Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: msi cr70 erkennt kamera nicht weder interne noch externe, win7,downspeedtest

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

 
Alt 12.01.2017, 23:53   #1
milkit54
 
msi cr70 erkennt kamera nicht weder interne noch externe, win7,downspeedtest - Standard

msi cr70 erkennt kamera nicht weder interne noch externe, win7,downspeedtest



Hallo zusammen hier bittet ein ziemlich verwirrter und MS kranker unwissender Anwender um evtl mögliche Hilfe. Fehler meinerseits bitte ich schon jetzt zu entschuldigen Danke
ich starte mal den Versuch
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 11-01-2017
durchgeführt von Micha (Administrator) auf MICHA-MSI (12-01-2017 10:46:44)
Gestartet von C:\Users\Micha\Downloads
Geladene Profile: Micha (Verfügbare Profile: Micha & DefaultAppPool)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
(Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\Realtek Bluetooth\AvrcpService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe
(Microsoft Corporation) C:\Windows\System32\CISVC.EXE
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.15.1046.10613\AdAwareService.exe
(Lavasoft Limited) C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.2.9.5\LavasoftTcpService.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe
(MSI) C:\Program Files (x86)\MSI\MSI HOUSE\MSIFoundationService.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Anti-Theft\Engine\1.6.0.17\ccSvcHst.exe
(Visicom Media Inc.) C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe
(PLUMBYTES) C:\Program Files\Plumbytes Software\Plumbytes Anti-Malware\AmwService.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect 2\ws.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect 2\creator-ws.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect 2\crash-handler-ws.exe
(Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\Realtek Bluetooth\RtkBleServ.exe
() C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe
(Microsoft Corporation) C:\Windows\System32\TCPSVCS.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Anti-Theft\Engine\1.6.0.17\ccSvcHst.exe
(Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe
() C:\Program Files (x86)\Realtek\Realtek Bluetooth\SkypePlugin.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(MSI) C:\Program Files (x86)\SCM\Radio Manager.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.15.1046.10613\AdAwareTray.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Lavasoft) C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(© 2015 Microsoft Corporation) C:\Users\Micha\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Intel® Corporation) C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
(shbox.de) C:\Program Files (x86)\FreePDF_XP\fpassist.exe
() C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Symantec Corporation) C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\scalc.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe
(Apache Software Foundation) C:\Program Files (x86)\OpenOffice 4\program\soffice.bin
(Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Farbar) C:\Users\Micha\Downloads\FRST64(1).exe

==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13538376 2013-05-21] (Realtek Semiconductor)
HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [253440 2013-04-23] (Realtek Semiconductor Corporation)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2875728 2013-03-04] (ELAN Microelectronics Corp.)
HKLM\...\Run: [Radio Manager] => C:\Program Files (x86)\SCM\Radio Manager.exe [406920 2013-07-05] (MSI)
HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [399528 2013-07-05] (MSI)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [Windows Mobile-based device management] => C:\windows\WindowsMobile\wmdcBase.exe [660360 2007-05-31] (Microsoft Corporation)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.15.1046.10613\AdAwareTray.exe [9533688 2016-12-15] ()
HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [2776528 2016-12-14] (Malwarebytes)
HKLM-x32\...\Run: [YouCam Mirage] => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488 2011-10-13] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe [230696 2011-10-13] (CyberLink Corp.)
HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [490480 2013-02-01] (MSI)
HKLM-x32\...\Run: [FreePDF Assistant] => C:\Program Files (x86)\FreePDF_XP\fpassist.exe [373760 2014-03-18] (shbox.de)
HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe [1153448 2016-08-10] ()
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67384 2016-10-05] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2198626584-3468660724-23365673-1000\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [1367360 2014-12-16] (Lavasoft)
HKU\S-1-5-21-2198626584-3468660724-23365673-1000\...\Run: [EPSON SX100 Series (Kopie 1)] => C:\windows\system32\spool\DRIVERS\x64\3\E_IATIEDE.EXE [221696 2008-02-05] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2198626584-3468660724-23365673-1000\...\Run: [EPSON SX100 Series] => C:\windows\system32\spool\DRIVERS\x64\3\E_IATIEDE.EXE [221696 2008-02-05] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2198626584-3468660724-23365673-1000\...\Run: [EPSON SX100 Series (Kopie 2)] => C:\windows\system32\spool\DRIVERS\x64\3\E_IATIEDE.EXE [221696 2008-02-05] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2198626584-3468660724-23365673-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2016-10-05] (Apple Inc.)
