.default\user.js

***** [ DLLs ] *****


***** [ Verknüpfungen ] *****


***** [ Aufgabenplanung ] *****

[-] Aufgabenplanung Gelöscht : DriverMgr
[-] Aufgabenplanung Gelöscht : realtor

***** [ Registrierungsdatenbank ] *****

[-] Schlüssel Gelöscht : HKLM\SOFTWARE\CLASSES\adTech.adTech.1
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\CLASSES\adTech.adTech
[-] Schlüssel Gelöscht : HKCU\Software\MozillaPlugins\@hola.org/vlc
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{934B156A-3D17-3981-B78A-5C138F423AD6}
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{63D2A451-3351-178C-7BC4-13C4D58A7652}
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{3FC2D59A-5C76-1E97-30DC-1EC6784419E5}
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{934B156A-3D17-3981-B78A-5C138F423AD6}
[-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{934B156A-3D17-3981-B78A-5C138F423AD6}
[-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{63D2A451-3351-178C-7BC4-13C4D58A7652}
[-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{934B156A-3D17-3981-B78A-5C138F423AD6}
[-] Schlüssel Gelöscht : HKCU\Software\NoVooITSet
[-] Schlüssel Gelöscht : HKCU\Software\OCS
[-] Schlüssel Gelöscht : HKCU\Software\Vonteera Safe ads
[-] Schlüssel Gelöscht : HKCU\Software\PDFConvert
[-] Schlüssel Gelöscht : HKCU\Software\Hola
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{DE1D6B0C-D8F3-4FC0-9B9F-E5EB1529BF94}

***** [ Internetbrowser ] *****

[-] [C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\xk1lzbrb.default\prefs.js] [Preference] Gelöscht : user_pref("browser.search.selectedEngine", "default-search.net");
[-] [C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Gelöscht : okanipcmceoeemlbjnmnbdibhgpbllgc

*************************

:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [4234 Bytes] ##########
         
--- --- ---
AdwCleaner Logfile:
Code:
ATTFilter
# AdwCleaner v5.034 - Bericht erstellt am 18/02/2016 um 12:07:21
# Aktualisiert am 16/02/2016 von Xplode
# Datenbank : 2016-02-16.2 [Server]
# Betriebssystem : Windows 10 Pro  (x64)
# Benutzername : Marc - MARCPC
# Gestartet von : C:\Users\Marc\Downloads\AdwCleaner_5.034.exe
# Option : Löschen
# Unterstützung : hxxp://toolslib.net/forum

***** [ Dienste ] *****


***** [ Ordner ] *****

[-] Ordner Gelöscht : C:\Users\Marc\AppData\Local\Temp\FoxTab
[-] Ordner Gelöscht : C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\FoxTab

***** [ Dateien ] *****

[-] Datei Gelöscht : C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\ffext_basicvideoext@startpage24.xpi

***** [ DLLs ] *****


***** [ Verknüpfungen ] *****


***** [ Aufgabenplanung ] *****

[-] Geplante Aufgabe Gelöscht : Urla1
[-] Geplante Aufgabe Gelöscht : Urla2
[-] Geplante Aufgabe Gelöscht : Urla3

***** [ Registrierungsdatenbank ] *****


***** [ Internetbrowser ] *****


*************************

:: "Tracing" Schlüssel gelöscht
:: Proxy Einstellungen zurückgesetzt
:: Winsock Einstellungen zurückgesetzt
:: Chrome Richtlinien gelöscht

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [5577 Bytes] ##########
         
--- --- ---

Alt 18.02.2016, 11:13   #7
MarcS
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:17-02-2016
durchgeführt von Marc (Administrator) auf MARCPC (18-02-2016 12:09:15)
Gestartet von C:\Users\Marc\Downloads
Geladene Profile: Marc (Verfügbare Profile: Marc)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\MAX\nimxs.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\nisvcloc\nisvcloc.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe
(Mentor Graphics Corporation) H:\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\remotesolverdispatcherservice.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Mentor Graphics Corporation) H:\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\dispatcher.exe
(National Instruments Corporation) C:\Windows\SysWOW64\lktsrv.exe
(National Instruments, Inc.) C:\Windows\SysWOW64\lkcitdl.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\NIWebServiceContainer.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe
(Spotify Ltd) C:\Users\Marc\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Dropbox, Inc.) C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe
(Dropbox, Inc.) C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet 5740 series\Bin\ScanToPCActivationApp.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet 5740 series\Bin\HPNetworkCommunicatorCom.exe
(Spotify Ltd) C:\Users\Marc\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\Marc\AppData\Roaming\Spotify\SpotifyCrashService.exe
(Spotify Ltd) C:\Users\Marc\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\Marc\AppData\Roaming\Spotify\Spotify.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\MSOSYNC.EXE
(Corsair Components  Inc) C:\Program Files (x86)\Corsair\M60 Mouse\M60Hid.exe
(Dassault Systèmes SolidWorks Corp.) H:\SOLIDWORKS Corp\SOLIDWORKS\sldworks_fs.exe
(Corsair Components  Inc) C:\Program Files (x86)\Corsair\M60 Mouse\CorsTra.exe
(Dropbox, Inc.) C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Microsoft Corporation) C:\Windows\System32\BdeUISrv.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-12-17] (Apple Inc.)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4888264 2016-02-03] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Corsair M60 Mouse] => C:\Program Files (x86)\Corsair\M60 Mouse\M60Hid.exe [1766912 2013-06-05] (Corsair Components  Inc)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-11] (Raptr, Inc)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [212000 2016-01-18] (Geek Software GmbH)
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [Spotify Web Helper] => C:\Users\Marc\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1524336 2016-02-18] (Spotify Ltd)
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [ExpoThemes-Driver] => C:\Program Files (x86)\ExpoThemes\Ex8Starter.exe [5120 2014-01-28] (ExpoThemes)
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [NIRegistrationWizard] => C:\Program Files (x86)\National Instruments\Shared\RegistrationWizard\Bin\RegistrationWizard.exe [847000 2013-04-19] ()
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [Dropbox Update] => C:\Users\Marc\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.)
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [HP Officejet 5740 series (NET)] => C:\Program Files\HP\HP Officejet 5740 series\Bin\ScanToPCActivationApp.exe [3483656 2014-08-22] (Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\...\Run: [Spotify] => C:\Users\Marc\AppData\Roaming\Spotify\Spotify.exe [6743664 2016-02-18] (Spotify Ltd)
ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marc\AppData\Roaming\Dropbox\bin\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE OC_GURU.lnk [2015-03-24]
ShortcutTarget: GIGABYTE OC_GURU.lnk -> C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\OC_GURU.exe (GIGABYTE Technology Co.,Ltd.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NI Error Reporting.lnk [2015-05-05]
ShortcutTarget: NI Error Reporting.lnk -> C:\Program Files (x86)\National Instruments\Shared\NI Error Reporting\nierserver.exe (National Instruments Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SOLIDWORKS 2015 Schnellstart.lnk [2016-01-16]
ShortcutTarget: SOLIDWORKS 2015 Schnellstart.lnk -> C:\Windows\Installer\{F8093877-4F2C-40ED-9BA7-2F9F48F5176F}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe (Flexera Software LLC)
Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-12-13]
ShortcutTarget: Dropbox.lnk -> C:\Users\Marc\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Winsock: Catalog5 07 C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [26512 2014-06-06] (National Instruments Corporation)
Winsock: Catalog5-x64 07 C:\Program Files\National Instruments\Shared\mDNS Responder\nimdnsNSP.dll [28560 2014-06-06] (National Instruments Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{68ad92a0-c68f-48ed-822d-7ee599e8900a}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{a727a2b6-e543-47ab-b562-f7ced5ba86b9}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-1693380438-3469794576-592618473-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com/
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2015-12-15] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-01-25] (Oracle Corporation)
BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-11-20] (AO Kaspersky Lab)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-01-22] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-25] (Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2015-12-15] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-25] (Oracle Corporation)
BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-11-20] (AO Kaspersky Lab)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2016-01-22] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-25] (Oracle Corporation)
Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-11-20] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-11-20] (AO Kaspersky Lab)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-08-10] (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL [2015-08-10] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104
FF Homepage: hxxp://www.t-online.de/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-09] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-25] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-25] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-08-10] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-09] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1215155.dll [Keine Datei]
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-25] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-25] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-03] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL [2015-08-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin HKU\.DEFAULT: @hola.org/FlashPlayer -> C:\Users\Marc\AppData\Local\Hola\firefox_hola\app\flash\NPSWF32_18_0_0_232.dll [Keine Datei]
FF Plugin HKU\.DEFAULT: @hola.org/vlc -> C:\Users\Marc\AppData\Local\Hola\firefox_hola\app\vlc\npvlc.dll [Keine Datei]
FF Plugin HKU\S-1-5-21-1693380438-3469794576-592618473-1001: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\Marc\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-07-25] (RocketLife, LLP)
FF Plugin HKU\S-1-5-21-1693380438-3469794576-592618473-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Marc\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-04-27] (Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2012win32.dll [2014-05-13] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2013win32.dll [2014-04-02] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nplv2014win32.dll [2014-06-25] (National Instruments)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Extension: FoxTab - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}.xpi [2015-12-29]
FF Extension: Greasemonkey - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2015-12-29]
FF Extension: Tab Mix Plus - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2015-12-29]
FF Extension: Download Manager Tweak - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{F8A55C97-3DB6-4961-A81D-0DE0080E53CB}.xpi [2015-12-29]
FF Extension: Thumbnail Zoom - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{E10A6337-382E-4FE6-96DE-936ADC34DD04}.xpi [2015-12-29]
FF Extension: DownThemAll! - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2015-12-29]
FF Extension: MetaProducts Integration - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{D249FD00-4DF9-11D9-9FDC-0080481ADA61}.xpi [2015-12-29]
FF Extension: Gutscheinaffe - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{9220f99f-5b7d-4a4d-97ca-209991796400}.xpi [2015-12-29]
FF Extension: TV-Fox - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{2f17f610-5e97-4fed-828f-9940b7b577a4} [2015-12-29]
FF Extension: Flash and Video Download - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} [2015-12-31]
FF Extension: Autofill Forms - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\autofillForms@blueimp.net.xpi [2016-01-22]
FF Extension: ImTranslator - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2016-01-23]
FF Extension: Personas Plus - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\personas@christopher.beard.xpi [2016-01-29]
FF Extension: FoxyProxy Standard - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\extensions\foxyproxy@eric.h.jung [2016-02-17]
FF Extension: gui:config - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\guiconfig@slosd.net.xpi [2015-12-29]
FF Extension: ProxTube - Unblock YouTube - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\ich@maltegoetz.de.xpi [2015-12-29]
FF Extension: Auto Shutdown NG - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\jid0-HZ5UvAEiWWAxT9TKLuhEgUCARqo@jetpack.xpi [2015-12-29]
FF Extension: Flagfox - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2016-02-17]
FF Extension: Adblock Plus - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\op506yds.default-1450893927104\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-01-22]
FF Extension: Super Web Accelerator ! - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\firefox [2016-02-13] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_D772DC8D6FAF43A29B25C4EBAA5AD1DE@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox
FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox [2015-12-02]