HKU\S-1-5-21-2198626584-3468660724-23365673-1000\...\Run: [BingSvc] => C:\Users\Micha\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-05] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-2198626584-3468660724-23365673-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27230168 2016-11-15] (Skype Technologies S.A.)
HKU\S-1-5-18\...\Run: [EPSON SX100 Series] => C:\windows\system32\spool\DRIVERS\x64\3\E_IATIEDE.EXE [221696 2008-02-05] (SEIKO EPSON CORPORATION)
HKU\S-1-5-18\...\RunOnce: [panda] => reg.exe delete "HKCU\Software\AppDataLow\Software\panda" /f
HKU\S-1-5-18\...\RunOnce: [panda_XP] => reg.exe delete "HKCU\Software\panda" /f
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> Keine Datei
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> Keine Datei
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> Keine Datei
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> Keine Datei
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> Keine Datei
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\desktop(777).ini [2009-07-14] ()
Startup: C:\Users\Micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Intel(R) Turbo Boost Technology Monitor 2.6.lnk [2013-07-31]
ShortcutTarget: Intel(R) Turbo Boost Technology Monitor 2.6.lnk -> C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe (Intel® Corporation)
GroupPolicyScripts-x32: Beschränkung <======= ACHTUNG

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Winsock: Catalog9-x64 01 C:\windows\system32\LavasoftTcpService64.dll [358736 2014-12-16] (Lavasoft Limited)
Winsock: Catalog9-x64 02 C:\windows\system32\LavasoftTcpService64.dll [358736 2014-12-16] (Lavasoft Limited)
Winsock: Catalog9-x64 03 C:\windows\system32\LavasoftTcpService64.dll [358736 2014-12-16] (Lavasoft Limited)
Winsock: Catalog9-x64 04 C:\windows\system32\LavasoftTcpService64.dll [358736 2014-12-16] (Lavasoft Limited)
Winsock: Catalog9-x64 16 C:\windows\system32\LavasoftTcpService64.dll [358736 2014-12-16] (Lavasoft Limited)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2
Tcpip\..\Interfaces\{19590355-955C-4F75-9574-A5178867FB8F}: [DhcpNameServer] 192.168.0.1 192.168.0.2
Tcpip\..\Interfaces\{7AFF0EF0-F8B5-4E22-BED7-5BAC51243C58}: [NameServer] 193.189.244.206 193.189.244.225

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKU\S-1-5-21-2198626584-3468660724-23365673-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.n-tv.de/
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {2BA0719B-B10C-4176-8BB1-AF2B6E7453E0} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSITDF&pc=MAM3&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> {2BA0719B-B10C-4176-8BB1-AF2B6E7453E0} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSITDF&pc=MAM3&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-2198626584-3468660724-23365673-1000 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={18DC9A1B-75F8-4C91-A21F-328A8F8FCFB0}&mid=2f112f36b90e47cd86aa856e587a95e0-b67d740e056757739f071bdf1b00435729c4d0a4&lang=de&ds=AVG&coid=avgtbavg&cmpid=1016tb&pr=fr&d=2015-01-05 13:55:51&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2198626584-3468660724-23365673-1000 -> {2BA0719B-B10C-4176-8BB1-AF2B6E7453E0} URL = 
SearchScopes: HKU\S-1-5-21-2198626584-3468660724-23365673-1000 -> {3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} URL = hxxp://pandasecurity.mystart.com/results.php?pr=vmn&gen=ms&id=pandasecuritytb&v=4_2&idate=2015-05-27&ent=ch_668&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2198626584-3468660724-23365673-1000 -> {85A60A59-D3D8-468F-B598-FB4393789EF4} URL = hxxps://www.google.de/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2198626584-3468660724-23365673-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={18DC9A1B-75F8-4C91-A21F-328A8F8FCFB0}&mid=2f112f36b90e47cd86aa856e587a95e0-b67d740e056757739f071bdf1b00435729c4d0a4&lang=de&ds=AVG&coid=avgtbavg&cmpid=1016tb&pr=fr&d=2015-01-05 13:55:51&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2198626584-3468660724-23365673-1000 -> {BDF61FAE-9D19-40F0-8F34-688DEB334CA9} URL = hxxp://securedsearch.lavasoft.com/results.php?pr=vmn&id=webcompa&ent=ch_WCYID10088_test01_150105&q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon64.dll [2016-08-10] (Qihu 360 Software Co., Ltd.)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO-x32: PDF Architect Helper -> {691B33B0-B86E-47F3-81C7-56E4FE3B929C} -> C:\Program Files (x86)\PDF Architect 2\creator-ie-helper.dll [2014-10-10] (pdfforge GmbH)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: SafeMon Class -> {B69F34DD-F0F9-42DC-9EDD-957187DA688D} -> C:\Program Files (x86)\360\Total Security\safemon\safemon.dll [2016-08-10] (Qihu 360 Software Co., Ltd.)