Chrome: 
=======
CHR Profile: C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-26]
CHR Extension: (Google Drive) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-13]
CHR Extension: (OkayFreedom) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bckipplcmnfhblnpibpbehenelnkpecd [2015-07-22]
CHR Extension: (YouTube) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-13]
CHR Extension: (Google-Suche) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-13]
CHR Extension: (Google Docs Offline) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-13]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-11-13]
CHR Extension: (Google Mail) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-30]
CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka
CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - hxxps://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 AbAdminService; C:\Program Files (x86)\ToolbarTerminator\AbAdminService.exe [34568 2015-10-20] (Ascora GmbH)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000 2015-11-20] (Kaspersky Lab ZAO)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2787512 2015-12-22] (Microsoft Corporation)
S3 CoordinatorServiceHost; H:\SOLIDWORKS Corp\SOLIDWORKS\swScheduler\DTSCoordinatorService.exe [81400 2015-11-11] (Dassault Systèmes SolidWorks Corporation)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Datei ist nicht signiert]
R2 LkCitadelServer; C:\WINDOWS\SysWOW64\lkcitdl.exe [695136 2014-01-14] (National Instruments, Inc.)
R2 lkClassAds; C:\WINDOWS\SysWOW64\lkads.exe [53032 2014-06-09] (National Instruments Corporation)
R2 lkTimeSync; C:\WINDOWS\SysWOW64\lktsrv.exe [63280 2014-06-09] (National Instruments Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation)
R2 mxssvr; C:\Program Files (x86)\National Instruments\MAX\nimxs.exe [84280 2014-06-07] (National Instruments Corporation)
R2 NIApplicationWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [57184 2014-06-10] (National Instruments Corporation)
S4 NIApplicationWebServer64; C:\Program Files\National Instruments\Shared\NI WebServer\ApplicationWebServer.exe [80736 2014-06-10] (National Instruments Corporation)
R2 niauth; C:\Program Files (x86)\National Instruments\Shared\niauth\niauth_daemon.exe [569152 2014-06-20] (National Instruments Corporation)
R2 NIDomainService; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [394544 2014-06-09] (National Instruments Corporation)
S3 NILM License Manager; C:\Program Files (x86)\National Instruments\Shared\License Manager\Bin\lmgrd.exe [1427688 2010-08-02] (Macrovision Corporation)
R2 nimDNSResponder; C:\Program Files (x86)\National Instruments\Shared\mDNS Responder\nimdnsResponder.exe [320368 2014-06-06] (National Instruments Corporation)
R2 NINetworkDiscovery; C:\Program Files (x86)\National Instruments\Shared\NI Network Discovery\niDiscSvc.exe [177536 2014-06-19] (National Instruments Corporation)
R2 NiSvcLoc; C:\Program Files (x86)\National Instruments\Shared\niSvcLoc\nisvcloc.exe [89928 2014-06-06] (National Instruments Corporation)
R2 NISystemWebServer; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [57168 2014-06-10] (National Instruments Corporation)
R2 NITaggerService; C:\Program Files (x86)\National Instruments\Shared\Tagger\tagsrv.exe [692040 2014-06-10] (National Instruments Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2016-02-03] (Electronic Arts)
R2 RemoteSolverDispatcher; H:\SOLIDWORKS Corp\SOLIDWORKS Flow Simulation\binCFW\remotesolverdispatcherservice.exe [238848 2015-11-10] (Mentor Graphics Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [290520 2014-01-08] (Realtek Semiconductor)
S3 SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2016-01-16] (SolidWorks) [Datei ist nicht signiert]
S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [111120 2016-01-24] (Advanced Micro Devices)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
S3 GPCIDrv; C:\Program Files (x86)\GIGABYTE\GIGABYTE OC_GURU II\GPCIDrv64.sys [14376 2010-02-04] ()
R2 IntelHaxm; C:\Windows\system32\DRIVERS\IntelHaxm.sys [84992 2014-11-18] (Intel  Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70512 2015-06-27] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [68280 2015-06-06] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [181640 2015-11-20] (AO Kaspersky Lab)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [227512 2015-11-20] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [934272 2015-12-02] (AO Kaspersky Lab)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [39608 2015-06-11] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [41656 2015-06-06] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [41352 2015-11-20] (AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [87944 2015-11-20] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [102584 2015-06-16] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-03-17] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-03-17] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [193336 2015-10-01] (Intel Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R3 WIMBLEMS; C:\Windows\system32\drivers\WIMBLEMS.sys [25600 2012-03-27] ( )

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-02-18 12:03 - 2016-02-18 12:04 - 01511936 _____ C:\Users\Marc\Downloads\AdwCleaner_5.034.exe
2016-02-18 11:53 - 2016-02-18 11:53 - 00013594 _____ C:\Users\Marc\Downloads\studbeschhsrm_0CFABF318565C97BB1E9036EA94598AB.qis4k.pdf
2016-02-18 10:19 - 2016-02-18 10:19 - 00094778 _____ C:\Users\Marc\Downloads\Addition.txt
2016-02-18 10:18 - 2016-02-18 12:09 - 00032399 _____ C:\Users\Marc\Downloads\FRST.txt
2016-02-18 10:18 - 2016-02-18 12:09 - 00000000 ____D C:\FRST
2016-02-18 10:17 - 2016-02-18 10:18 - 02371072 _____ (Farbar) C:\Users\Marc\Downloads\FRST64.exe
2016-02-18 09:07 - 2016-02-18 09:07 - 00000000 ___HD C:\OneDriveTemp
2016-02-14 18:31 - 2016-02-14 18:31 - 00002424 _____ C:\Users\Marc\Desktop\Rise of the Tomb Raider.lnk
2016-02-14 15:25 - 2016-02-14 15:25 - 00018366 _____ C:\Users\Marc\Downloads\Stundenplanentwurf-SS2016-08022016.pdf
2016-02-14 11:53 - 2016-02-14 11:53 - 00209920 _____ C:\Users\Marc\Downloads\Grillfall_überarbeitet_Juli_2015.ppt
2016-02-14 11:51 - 2016-02-14 11:51 - 00094720 _____ C:\Users\Marc\Downloads\Haut.ppt
2016-02-14 11:33 - 2016-02-14 11:33 - 00071475 _____ C:\Users\Marc\Downloads\2016-02-03_Klausur_mit_lsg.pdf
2016-02-14 11:31 - 2016-02-14 11:31 - 00004194 _____ C:\Users\Marc\Downloads\Ergebnisse_klausur_WS_2015-16.pdf
2016-02-13 17:38 - 2016-02-13 17:38 - 00000000 ____D C:\Program Files (x86)\AMD
2016-02-13 17:37 - 2016-02-13 17:38 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2016-02-13 17:27 - 2016-02-13 17:36 - 329420248 _____ (AMD Inc.) C:\Users\Marc\Downloads\non-whql-64bit-radeon-software-crimson-16.1.1-win10-win8.1-win7-feb3.exe
2016-02-13 10:59 - 2016-02-13 17:39 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-02-10 14:20 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-02-10 14:20 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-02-10 14:20 - 2016-01-27 07:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-02-10 14:20 - 2016-01-27 07:15 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-02-10 14:20 - 2016-01-27 07:01 - 07476064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-02-10 14:20 - 2016-01-27 07:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-02-10 14:20 - 2016-01-27 07:01 - 01819720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-02-10 14:20 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-02-10 14:20 - 2016-01-27 06:57 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-02-10 14:20 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-02-10 14:20 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-02-10 14:20 - 2016-01-27 06:56 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-02-10 14:20 - 2016-01-27 06:55 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-02-10 14:20 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-02-10 14:20 - 2016-01-27 06:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-02-10 14:20 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-02-10 14:20 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-02-10 14:20 - 2016-01-27 06:45 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-02-10 14:20 - 2016-01-27 06:45 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-02-10 14:20 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-02-10 14:20 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-02-10 14:20 - 2016-01-27 06:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-02-10 14:20 - 2016-01-27 06:37 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-02-10 14:20 - 2016-01-27 06:37 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-02-10 14:20 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-02-10 14:20 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-02-10 14:20 - 2016-01-27 06:13 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-02-10 14:20 - 2016-01-27 06:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-02-10 14:20 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-02-10 14:20 - 2016-01-27 06:10 - 22394368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-02-10 14:20 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-02-10 14:20 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-10 14:20 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-02-10 14:20 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-02-10 14:20 - 2016-01-27 06:05 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-02-10 14:20 - 2016-01-27 06:05 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-02-10 14:20 - 2016-01-27 06:05 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-02-10 14:20 - 2016-01-27 06:05 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-02-10 14:20 - 2016-01-27 06:04 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-02-10 14:20 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-02-10 14:20 - 2016-01-27 06:03 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-02-10 14:20 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-02-10 14:20 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-02-10 14:20 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-02-10 14:20 - 2016-01-27 05:58 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-02-10 14:20 - 2016-01-27 05:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-02-10 14:20 - 2016-01-27 05:55 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-02-10 14:20 - 2016-01-27 05:55 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-02-10 14:20 - 2016-01-27 05:54 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-02-10 14:20 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-02-10 14:20 - 2016-01-27 05:50 - 02230784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-02-10 14:20 - 2016-01-27 05:50 - 01504768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-02-10 14:20 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-02-10 14:20 - 2016-01-27 05:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-02-10 14:20 - 2016-01-27 05:48 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-02-10 14:20 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-02-10 14:20 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-02-10 14:20 - 2016-01-27 05:41 - 03592704 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-02-10 14:20 - 2016-01-27 05:39 - 02275328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-02-10 14:20 - 2016-01-27 05:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-02-10 14:20 - 2016-01-27 05:38 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-02-10 14:20 - 2016-01-27 05:37 - 04894720 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-02-10 14:20 - 2016-01-27 05:36 - 02757120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-02-10 14:20 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-02-10 14:20 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-02-09 19:40 - 2016-02-09 19:40 - 00696524 _____ C:\Users\Marc\Downloads\ges_16-0002623273_6b50461e19a4707da5ff7c5f4153da5e.pdf
2016-02-03 17:14 - 2016-02-03 17:14 - 00118608 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00458472 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00141792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-02-03 17:13 - 2016-02-03 17:13 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-02-03 17:12 - 2016-02-03 17:12 - 10963496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-02-03 17:12 - 2016-02-03 17:12 - 00120656 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-02-03 17:09 - 2016-02-03 17:09 - 00296648 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2016-02-03 17:01 - 2016-02-03 17:01 - 49984512 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-02-03 17:01 - 2016-02-03 17:01 - 00235008 _____ C:\WINDOWS\system32\clinfo.exe
2016-02-03 16:58 - 2016-02-03 16:58 - 00065024 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-02-03 16:58 - 2016-02-03 16:58 - 00059392 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-02-03 16:57 - 2016-02-03 16:57 - 27596800 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-02-03 16:35 - 2016-02-03 16:35 - 06643200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-02-03 16:35 - 2016-02-03 16:35 - 00677888 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-02-03 16:35 - 2016-02-03 16:35 - 00562688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2016-02-03 16:35 - 2016-02-03 16:35 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-02-03 16:35 - 2016-02-03 16:35 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2016-02-03 16:30 - 2016-02-03 16:30 - 05223936 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2016-02-03 16:27 - 2016-02-03 16:27 - 00134656 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-02-03 16:27 - 2016-02-03 16:27 - 00123392 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-02-03 16:26 - 2016-02-03 16:26 - 31378432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-02-03 16:26 - 2016-02-03 16:26 - 00096256 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-02-03 16:26 - 2016-02-03 16:26 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2016-02-03 16:25 - 2016-02-03 16:25 - 08007680 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2016-02-03 16:24 - 2016-02-03 16:24 - 09803264 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2016-02-03 16:23 - 2016-02-03 16:23 - 15711744 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-02-03 16:23 - 2016-02-03 16:23 - 00685672 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2016-02-03 16:23 - 2016-02-03 16:23 - 00685672 _____ C:\WINDOWS\system32\atiapfxx.blb
2016-02-03 16:23 - 2016-02-03 16:23 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-02-03 16:23 - 2016-02-03 16:23 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-02-03 16:23 - 2016-02-03 16:23 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-02-03 16:23 - 2016-02-03 16:23 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-02-03 16:23 - 2016-02-03 16:23 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-02-03 16:22 - 2016-02-03 16:22 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-02-03 16:21 - 2016-02-03 16:21 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-02-03 16:21 - 2016-02-03 16:21 - 00039424 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-02-03 16:20 - 2016-02-03 16:20 - 25841152 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-02-03 16:19 - 2016-02-03 16:19 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2016-02-03 16:16 - 2016-02-03 16:16 - 00561664 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-02-03 16:16 - 2016-02-03 16:16 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-02-03 16:16 - 2016-02-03 16:16 - 00246272 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-02-03 16:16 - 2016-02-03 16:16 - 00224256 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-02-03 16:16 - 2016-02-03 16:16 - 00209920 _____ C:\WINDOWS\system32\GameManager64.dll
2016-02-03 16:16 - 2016-02-03 16:16 - 00204800 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-02-03 16:16 - 2016-02-03 16:16 - 00189952 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-02-03 16:16 - 2016-02-03 16:16 - 00186368 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2016-02-03 16:16 - 2016-02-03 16:16 - 00162304 _____ C:\WINDOWS\system32\atieah64.exe
2016-02-03 16:16 - 2016-02-03 16:16 - 00145408 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-02-03 16:16 - 2016-02-03 16:16 - 00078336 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-02-03 16:15 - 2016-02-03 16:15 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-02-03 16:14 - 2016-02-03 16:14 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2016-02-03 16:11 - 2016-02-03 16:11 - 01272832 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-02-03 16:11 - 2016-02-03 16:11 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00941568 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00157696 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00075776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00070144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-02-03 16:10 - 2016-02-03 16:10 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-02-03 16:09 - 2016-02-03 16:09 - 00195072 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-02-03 16:09 - 2016-02-03 16:09 - 00174592 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-02-03 16:05 - 2016-02-03 16:05 - 05544012 _____ C:\Users\Marc\Downloads\StepStone_Gehaltsreport_2016.pdf