Toolbar: HKLM-x32 - Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} -  Keine Datei
Toolbar: HKLM-x32 - PDF Architect Toolbar - {DEEB13D7-CEA9-45FB-B77C-E039BEC85221} - C:\Program Files (x86)\PDF Architect 2\creator-ie-plugin.dll [2014-10-10] (pdfforge GmbH)

FireFox:
========
FF ProfilePath: C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\0h0153di.default-1478642192766 [2017-01-12]
FF NewTab: Mozilla\Firefox\Profiles\0h0153di.default-1478642192766 -> hxxp://hp.myway.com/downspeedtest/ttab02/index.html?coId=db9de8384d8040ac93524301c1b30367&subId=undefined&ln=de&n=783924d7&ptb=4E16B681-6380-4409-98AE-5BA6F85B170D&st=tab&p2=%5EBXM%5Exdm001%5ETTAB02%5Ede&si=undefined
FF DefaultSearchEngine: Mozilla\Firefox\Profiles\0h0153di.default-1478642192766 -> Google
FF SelectedSearchEngine: Mozilla\Firefox\Profiles\0h0153di.default-1478642192766 -> Google
FF Homepage: Mozilla\Firefox\Profiles\0h0153di.default-1478642192766 -> hxxp://www.n-tv.de/
FF Extension: (Test Pilot) - C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\0h0153di.default-1478642192766\Extensions\@testpilot-addon.xpi [2017-01-11]
FF Extension: (GMX MailCheck) - C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\0h0153di.default-1478642192766\Extensions\browser-mailcheck@gmx.net [2016-11-23]
FF Extension: (Awesome Screenshot - Capture, Annotate & More) - C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\0h0153di.default-1478642192766\Extensions\jid0-GXjLLfbCoAx0LcltEdFrEkQdQPI@jetpack.xpi [2017-01-10]
FF Extension: (Page Shot) - C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\0h0153di.default-1478642192766\Extensions\jid1-NeEaf3sAHdKHPA@jetpack.xpi [2017-01-11]
FF Extension: (DownSpeedTest) - C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\0h0153di.default-1478642192766\Extensions\_dqMembers_@www.downspeedtest.com [2017-01-09]
FF SearchPlugin: C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\0h0153di.default-1478642192766\searchplugins\avg-secure-search.xml [2016-12-09]
FF HKLM-x32\...\Firefox\Extensions: [pdf_architect_2_conv@pdfarchitect.org] - C:\Program Files (x86)\PDF Architect 2\resources\pdfarchitect2firefoxextension
FF Extension: (PDF Architect 2 Creator) - C:\Program Files (x86)\PDF Architect 2\resources\pdfarchitect2firefoxextension [2015-01-20] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [WebProtection@360safe.com] - C:\Program Files (x86)\360\Total Security\safemon\webprotection_firefox
FF Extension: (360-Internetschutz) - C:\Program Files (x86)\360\Total Security\safemon\webprotection_firefox [2016-05-26]
FF HKU\S-1-5-21-2198626584-3468660724-23365673-1000\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\jsjjbqd4.default\extensions\cliqz@cliqz.com => nicht gefunden
FF HKU\S-1-5-21-2198626584-3468660724-23365673-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: (McAfee Security Scan Plus) - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04] [ist nicht signiert]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\pandasecuritytb.xml [2015-05-27]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\wtu-secure-search.xml [2016-10-18]
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_24_0_0_194.dll [2017-01-10] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_194.dll [2017-01-10] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-02-16] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-02-16] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-17] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems Inc.)