2016-02-02 15:25 - 2016-02-02 15:25 - 08324442 _____ C:\Users\Marc\Downloads\RE_2_-_Solar-_und_Windenergie___-Dokumente.zip
2016-02-02 14:20 - 2016-02-02 14:21 - 00574942 _____ C:\Users\Marc\Downloads\MSTLaborWS15_Schütz_Eryilmaz_Handout.pdf
2016-02-02 12:24 - 2016-02-02 12:24 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-02-01 10:09 - 2016-02-01 10:09 - 00000000 ____D C:\Users\Marc\AppData\Local\PackageStaging
2016-02-01 09:54 - 2016-02-01 09:54 - 00000000 ____D C:\Users\Marc\AppData\Local\ActiveSync
2016-02-01 09:52 - 2016-02-01 09:52 - 00000020 ___SH C:\Users\Marc\ntuser.ini
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-02-01 09:52 - 2016-02-01 09:52 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-02-01 09:50 - 2016-02-18 12:08 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-02-01 09:48 - 2016-02-01 09:48 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default\AppData\Roaming\ATI
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default\AppData\Local\ATI
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default User\AppData\Roaming\ATI
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-02-01 09:48 - 2016-02-01 09:48 - 00000000 ____D C:\Users\Default User\AppData\Local\ATI
2016-02-01 09:44 - 2016-02-16 11:40 - 00000000 ____D C:\Users\Marc
2016-02-01 09:44 - 2016-02-01 09:49 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Vorlagen
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Startmenü
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Netzwerkumgebung
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Lokale Einstellungen
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Eigene Dateien
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Druckumgebung
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Documents\Eigene Videos
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Documents\Eigene Musik
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Documents\Eigene Bilder
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\AppData\Local\Verlauf
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\AppData\Local\Anwendungsdaten
2016-02-01 09:44 - 2016-02-01 09:44 - 00000000 _SHDL C:\Users\Marc\Anwendungsdaten
2016-02-01 09:43 - 2016-02-13 17:37 - 00000000 ____D C:\Program Files\AMD
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 ____D C:\WINDOWS\system32\SRSLabs
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 ____D C:\Program Files\Realtek
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2016-02-01 09:43 - 2016-02-01 09:43 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2016-02-01 09:43 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-02-01 09:42 - 2016-02-10 10:05 - 00366976 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-02-01 09:42 - 2016-02-01 15:20 - 00000000 ___DC C:\WINDOWS\Panther
2016-02-01 09:40 - 2016-02-01 09:40 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 08728920 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 06971752 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02796032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02772584 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2016-02-01 09:40 - 2016-02-01 09:40 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-02-01 09:40 - 2016-02-01 09:40 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02653816 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02185840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02180128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02152800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-02-01 09:40 - 2016-02-01 09:40 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-02-01 09:40 - 2016-02-01 09:40 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01995776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01859448 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01594408 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 01371792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-02-01 09:40 - 2016-02-01 09:40 - 01309376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01281376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 01223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01155944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01141496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01092456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01089880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 01065080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01053696 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01020096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 01009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00983464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00973664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00898184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00884256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00871936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00848160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00823264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00796352 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00786696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00716928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00701384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00695752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00671472 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00613888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00558592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00526856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-02-01 09:40 - 2016-02-01 09:40 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00499432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00462760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00450904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00440152 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00412512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-02-01 09:40 - 2016-02-01 09:40 - 00389120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00337840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2016-02-01 09:40 - 2016-02-01 09:40 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00264544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00260608 _____ C:\WINDOWS\system32\MTFServer.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2016-02-01 09:40 - 2016-02-01 09:40 - 00234504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00208176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00202472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2016-02-01 09:40 - 2016-02-01 09:40 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx
2016-02-01 09:40 - 2016-02-01 09:40 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommon.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00119320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00100160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL
2016-02-01 09:40 - 2016-02-01 09:40 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundTransferHost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2016-02-01 09:40 - 2016-02-01 09:40 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2016-02-01 09:40 - 2016-02-01 09:40 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2016-02-01 09:40 - 2016-02-01 09:40 - 00000000 ____D C:\Windows.old
2016-02-01 09:38 - 2016-02-01 09:38 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-02-01 09:37 - 2016-02-01 09:37 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-02-01 09:37 - 2016-02-01 09:37 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-02-01 09:37 - 2016-02-01 09:37 - 00000000 ____D C:\Program Files\MSBuild
2016-02-01 09:37 - 2016-02-01 09:37 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-02-01 09:37 - 2016-02-01 09:37 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-02-01 09:37 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-02-01 09:37 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-02-01 09:37 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-02-01 09:37 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-02-01 09:37 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-02-01 09:37 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-01-31 18:55 - 2016-01-31 18:55 - 00024612 _____ C:\Users\Marc\Downloads\Formular-Rahmenvereinbarung_BPS-Physikalische_Technik(1).pdf
2016-01-31 18:53 - 2016-01-31 18:53 - 00076178 _____ C:\Users\Marc\Downloads\Anmeldung_Berufspraktische_Taetigkeit.pdf
2016-01-31 18:53 - 2016-01-31 18:53 - 00058126 _____ C:\Users\Marc\Downloads\Hinweise_Berufspraktische_Taetigkeit.pdf
2016-01-31 18:53 - 2016-01-31 18:53 - 00000633 _____ C:\Users\Marc\Downloads\Literatur_Berufspraktische_Taetigkeit.txt
2016-01-31 18:52 - 2016-01-31 18:52 - 00070946 _____ C:\Users\Marc\Downloads\Checkliste_Berufspraktische_Taetigkeit.pdf
2016-01-31 13:34 - 2016-01-31 13:34 - 00068766 _____ C:\Users\Marc\Downloads\Klausuraufgaben_ME_W14(1).pdf
2016-01-31 10:32 - 2016-01-31 10:32 - 00084218 _____ C:\Users\Marc\Downloads\Zeitplan_WS_2015_Vorläufig1.pdf
2016-01-31 10:28 - 2016-01-31 10:28 - 00024612 _____ C:\Users\Marc\Downloads\Formular-Rahmenvereinbarung_BPS-Physikalische_Technik.pdf
2016-01-30 18:55 - 2016-01-30 18:55 - 00003531 _____ C:\Users\Marc\Downloads\Stata.do
2016-01-30 14:16 - 2016-01-30 14:16 - 00091657 _____ C:\Users\Marc\Downloads\Anmeldung Laborplatzvergabe Bachelor2 2010-(1).pdf
2016-01-29 18:30 - 2016-01-29 18:30 - 00044852 _____ C:\Users\Marc\Downloads\WS15-Noten_TA-Labortheorie-20150129.pdf
2016-01-24 23:01 - 2016-01-24 23:01 - 00113400 _____ (Advanced Micro Devices) C:\WINDOWS\system32\DelayAPO.dll
2016-01-24 19:07 - 2016-01-24 19:07 - 00186086 _____ C:\Users\Marc\Desktop\Scan0015.pdf
2016-01-24 19:00 - 2016-01-24 19:00 - 00698527 _____ C:\Users\Marc\Desktop\Scan0014.pdf
2016-01-24 17:58 - 2016-01-24 17:58 - 01121554 _____ C:\Users\Marc\Downloads\Poster_Gruppe_7_-_PQ.pdf
2016-01-24 17:32 - 2016-01-24 17:32 - 00048716 _____ C:\Users\Marc\Downloads\Termine_BA_-Master_WS_2015-2016.pdf
2016-01-24 17:29 - 2016-01-24 17:29 - 00047869 _____ C:\Users\Marc\Downloads\Termine_BA_-Master_SS_2016.pdf
2016-01-24 17:28 - 2016-01-24 17:28 - 00180607 _____ C:\Users\Marc\Downloads\Prüfungsanmeldung_-_Info.pdf
2016-01-24 17:24 - 2016-01-24 17:24 - 00039588 _____ C:\Users\Marc\Downloads\Prüfungsanmeldung_im_Wahlmodul.pdf
2016-01-24 14:45 - 2016-01-24 14:45 - 02677934 _____ C:\Users\Marc\Downloads\WSL_ST2_Folien_komplett.pdf
2016-01-24 14:41 - 2016-01-24 14:41 - 01611944 _____ C:\Users\Marc\Downloads\Plakat.pdf
2016-01-24 10:43 - 2016-01-24 10:43 - 00272937 _____ C:\Users\Marc\Downloads\WSL-Übungen_WS15.pdf
2016-01-23 19:38 - 2016-01-23 19:38 - 00286157 _____ C:\Users\Marc\Downloads\Prüfungsordnung_PO_BSc_2010_Amtl._Mitt.(1).pdf
2016-01-23 19:00 - 2016-01-23 19:00 - 00053094 _____ C:\Users\Marc\Downloads\Firmenverzeichnis_Berufspraktische_Taetigkeit.pdf
2016-01-23 18:46 - 2016-01-23 18:46 - 00264567 _____ C:\Users\Marc\Downloads\Bewerbung Aushifsjob REWE.pdf
2016-01-23 10:19 - 2016-01-23 10:19 - 00049823 _____ C:\Users\Marc\Downloads\Biomechanik_Gutachten.pdf
2016-01-22 18:50 - 2016-01-22 18:50 - 00000000 ____D C:\Users\Marc\AppData\Local\PDF24
2016-01-22 18:49 - 2016-02-01 09:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24
2016-01-22 18:49 - 2016-01-22 18:49 - 16485128 _____ (Geek Software GmbH ) C:\Users\Marc\Downloads\pdf24-creator-7.5.0.exe
2016-01-22 18:49 - 2016-01-22 18:49 - 00001159 _____ C:\Users\Public\Desktop\PDF24.lnk
2016-01-22 18:49 - 2016-01-22 18:49 - 00000000 ____D C:\Program Files (x86)\PDF24