FF Plugin-x32: PDF Architect 2 -> C:\Program Files (x86)\PDF Architect 2\np-previewer.dll [2014-10-10] (pdfforge GmbH)

Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=de-de
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR DefaultSearchURL: Default -> hxxp://pandasecurity.mystart.com/results.php?searchsource=omnibar&pr=vmn&id=pandasecuritytb&v=2_3&ent=ds_671&q={searchTerms}
CHR DefaultSearchKeyword: Default -> yahoo
CHR Profile: C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default [2017-01-04]
CHR Extension: (Google Präsentationen) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-08-13]
CHR Extension: (Google Docs) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-13]
CHR Extension: (Google Drive) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-01-10]
CHR Extension: (YouTube) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-01-10]
CHR Extension: (Google-Suche) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-01-10]
CHR Extension: (Yahoo!) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdhbkaahephniejapepaiggngjnedpci [2015-07-22]
CHR Extension: (Google Tabellen) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-13]
CHR Extension: (MSN Homepage) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkcgfbgohboipdhliafmacjnhjbhmim [2016-12-18]
CHR Extension: (Google Docs Offline) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-22]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-08-22]
CHR Extension: (Google Mail) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-13]
CHR Extension: (Chrome Media Router) - C:\Users\Micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-18]
CHR HKU\S-1-5-21-2198626584-3468660724-23365673-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fkkcgfbgohboipdhliafmacjnhjbhmim] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - hxxp://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fdhbkaahephniejapepaiggngjnedpci] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AvrcpService; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\AvrcpService.exe [35328 2013-04-02] (Realtek Semiconductor Corporation) [Datei ist nicht signiert]
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [47104 2013-04-26] () [Datei ist nicht signiert]
R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1253376 2009-08-27] (MAGIX AG) [Datei ist nicht signiert]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [3276800 2008-08-07] (MAGIX®) [Datei ist nicht signiert]
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel(R) Corporation) [Datei ist nicht signiert]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-02-16] (Intel Corporation)
R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.15.1046.10613\AdAwareService.exe [630976 2016-12-15] ()
R2 LavasoftTcpService; C:\Program Files (x86)\Lavasoft\Web Companion\TcpService\2.2.9.5\LavasoftTcpService.exe [1351512 2014-12-16] (Lavasoft Limited)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4317648 2016-12-14] (Malwarebytes)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2013-07-05] (Micro-Star International Co., Ltd.) [Datei ist nicht signiert]
R2 MSI Foundation Service; C:\Program Files (x86)\MSI\MSI HOUSE\MSIFoundationService.exe [12800 2010-07-17] (MSI) [Datei ist nicht signiert]
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [143856 2013-02-01] (MSI)
R2 NAT; C:\Program Files (x86)\Norton Anti-Theft\Engine\1.6.0.17\ccSvcHst.exe [143928 2012-08-19] (Symantec Corporation)
S3 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [4230016 2013-01-28] (Symantec Corporation)
R2 Norton PC Checkup Application Launcher; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe [123320 2012-08-13] (Symantec Corporation)
R2 panda_url_filtering; C:\Program Files\Panda Security URL Filtering\Panda_URL_Filteringb.exe [287752 2015-10-02] (Visicom Media Inc.)
R2 pbamw_service; C:\Program Files\Plumbytes Software\Plumbytes Anti-Malware\AmwService.exe [125712 2016-11-08] (PLUMBYTES)
R2 PCCUJobMgr; C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe [126392 2012-08-13] (Symantec Corporation)
R2 PDF Architect 2; C:\Program Files (x86)\PDF Architect 2\ws.exe [1771560 2014-10-10] (pdfforge GmbH)
R2 PDF Architect 2 Creator; C:\Program Files (x86)\PDF Architect 2\creator-ws.exe [738856 2014-10-10] (pdfforge GmbH)
R2 pdfforge CrashHandler; C:\Program Files (x86)\PDF Architect 2\crash-handler-ws.exe [861736 2014-10-10] (pdfforge GmbH)
R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [914344 2016-08-10] (QIHU 360 SOFTWARE CO. LIMITED)
R2 RtkBleServ; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\RtkBleServ.exe [42496 2013-04-26] (Realtek Semiconductor Corporation) [Datei ist nicht signiert]
R2 SearchProtectionService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe [15208 2014-12-16] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R1 360AntiHacker; C:\windows\System32\Drivers\360AntiHacker64.sys [151784 2016-08-10] (360.cn)
R3 360AvFlt; C:\windows\System32\DRIVERS\360AvFlt.sys [86248 2016-08-10] (360.cn)
R3 360AvFlt; C:\Windows\SysWOW64\DRIVERS\360AvFlt.sys [86248 2016-08-10] (360.cn)
R1 360Box64; C:\windows\System32\DRIVERS\360Box64.sys [330472 2016-08-10] (360.cn)
R1 360Camera; C:\windows\System32\Drivers\360Camera64.sys [40520 2015-07-09] (360.cn)
R1 360fsflt; C:\windows\System32\DRIVERS\360FsFlt.sys [391392 2016-08-10] (360.cn)
R1 BAPIDRV; C:\windows\System32\DRIVERS\BAPIDRV64.sys [190696 2016-08-10] (360.cn)
R3 ccSet_NARA; C:\windows\system32\drivers\NARAx64\0403000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
S3 ccSet_NAT; C:\windows\system32\drivers\NATx64\0106000.011\ccSetx64.sys [168096 2012-08-07] (Symantec Corporation)
R1 ESProtectionDriver; C:\windows\system32\drivers\mbae64.sys [77416 2016-12-14] ()
S3 ewusbnet; C:\windows\System32\DRIVERS\ewusbnet.sys [246224 2009-12-07] (Huawei Technologies Co., Ltd.)
R3 gzflt; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\3.0.129.0\gzflt.sys [161592 2016-04-28] (BitDefender LLC)
S3 hwusbdev; C:\windows\System32\DRIVERS\ewusbdev.sys [114304 2009-10-12] (Huawei Technologies Co., Ltd.)
R0 iaStorF; C:\windows\System32\drivers\iaStorF.sys [28656 2013-03-22] (Intel Corporation)
R3 L1C; C:\windows\System32\DRIVERS\L1C62x64.sys [118504 2013-05-07] (Qualcomm Atheros Co., Ltd.)
R2 MBAMChameleon; C:\windows\system32\drivers\MBAMChameleon.sys [176064 2017-01-10] (Malwarebytes)
R3 MBAMFarflt; C:\windows\system32\drivers\farflt.sys [102856 2017-01-11] (Malwarebytes)
R3 MBAMProtection; C:\windows\system32\drivers\mbam.sys [43968 2017-01-11] (Malwarebytes)
R3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [250816 2017-01-11] (Malwarebytes)
R3 MBAMWebProtection; C:\windows\system32\drivers\mwac.sys [81696 2017-01-12] (Malwarebytes)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-26] (MSI)
R3 panda_url_filteringd; C:\Program Files\Panda Security URL Filtering\panda_url_filteringd.sys [51288 2014-03-19] (Visicom Media Inc.)
S3 RtkAvrcp; C:\windows\system32\drivers\RtkAvrcp.sys [61152 2012-12-27] (Realtek Semiconductor Corporation)
S3 RtkAvrcpCtrlr; C:\windows\system32\drivers\RtkAvrcpCtrlr.sys [66376 2013-04-08] (Realtek Semiconductor Corporation)
R3 RtkBtFilter; C:\windows\System32\DRIVERS\RtkBtfilter.sys [535624 2013-03-28] (Realtek Semiconductor Corporation)
R3 RTWlanE; C:\windows\System32\DRIVERS\rtwlane.sys [1514568 2013-05-02] (Realtek Semiconductor Corporation                           )
S3 SWDUMon; C:\windows\System32\DRIVERS\SWDUMon.sys [13920 2017-01-04] ()
S3 Trufos; C:\windows\System32\DRIVERS\Trufos.sys [485512 2016-04-28] (BitDefender S.R.L.)