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-02-18 12:09 - 2015-02-08 15:19 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Raptr
2016-02-18 12:08 - 2015-12-06 12:35 - 00001128 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-02-18 12:08 - 2015-01-10 21:16 - 00000091 _____ C:\HaxLogs.txt
2016-02-18 12:08 - 2014-12-13 18:37 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2016-02-18 12:08 - 2014-12-13 16:18 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Spotify
2016-02-18 12:08 - 2014-12-13 16:18 - 00000000 ____D C:\Users\Marc\AppData\Local\Spotify
2016-02-18 12:08 - 2014-12-13 15:57 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Dropbox
2016-02-18 12:08 - 2014-03-07 18:36 - 00000000 __RDO C:\Users\Marc\SkyDrive
2016-02-18 12:08 - 2014-02-15 12:08 - 00000000 ___RD C:\Users\Marc\Dropbox
2016-02-18 12:07 - 2015-10-30 07:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-02-18 12:04 - 2015-11-21 15:13 - 00000000 ____D C:\AdwCleaner
2016-02-18 11:45 - 2015-12-06 12:35 - 00001132 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-02-18 11:43 - 2015-10-27 13:53 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-02-18 09:20 - 2015-12-17 16:36 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-02-18 09:09 - 2015-12-08 17:13 - 00004150 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{997001AE-3139-4B8B-9378-D841DF4F4486}
2016-02-15 14:16 - 2015-10-30 08:21 - 00000000 ____D C:\WINDOWS\INF
2016-02-14 16:53 - 2014-02-14 22:15 - 00000000 ____D C:\Users\Marc\AppData\Local\Packages
2016-02-13 17:44 - 2015-10-30 19:35 - 00775524 _____ C:\WINDOWS\system32\perfh007.dat
2016-02-13 17:44 - 2015-10-30 19:35 - 00155338 _____ C:\WINDOWS\system32\perfc007.dat
2016-02-13 17:44 - 2015-08-06 16:39 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-02-13 17:39 - 2015-12-06 12:32 - 00004296 _____ C:\WINDOWS\System32\Tasks\AMD Updater
2016-02-13 17:39 - 2014-12-13 15:43 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-02-13 17:38 - 2015-12-06 12:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2016-02-13 17:37 - 2015-10-19 19:32 - 00000000 ____D C:\Users\Marc\AppData\Local\AMD
2016-02-13 17:37 - 2014-12-13 16:21 - 00000000 ____D C:\Program Files (x86)\Steam
2016-02-13 17:36 - 2014-02-14 23:22 - 00000000 ____D C:\AMD
2016-02-13 10:20 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-02-12 08:40 - 2015-10-30 08:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-02-11 10:33 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\rescache
2016-02-11 09:57 - 2015-08-06 17:59 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-02-10 23:04 - 2015-10-30 19:47 - 00000000 ____D C:\Program Files\Windows Journal
2016-02-10 22:57 - 2014-12-14 11:22 - 00000000 ____D C:\Users\Marc\AppData\Local\Battle.net
2016-02-10 20:46 - 2015-01-18 14:11 - 00002270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-10 20:46 - 2015-01-18 14:11 - 00002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-02-10 14:38 - 2014-12-15 10:00 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-02-10 14:34 - 2015-10-30 08:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-02-10 14:34 - 2014-12-15 10:00 - 146614896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-02-09 18:43 - 2015-10-27 13:53 - 00003870 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-02-08 16:45 - 2015-08-06 18:01 - 00002386 _____ C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-02-03 20:01 - 2015-10-30 08:26 - 00828920 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-02-03 20:01 - 2015-10-30 08:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-02-03 17:14 - 2015-12-16 20:43 - 00110344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-02-03 17:13 - 2015-12-16 20:45 - 00152056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-02-03 17:12 - 2015-12-16 20:45 - 09176928 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-02-03 17:12 - 2015-12-16 20:45 - 09017808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-02-03 17:12 - 2015-12-16 20:45 - 08089248 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-02-03 17:12 - 2015-12-16 20:45 - 00133528 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-02-03 17:12 - 2015-12-16 20:45 - 00102616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-02-03 17:12 - 2015-12-16 20:44 - 13395360 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-02-03 17:12 - 2015-12-16 20:44 - 11098920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-02-03 17:12 - 2015-12-16 20:44 - 01503416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-02-03 17:12 - 2015-12-16 20:44 - 01235128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-02-03 17:06 - 2015-12-16 20:31 - 23976448 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-02-03 16:59 - 2015-12-16 20:20 - 41510912 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2016-02-03 16:57 - 2015-12-16 20:21 - 22348288 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-02-03 16:24 - 2015-12-16 20:41 - 00865280 _____ (AMD) C:\WINDOWS\system32\coinst_15.30.dll
2016-02-03 16:10 - 2015-12-16 20:31 - 00672768 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-02-03 16:10 - 2015-12-16 20:29 - 00142336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-02-03 16:10 - 2015-12-16 20:25 - 00941568 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-02-03 15:52 - 2014-12-13 16:28 - 00000000 ____D C:\ProgramData\Origin
2016-02-03 15:51 - 2014-12-13 16:28 - 00000000 ____D C:\Program Files (x86)\Origin
2016-02-02 11:40 - 2015-12-06 12:35 - 00004190 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-02-02 11:40 - 2015-12-06 12:35 - 00003958 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-02-02 11:08 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-02-01 16:25 - 2015-11-22 12:44 - 00000000 ___RD C:\Users\Marc\3D Objects
2016-02-01 16:19 - 2015-08-06 17:59 - 00000000 ____D C:\Users\Marc\AppData\Local\Comms
2016-02-01 10:09 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-02-01 09:52 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-02-01 09:52 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-02-01 09:52 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-02-01 09:52 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Registration
2016-02-01 09:52 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Windows NT
2016-02-01 09:52 - 2015-10-30 07:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-02-01 09:51 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-02-01 09:51 - 2015-08-06 16:36 - 00023056 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-02-01 09:51 - 2015-05-05 19:31 - 00003434 _____ C:\WINDOWS\System32\Tasks\JKIUpdateTask
2016-02-01 09:51 - 2014-12-15 09:49 - 00002394 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2016-02-01 09:51 - 2014-12-13 15:29 - 00032388 _____ C:\WINDOWS\diagwrn.xml
2016-02-01 09:51 - 2014-12-13 15:29 - 00032388 _____ C:\WINDOWS\diagerr.xml
2016-02-01 09:50 - 2015-10-30 08:24 - 00000000 __RHD C:\Users\Public\Libraries
2016-02-01 09:50 - 2015-10-17 16:45 - 00002954 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-02-01 09:50 - 2014-12-15 09:49 - 00002420 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2016-02-01 09:50 - 2014-12-15 09:49 - 00002392 _____ C:\WINDOWS\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2016-02-01 09:50 - 2014-12-15 09:49 - 00002378 _____ C:\WINDOWS\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2016-02-01 09:50 - 2014-12-15 09:49 - 00002376 _____ C:\WINDOWS\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2016-02-01 09:49 - 2016-01-16 17:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SOLIDWORKS Tools 2015
2016-02-01 09:49 - 2016-01-16 17:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SOLIDWORKS 2015
2016-02-01 09:49 - 2015-12-23 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
         