S3 MGHwCtrl; \??\C:\Program Files\MSI\MSI Software Install\MGHwCtrl.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-01-12 10:45 - 2017-01-12 10:45 - 02419200 _____ (Farbar) C:\Users\Micha\Downloads\FRST64(1).exe
2017-01-11 12:41 - 2017-01-11 12:41 - 00000111 ____H C:\Users\Micha\Documents\.~lock.Insolvenz-1.ods#
2017-01-10 20:59 - 2017-01-05 19:55 - 00154856 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2017-01-10 20:59 - 2017-01-05 19:55 - 00095464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2017-01-10 20:59 - 2017-01-05 19:52 - 01460736 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 01212928 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00730624 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00690688 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00463872 _____ (Microsoft Corporation) C:\windows\system32\certcli.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00345600 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00316928 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00312320 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00210432 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00190464 _____ (Microsoft Corporation) C:\windows\system32\rpchttp.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00123904 _____ (Microsoft Corporation) C:\windows\system32\bcrypt.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\cryptbase.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00028672 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2017-01-10 20:59 - 2017-01-05 19:52 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00666112 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00553472 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00342528 _____ (Microsoft Corporation) C:\windows\SysWOW64\certcli.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00261120 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00254464 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00223232 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00141312 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpchttp.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00082944 _____ (Microsoft Corporation) C:\windows\SysWOW64\bcrypt.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2017-01-10 20:59 - 2017-01-05 18:43 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2017-01-10 20:59 - 2017-01-05 18:42 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2017-01-10 20:59 - 2017-01-05 18:32 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2017-01-10 20:59 - 2017-01-05 18:25 - 00159744 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys
2017-01-10 20:59 - 2017-01-05 18:24 - 00291328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2017-01-10 20:59 - 2017-01-05 18:24 - 00129536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys
2017-01-10 20:59 - 2017-01-05 18:24 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2017-01-10 20:59 - 2017-01-05 18:23 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2017-01-10 20:59 - 2017-01-05 18:19 - 00036352 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptbase.dll
2017-01-10 20:56 - 2017-01-10 20:56 - 00083124 _____ C:\Users\Micha\Downloads\FRST01102017.txt
2017-01-10 20:55 - 2017-01-10 20:55 - 00041706 _____ C:\Users\Micha\Downloads\Addition01102017.txt
2017-01-10 16:22 - 2017-01-10 16:22 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\Vorlagen
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\Startmenü
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\Netzwerkumgebung
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\Lokale Einstellungen
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\Eigene Dateien
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\Druckumgebung
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Videos
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Musik
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Bilder
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Verlauf
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Anwendungsdaten
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 _SHDL C:\Users\DefaultAppPool\Anwendungsdaten
2017-01-10 16:22 - 2017-01-10 16:22 - 00000000 ____D C:\Users\DefaultAppPool
2017-01-10 16:22 - 2016-11-30 06:27 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\AVG
2017-01-10 16:22 - 2013-07-31 22:25 - 00002110 _____ C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
2017-01-10 16:22 - 2013-07-31 19:31 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Media Center Programs
2017-01-10 15:44 - 2017-01-10 15:44 - 00002485 _____ C:\Users\Public\Desktop\DriverUpdate.lnk
2017-01-10 15:44 - 2017-01-10 15:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverUpdate
2017-01-10 15:44 - 2017-01-10 15:44 - 00000000 ____D C:\Program Files (x86)\DriverUpdate
2017-01-10 09:57 - 2017-01-10 09:57 - 00000000 ____D C:\Users\Micha\AppData\Local\{12A8CCFE-3C33-4995-BAD8-074E4C5B22FD}
2017-01-10 09:38 - 2017-01-10 09:38 - 00176064 _____ (Malwarebytes) C:\windows\system32\Drivers\MBAMChameleon.sys
2017-01-10 09:37 - 2017-01-12 09:50 - 00081696 _____ (Malwarebytes) C:\windows\system32\Drivers\mwac.sys
2017-01-10 09:37 - 2017-01-11 01:27 - 00102856 _____ (Malwarebytes) C:\windows\system32\Drivers\farflt.sys
2017-01-10 09:37 - 2017-01-11 01:27 - 00043968 _____ (Malwarebytes) C:\windows\system32\Drivers\mbam.sys
2017-01-10 09:37 - 2017-01-11 01:26 - 00250816 _____ (Malwarebytes) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2017-01-10 09:37 - 2017-01-10 09:37 - 00001837 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2017-01-10 09:37 - 2017-01-10 09:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-01-10 09:37 - 2017-01-10 09:37 - 00000000 ____D C:\Program Files\Malwarebytes
2017-01-10 09:37 - 2016-12-14 12:55 - 00077416 _____ C:\windows\system32\Drivers\mbae64.sys
2017-01-10 09:35 - 2017-01-10 09:36 - 54199488 _____ (Malwarebytes ) C:\Users\Micha\Downloads\mb3-setup-consumer-3.0.5.1299(1).exe
2017-01-10 08:39 - 2017-01-10 08:39 - 00000000 ____D C:\Users\Micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Plumbytes Anti-Malware
2017-01-10 08:39 - 2017-01-10 08:39 - 00000000 ____D C:\Program Files\Plumbytes Software
2017-01-10 08:38 - 2017-01-10 08:38 - 00881904 _____ C:\Users\Micha\Downloads\antimalwaresetup.exe
2017-01-09 19:19 - 2017-01-09 19:19 - 00041077 _____ C:\Users\Micha\Desktop\Addition.txt
2017-01-09 15:57 - 2017-01-10 20:53 - 00041703 _____ C:\Users\Micha\Downloads\Addition.txt
2017-01-09 15:55 - 2017-01-12 10:47 - 00031700 _____ C:\Users\Micha\Downloads\FRST.txt
2017-01-09 15:55 - 2017-01-12 10:46 - 00000000 ____D C:\FRST
2017-01-09 15:54 - 2017-01-09 15:54 - 02419200 _____ (Farbar) C:\Users\Micha\Downloads\FRST64.exe
2017-01-05 20:02 - 2017-01-05 20:02 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk
2017-01-05 20:02 - 2017-01-05 20:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2017-01-05 00:41 - 2015-07-16 20:12 - 06131200 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2017-01-05 00:41 - 2015-07-16 20:12 - 00856064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdvidcrl.dll
2017-01-05 00:41 - 2015-07-16 20:12 - 00053248 _____ (Microsoft Corporation) C:\windows\SysWOW64\tsgqec.dll
2017-01-05 00:41 - 2015-07-16 20:11 - 07077376 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2017-01-05 00:41 - 2015-07-16 20:11 - 01057792 _____ (Microsoft Corporation) C:\windows\system32\rdvidcrl.dll
2017-01-05 00:41 - 2015-07-16 20:11 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\tsgqec.dll
2017-01-05 00:41 - 2015-07-11 14:15 - 00429568 _____ (Microsoft Corporation) C:\windows\system32\wksprt.exe
2017-01-04 19:30 - 2015-12-20 19:50 - 03180544 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll
2017-01-04 19:30 - 2015-12-20 19:50 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\RdpGroupPolicyExtension.dll
2017-01-04 19:30 - 2015-12-20 15:08 - 00243200 _____ (Microsoft Corporation) C:\windows\system32\rdpudd.dll
2017-01-04 19:29 - 2014-12-11 18:47 - 00087040 _____ (Microsoft Corporation) C:\windows\system32\TSWbPrxy.exe
2017-01-04 15:35 - 2017-01-04 15:35 - 00021286 _____ C:\Users\Micha\Desktop\scan malebyte 04012017.txt
2017-01-04 15:08 - 2017-01-04 15:08 - 54199488 _____ (Malwarebytes ) C:\Users\Micha\Downloads\mb3-setup-consumer-3.0.5.1299.exe
2017-01-04 13:53 - 2017-01-04 13:53 - 13425152 _____ (ReviverSoft) C:\Users\Micha\Downloads\DriverReviverSetup_ppc(2).exe
2017-01-04 10:30 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\Drivers\TsUsbFlt.sys
2017-01-04 10:30 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2017-01-04 10:30 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2017-01-04 10:30 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\MsRdpWebAccess.dll