Alt 18.02.2016, 11:14   #8
MarcS
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



Code:
ATTFilter
2016-02-01 09:49 - 2015-12-23 15:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AudibleManager
2016-02-01 09:49 - 2015-12-13 10:55 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-02-01 09:49 - 2015-12-10 19:00 - 00000000 ____D C:\WINDOWS\de
2016-02-01 09:49 - 2015-11-20 18:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2016-02-01 09:49 - 2015-11-20 18:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STAR WARS Battlefront
2016-02-01 09:49 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-02-01 09:49 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-02-01 09:49 - 2015-08-10 15:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-02-01 09:49 - 2015-08-10 11:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2016-02-01 09:49 - 2015-08-05 22:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft-Maus- und Tastatur-Center
2016-02-01 09:49 - 2015-05-05 19:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\National Instruments
2016-02-01 09:49 - 2015-04-23 21:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-02-01 09:49 - 2015-04-11 18:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ExpoThemes
2016-02-01 09:49 - 2015-03-08 23:02 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks
2016-02-01 09:49 - 2015-03-08 00:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git
2016-02-01 09:49 - 2015-03-07 17:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A3Launcher
2016-02-01 09:49 - 2015-02-28 13:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCG Launcher
2016-02-01 09:49 - 2015-01-31 21:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-02-01 09:49 - 2015-01-31 13:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro
2016-02-01 09:49 - 2015-01-17 20:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-02-01 09:49 - 2015-01-10 21:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio
2016-02-01 09:49 - 2015-01-10 21:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2016-02-01 09:49 - 2015-01-07 14:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IP Camera Adapter
2016-02-01 09:49 - 2014-12-26 23:39 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-02-01 09:49 - 2014-12-26 23:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-02-01 09:49 - 2014-12-14 11:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2016-02-01 09:49 - 2014-12-13 17:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4
2016-02-01 09:49 - 2014-12-13 16:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2016-02-01 09:49 - 2014-12-13 16:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-02-01 09:49 - 2014-12-13 16:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2016-02-01 09:49 - 2014-12-13 16:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-02-01 09:49 - 2014-12-13 16:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prismatik
2016-02-01 09:49 - 2014-12-13 16:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-02-01 09:49 - 2014-12-13 15:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN
2016-02-01 09:48 - 2015-07-10 10:05 - 00000000 ____D C:\Users\Default.migrated
2016-02-01 09:45 - 2015-11-15 00:06 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\spool
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\InputMethod
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\ProgramData\USOPrivate
2016-02-01 09:45 - 2015-10-30 08:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-02-01 09:45 - 2015-10-06 20:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-02-01 09:45 - 2015-06-07 12:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005
2016-02-01 09:45 - 2015-05-05 19:31 - 00000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin
2016-02-01 09:45 - 2015-05-05 19:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JKI
2016-02-01 09:45 - 2015-05-05 19:26 - 00000000 ____D C:\WINDOWS\SysWOW64\cvirte
2016-02-01 09:45 - 2015-05-05 19:26 - 00000000 ____D C:\WINDOWS\system32\cvirte
2016-02-01 09:45 - 2015-04-08 01:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2016-02-01 09:45 - 2015-03-24 17:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE
2016-02-01 09:45 - 2015-02-08 15:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Raptr
2016-02-01 09:45 - 2015-01-20 18:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corsair
2016-02-01 09:45 - 2014-12-26 23:42 - 00000000 ____D C:\WINDOWS\SysWOW64\Adobe
2016-02-01 09:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2016-02-01 09:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2016-02-01 09:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\ADFS
2016-02-01 09:44 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-02-01 09:44 - 2015-08-20 13:25 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HP
2016-02-01 09:44 - 2015-03-01 18:25 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ClockworkMod
2016-02-01 09:44 - 2014-12-13 16:11 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2016-02-01 09:42 - 2015-10-30 19:58 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-02-01 09:42 - 2015-10-30 08:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-02-01 09:40 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-02-01 09:40 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-02-01 09:40 - 2015-10-30 07:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-02-01 09:37 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-02-01 09:37 - 2015-10-30 08:24 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-02-01 09:30 - 2015-10-30 20:28 - 00000000 ___HD C:\$WINDOWS.~BT
2016-01-24 23:01 - 2015-09-18 01:38 - 00111120 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\AtihdWT6.sys
2016-01-24 10:09 - 2015-08-10 15:48 - 00000000 ____D C:\Program Files\Microsoft Office 15

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2015-01-13 17:54 - 2015-05-28 16:47 - 0004107 _____ () C:\Users\Marc\AppData\Roaming\LTspiceIV.ini
2015-09-29 17:29 - 2015-09-29 17:29 - 0000338 _____ () C:\Users\Marc\AppData\Local\5Bj3i9.vbs
2015-09-13 14:05 - 2015-09-13 14:05 - 0000364 _____ () C:\Users\Marc\AppData\Local\c4T3gB.vbs
2015-08-08 11:01 - 2015-08-08 11:01 - 3531374 _____ () C:\Users\Marc\AppData\Local\curl.zip
2015-04-11 18:42 - 2015-04-11 18:42 - 0000396 _____ () C:\Users\Marc\AppData\Local\F6bSEMx.vbs
2015-09-13 13:44 - 2015-09-13 13:44 - 0000364 _____ () C:\Users\Marc\AppData\Local\iwhe2V.vbs
2015-05-01 11:27 - 2015-12-01 17:37 - 0007608 _____ () C:\Users\Marc\AppData\Local\Resmon.ResmonCfg
2015-09-13 14:03 - 2015-09-13 14:03 - 0000364 _____ () C:\Users\Marc\AppData\Local\SPDjFI3.vbs
2015-08-23 10:19 - 2015-08-23 10:19 - 0000364 _____ () C:\Users\Marc\AppData\Local\TzFhUO.vbs
2015-01-17 20:27 - 2015-01-17 20:27 - 0000057 _____ () C:\ProgramData\Ament.ini

Einige Dateien in TEMP:
====================
C:\Users\Marc\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-02-13 10:44

==================== Ende von FRST.txt ============================
         

Alt 18.02.2016, 13:16   #9
Deathkid535
/// Malwareteam
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



Hi,

Schritt # 1: FRST-Fix

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
HKLM-x32\...\Run: [] => [X]
FF Extension: Super Web Accelerator ! - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\firefox [2016-02-13] [ist nicht signiert]
EmptyTemp:
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.



Schritt # 2: ESET


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset



Schritt # 3: Frage

Gibts noch Probleme?



Schritt # 4: Bitte Posten
  • Das Fixlog von FRST
  • Das Log von ESET
  • Die Antwort auf meine Frage

Alt 18.02.2016, 22:12   #10
MarcS
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



hi,

hier schonmal der Fixlog, der Scan läuft im Moment noch:

Code:
ATTFilter
Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-02-2016
durchgeführt von Marc (2016-02-18 16:53:43) Run:1
Gestartet von C:\Users\Marc\Downloads
Geladene Profile: Marc (Verfügbare Profile: Marc)
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
HKLM-x32\...\Run: [] => [X]
FF Extension: Super Web Accelerator ! - C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\firefox [2016-02-13] [ist nicht signiert]
EmptyTemp:
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Wert erfolgreich entfernt
C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\firefox => erfolgreich verschoben
EmptyTemp: => 773.8 MB temporäre Dateien entfernt.


Das System musste neu gestartet werden.

==== Ende von Fixlog 16:54:15 ====
         
ESET Log

Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=5a840ba6b6d3cd42b2bd20bfbe8ce049
# end=init
# utc_time=2016-02-18 04:01:02
# local_time=2016-02-18 05:01:02 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=6.2.9200 NT 
Update Init
Update Download
Update Finalize
Updated modules version: 28194
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=5a840ba6b6d3cd42b2bd20bfbe8ce049
# end=updated
# utc_time=2016-02-18 04:08:48
# local_time=2016-02-18 05:08:48 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# osver=6.2.9200 NT 
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7777
# api_version=3.1.1
# EOSSerial=5a840ba6b6d3cd42b2bd20bfbe8ce049
# engine=28194
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2016-02-18 06:55:53
# local_time=2016-02-18 07:55:53 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT 
# compatibility_mode_1='Kaspersky Internet Security'
# compatibility_mode=1305 16777213 100 100 10853 20040405 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 94 1510000 9635896 0 0
# scanned=762000
# found=26
# cleaned=0
# scan_time=10024
sh=09E369F9EA069BC141F0D34DC18AEC3ABBA77F6B ft=1 fh=241f3ea108f7cde2 vn="Variante von Win32/Adware.Vonteera.L Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Convertor\Convertor.exe.vir"
sh=09E369F9EA069BC141F0D34DC18AEC3ABBA77F6B ft=1 fh=241f3ea108f7cde2 vn="Variante von Win32/Adware.Vonteera.L Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\winsta\bin\Winsta.exe.vir"
sh=20755E07B7A5883463F1E467B926DCDEDD374066 ft=0 fh=0000000000000000 vn="Win32/Adware.Vonteera.L Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc\42.1_0\background_with_deps.js.vir"
sh=09E369F9EA069BC141F0D34DC18AEC3ABBA77F6B ft=1 fh=241f3ea108f7cde2 vn="Variante von Win32/Adware.Vonteera.L Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Marc\AppData\Roaming\PDFConvert\SWUpdate.exe.vir"
sh=1A385914BBAFBF82AE6A41A1342256FC0F801FF1 ft=1 fh=0ea20545276ada37 vn="Variante von Win32/Adware.Vonteera.L Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Marc\AppData\Roaming\WinKit\Updater.exe.vir"
sh=1A385914BBAFBF82AE6A41A1342256FC0F801FF1 ft=1 fh=0ea20545276ada37 vn="Variante von Win32/Adware.Vonteera.L Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Marc\AppData\Roaming\winsta\Winsta.exe.vir"
sh=CE4E0CD151705B8FDE4640BCBC463E2ED89C8EE6 ft=0 fh=0000000000000000 vn="Win32/Adware.Vonteera.P Anwendung" ac=I fn="C:\FRST\Quarantine\C\Program Files (x86)\Mozilla Firefox\distribution\bundles\firefox\chrome\content\filesrv.js"
sh=E5C48F3A5BF337FC6F0B9A9AD74DA785BB6C4D2E ft=0 fh=0000000000000000 vn="Win32/Adware.Vonteera.M Anwendung" ac=I fn="C:\FRST\Quarantine\C\Program Files (x86)\Mozilla Firefox\distribution\bundles\firefox\chrome\content\main.js"
sh=83B9648BCBFE783F9385B9F08832A84F841BC56A ft=1 fh=e21d1cafe529151b vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marc\Downloads\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql - CHIP-Installer.exe"
sh=5BC7B3CFDE8DADC338D7878EB185F8C8392B1F03 ft=1 fh=c71c0011e8464a4f vn="Variante von Win32/Injected.F Trojaner" ac=I fn="C:\Users\Marc\Downloads\COMPUTER_BILD-Download-Manager_fuer_hamachi.exe"
sh=D86D2FC37B1FED635CAF6F25254D7A575466ED1E ft=1 fh=7614c1446a9b863f vn="Variante von Win32/Hao123.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marc\Downloads\FFSetup3.3.4.0.exe"
sh=0D28B1414DF5CC16ACE14A1935E35921480FF806 ft=0 fh=0000000000000000 vn="Win32/InstallMonetizer.AQ evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marc\Downloads\gta-5-theme.zip"
sh=9DF97B417C53958902D1876867B1B5233E107868 ft=1 fh=b6fea5969f17fc17 vn="Win32/Somoto.E evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marc\Downloads\m4a-to-mp3-81converter.exe"
sh=5243F92BF795659319D589AB35F97234BE411847 ft=1 fh=ccabe913e005e50e vn="Variante von Win32/AdWare.iBryte.AR Anwendung" ac=I fn="C:\Users\Marc\Downloads\Minecraft_Setup.exe"
sh=E3A69044DB80020EF69F28A679A62A07F9AE936A ft=1 fh=bcbf2858281a2b32 vn="JS/Adware.OkayFreedom.A Anwendung" ac=I fn="C:\Users\Marc\Downloads\okayfreedom.exe"
sh=60EABEA1159A1992F48499E3EAFFB41EC400CBA3 ft=1 fh=424cb468a7927006 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marc\Downloads\Paragon Drive Copy 2015 Kompakt - CHIP-Installer.exe"
sh=E2C028A886AA7352539DEE32CBB38770C529A76E ft=1 fh=d2aeb2930bcba9f7 vn="Win32/InstallMonetizer.AQ evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marc\Downloads\PDFCreator-1_7_3_setup.exe"
sh=DF838D02195E380F72BEA5C356C575903BC8D4B3 ft=1 fh=df358b5f3cfd20dd vn="Win32/Somoto.E evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marc\Downloads\streamtransport_1102setup.exe"
sh=2DE2B2535E89B879ADD0D8EAD6FDEB4CED61D667 ft=1 fh=e60eb5d8731de34b vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marc\Downloads\Vollversion Google Earth Pro - CHIP-Installer.exe"
sh=1FE96AFD4EB0FEA66C8DB2A93A3FF58594ACD04D ft=1 fh=18cd897a59c497d0 vn="Win32/InstallMonetizer.AQ evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marc\Downloads\gta-5-theme\Grand Theft Auto V Theme.exe"
sh=145CA8A9BCDA935059F55C1EDF972CB5BF078FF5 ft=0 fh=0000000000000000 vn="Win32/Toolbar.Widgi evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marc\Downloads\SolidWorks2014x64SP05\SolidWorks 2014 x64 SP05\swelectric\PDFCre~1.cab"
sh=FE15122FB882F58EC56A718D7D65193E8727C009 ft=0 fh=0000000000000000 vn="Win32/Shutdowner.NBB Trojaner" ac=I fn="E:\Fesplatte Daten\Daten\Tools\superfast1106.zip"
sh=B4093B430038FFF98409391757E5EB4B76C3F70B ft=1 fh=2c4f653a987d8f2c vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="E:\Fesplatte Daten\Daten\USB-Stick\Programme\ashampoo_burning_studio_elements_10.0.4_7978.exe"
sh=1DD5FE76761441017F129FC270186796EB0384AA ft=1 fh=398a74cd1520cafd vn="Win32/Toolbar.Conduit.A evtl. unerwünschte Anwendung" ac=I fn="E:\Fesplatte Daten\Daten\USB-Stick\Programme\FreeDVDDecrypter.exe"
sh=AE48EA2A1BDC148C4E874064630E1E9F591801E6 ft=1 fh=398a74cda556d093 vn="Win32/Toolbar.Conduit.A evtl. unerwünschte Anwendung" ac=I fn="E:\Fesplatte Daten\Daten\USB-Stick\Programme\FreeDVDVideoConverter.exe"
sh=A9D9A1EA56810A35A352A96EAD8E461A93643DE0 ft=1 fh=398a74cd8659c3dc vn="Win32/Toolbar.Conduit.A evtl. unerwünschte Anwendung" ac=I fn="E:\Fesplatte Daten\Daten\USB-Stick\Programme\FreeYouTubeToMp3Converter327.exe"
         

sonst gibt es mein Problem mit den ständig sich öffnenden Websides (nicht) mehr, scheint im Moment jedenfalls so. Was ist mit den Dateien die der Scan gefunden hat?

Alt 19.02.2016, 13:17   #11
Deathkid535
/// Malwareteam
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



Hi,

nur Zeugs in der Quarantäne und ein paar Installer, nix schlimmes. Mehr dazu unten:

Dann wären wir hier durch. Deine Logs sind sauber

Falls du deine Passwörter nicht regelmäßig änderst - jetzt ist der Zeitpunkt dafür!

Schritt # 1: Entfernen unserer Tools

Die Reihenfolge ist hier entscheidend.
  1. Falls Defogger benutzt wurde: Defogger nochmal starten und auf re-enable klicken.
  2. Falls Combofix benutzt wurde: (Alternativ in uninstall.exe umbenennen und starten)
    • Windowstaste + R > Combofix /Uninstall (eingeben) > OK
    • Alternative: Combofix.exe in uninstall.exe umbenennen und starten
    • Combofix wird jetzt starten, sich evtl updaten und dann alle Reste von sich selbst entfernen.
  3. Downloade Dir bitte auf jeden Fall DelFix Download DelFix auf deinen Desktop:
    • Schließe alle offenen Programme.
    • Starte die delfix.exe mit einem Doppelklick.
    • Setze vor jede Funktion ein Häkchen.
    • Klicke auf Start.
    • Hinweis: DelFix entfernt u. a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
    • Starte deinen Rechner abschließend neu.
  4. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein kannst du sie bedenkenlos löschen.



Abschließend noch ein paar Tipps von mir:

Schritt # 2: Empfohlene Software

Habe immer ein aktuelles Antivirenprogramm deiner Wahl installiert und aktiviere die automatischen Updates (standardmäßig eingeschaltet).

Ich empfehle:

Verwende nach Möglichkeit nicht den Internet Explorer, da dieser viele Sicherheitslücken enthält. Achte aber darauf, dass er immer up to date bleibt, weil viele Programme diesen zum Anzeigen von Websites benutzen.

Alternativ kannst du verwenden:Dazu sind folgende Add-ons empfehlenswert:

uBlock Origin (Chrome) --> Blockiert Werbung. Werbung kann sehr nervig sein, aber auch auf schädliche Links verweisen. uBlock ist effizienter als der Konkurrent AdblockPlus.
Ghostery --> Blockiert Tracker und Cookies, welche dich im Internet nachverfolgen können. Stelle jedoch bei der Installation sicher, dass du Ghostrank nicht zustimmst.

Du kannst auch Malwarebytes Anti-Exploit verwenden, um aktuelle Sicherheitslücken zu stopfen.

Halte immer deine Plug-ins und Software aktuell, vor allem:Du kannst diese komfortabel regelmäßig hiermit überprüfen:

PluginCheck
Filehippo App Manager



Schritt # 3: Tipps um eine Neuinfektion zu vermeiden

Downloade nach Möglichkeit immer direkt von der Herstellerseite oder alternativ von einem sauberen Download-Portal wie FilePony.de. Von Downloadern wie die von Chip, Softonic und Sourceforge raten wir ab: CHIP-Installer - was ist das? - Anleitungen

Auch versuchen sich immer mehr Programme durch Installationsroutinen auf den PC "durchzumogeln". Das klappt ganz gut, weil viele Anwender sich diese nicht genau durchlesen und schnell durchklicken. Manchmal steht auch in den Lizenzvereinbarungen, dass ein Programm, was eigentlich als Freeware angepriesen wird, nur genutzt werden kann, wenn man sich bestimmte Toolbars oder andere Programme mitinstallieren lässt.
Da hilft es nur aufmerksam zu sein.

Ein Tool, welches dich dabei gut unterstützen kann, ist: Unchecky. Dieses überwacht im Hintergrund Installationsprozesse und hakt automatisch nervige Adwarekomponenten wie Toolbars ab. Falls man etwas übersieht, warnt noch ein Pop-up, bevor man fortfahren kann.

Wir raten von jeglichen Optimizern, Cleanern, SpeedUps und Ähnlichem ab, da diese Softwareprodukte meist keinen Performancegewinn bringen. Du kannst jedoch regelmäßig deinen PC mit der windowsinternen Datenträgerbereinigung behandeln.

Überprüfe regelmäßig (mind. 1x pro Monat) deinen PC mit Malwarebytes Anti-Malware und ESET.

Falls du dir unsicher bist, ob ein Download wirklich sauber ist, kannst du immer https://www.virustotal.com/ zurate ziehen.



Schritt # 4: Unterstütze uns!

Wenn du uns mit einer kleinen Spende unterstützen möchtest, so kannst du dies hier tun: http://www.trojaner-board.de/79994-s...ndenkonto.html

Es reicht aber auch schon ein simples hier, wenn du mit uns zufrieden warst.

unsere Facebook-Seite!

Bitte gib mir bescheid, wenn du das alles gelesen hast und alles klar ist, damit ich dieses Thema aus meinen Abos löschen kann.

Alt 20.02.2016, 18:43   #12
MarcS
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



vielen Dank!

Alt 21.02.2016, 13:11   #13
Deathkid535
/// Malwareteam
 
Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Standard

Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK



Gerne

Antwort

Themen zu Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK
aufrufe, auswirkungen, automatisches, crazy, eingabe, einiger, englischsprachige, hilfe, hoffe, minute, minuten, nicht, problem, seite, seiten, troja, verschiedene, verschiedenen



Ähnliche Themen: Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK


  1. Laptop reagiert nach ein paar Minuten Betrieb extrem verzögert
    Log-Analyse und Auswertung - 20.01.2016 (4)
  2. wenn ich das pc anschalte zeigt es nach paar minuten stand da "anzeigetriber wurde nach dem fehler wieder hergestellt" also so in der richtu
    Alles rund um Windows - 09.08.2015 (3)
  3. Windows 7 hängt sich nach paar Minuten auf.
    Log-Analyse und Auswertung - 28.07.2015 (6)
  4. Virus oder so, Fenster in meinem browser öffnen sich alle paar minuten (adf.ly)
    Plagegeister aller Art und deren Bekämpfung - 22.02.2015 (7)
  5. Windows 7: Schwarzer Bildschirm nach ein paar Minuten im Internet, dann geht nichts mehr
    Log-Analyse und Auswertung - 05.10.2014 (24)
  6. PC LANGSAM und Hängt sich nach paar minuten ins Unendlich auf
    Plagegeister aller Art und deren Bekämpfung - 12.07.2014 (14)
  7. PC hängt nach Start immer ein paar Minuten oder länger
    Log-Analyse und Auswertung - 21.06.2013 (10)
  8. fehlermeldungs sound alle paar minuten
    Plagegeister aller Art und deren Bekämpfung - 11.06.2013 (5)
  9. Internet setzt alle paar Minuten aus
    Plagegeister aller Art und deren Bekämpfung - 09.10.2011 (24)
  10. Rechner hakt alle paar sekunden, Programme öffnen erst nach mehreren Minuten, JAVA/Stutter.I.1
    Log-Analyse und Auswertung - 01.08.2011 (1)
  11. laptop hängt sich nach paar minuten auf
    Plagegeister aller Art und deren Bekämpfung - 14.11.2009 (1)
  12. Soundkarte (X-Fi Extreme Music) fliegt plötzlich nach paar minuten immer ausm windows
    Netzwerk und Hardware - 01.06.2009 (0)
  13. Soundkarte (X-Fi Extreme Music) fliegt plötzlich nach paar minuten immer ausm windows
    Plagegeister aller Art und deren Bekämpfung - 01.06.2009 (28)
  14. Pc friert ein nach paar Minuten.
    Log-Analyse und Auswertung - 02.03.2009 (0)
  15. Internet geht nach paar Minuten aus
    Netzwerk und Hardware - 27.01.2009 (2)
  16. Es öffnet sich all paar Minuten ein i-net Fenster
    Mülltonne - 20.10.2008 (0)
  17. Von einer DVD ein paar Minuten Film rausschneiden ?
    Alles rund um Windows - 28.08.2003 (3)

Zum Thema Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK - Hallo liebes Trojaner-Board.de Team, ich hoffe ihr könnt mir weiterhelfen. Und zwar habe ich schon seit einiger Zeit das Problem, dass sich ständig nach ein paar Minuten ohne Eingabe am - Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK...
Archiv
Du betrachtest: Automatisches Öffnen von verschiedenen Websides nach ein paar Minuten AFK auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.