2017-01-04 10:30 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\windows\system32\wksprtPS.dll
2017-01-04 10:30 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\windows\system32\TsUsbGDCoInstaller.dll
2017-01-04 10:30 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\MsRdpWebAccess.dll
2017-01-04 10:30 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\windows\SysWOW64\wksprtPS.dll
2017-01-04 10:30 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\windows\system32\mstsc.exe
2017-01-04 10:30 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2017-01-04 10:28 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpvideominiport.sys
2017-01-04 10:28 - 2012-08-23 15:08 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\TsUsbGD.sys
2017-01-04 10:28 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdpendp_winip.dll
2017-01-04 10:28 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\windows\system32\rdpendp_winip.dll
2017-01-04 10:25 - 2015-08-05 18:56 - 00022528 _____ (Microsoft Corporation) C:\windows\system32\icaapi.dll
2017-01-04 10:25 - 2015-08-05 18:06 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
2017-01-04 09:59 - 2017-01-04 09:59 - 00000000 ____H C:\windows\system32\Drivers\Msft_Kernel_ICCWDT_01009.Wdf
2017-01-04 09:25 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\kbdgeoqw.dll
2017-01-04 09:25 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDAZEL.DLL
2017-01-04 09:25 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDAZE.DLL
2017-01-04 09:25 - 2015-12-16 19:48 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDAZE.DLL
2017-01-04 09:25 - 2015-12-16 19:48 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\kbdgeoqw.dll
2017-01-04 09:25 - 2015-12-16 19:48 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDAZEL.DLL
2017-01-04 02:04 - 2017-01-04 02:04 - 03279864 _____ (SPAMfighter ApS) C:\Users\Micha\Downloads\DRIVERfighter_Web(1).exe
2017-01-04 01:18 - 2017-01-04 10:38 - 00013920 _____ C:\windows\system32\Drivers\SWDUMon.sys
2017-01-04 01:18 - 2017-01-04 01:18 - 00000000 ____D C:\Users\Micha\AppData\Local\Downloaded Installers
2017-01-04 01:18 - 2017-01-04 01:18 - 00000000 ____D C:\ProgramData\SlimWare Utilities Inc
2017-01-04 01:03 - 2017-01-04 01:04 - 00000000 ____D C:\Users\Micha\AppData\Roaming\Fighters
2017-01-04 01:02 - 2017-01-04 02:18 - 00000000 ____D C:\ProgramData\Fighters
2017-01-04 01:00 - 2017-01-04 01:01 - 03279864 _____ (SPAMfighter ApS) C:\Users\Micha\Downloads\DRIVERfighter_Web.exe
2017-01-04 00:56 - 2017-01-04 14:12 - 00000000 ____D C:\Program Files\ReviverSoft
2017-01-04 00:54 - 2017-01-04 00:55 - 13425152 _____ (ReviverSoft) C:\Users\Micha\Downloads\DriverReviverSetup_ppc(1).exe
2016-12-30 10:41 - 2016-12-30 10:41 - 00178564 _____ C:\Users\Micha\Downloads\HERMES_label_2016-12-30_10_40_52.pdf
2016-12-30 10:35 - 2016-12-30 10:35 - 00178968 _____ C:\Users\Micha\Downloads\HERMES_label_2016-12-30_10_33_49.pdf
2016-12-24 23:14 - 2016-12-24 23:14 - 00025199 _____ C:\Users\Micha\Documents\freelancer200855.vcf
2016-12-24 10:33 - 2012-06-01 06:39 - 00014848 _____ (Microsoft Corporation) C:\windows\system32\wamregps.dll
2016-12-24 10:33 - 2012-06-01 06:36 - 00192000 _____ (Microsoft Corporation) C:\windows\system32\iisRtl.dll
2016-12-24 10:33 - 2012-06-01 06:36 - 00011264 _____ (Microsoft Corporation) C:\windows\system32\iisrstap.dll
2016-12-24 10:33 - 2012-06-01 06:35 - 00060928 _____ (Microsoft Corporation) C:\windows\system32\ahadmin.dll
2016-12-24 10:33 - 2012-06-01 06:34 - 00055296 _____ (Microsoft Corporation) C:\windows\system32\admwprox.dll
2016-12-24 10:33 - 2012-06-01 06:33 - 00016896 _____ (Microsoft Corporation) C:\windows\system32\iisreset.exe
2016-12-24 10:33 - 2012-06-01 05:40 - 00010752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wamregps.dll
2016-12-24 10:33 - 2012-06-01 05:37 - 00154624 _____ (Microsoft Corporation) C:\windows\SysWOW64\iisRtl.dll
2016-12-24 10:33 - 2012-06-01 05:37 - 00008192 _____ (Microsoft Corporation) C:\windows\SysWOW64\iisrstap.dll
2016-12-24 10:33 - 2012-06-01 05:35 - 00050688 _____ (Microsoft Corporation) C:\windows\SysWOW64\admwprox.dll
2016-12-24 10:33 - 2012-06-01 05:35 - 00026624 _____ (Microsoft Corporation) C:\windows\SysWOW64\ahadmin.dll
2016-12-24 10:33 - 2012-06-01 05:34 - 00015360 _____ (Microsoft Corporation) C:\windows\SysWOW64\iisreset.exe
2016-12-24 02:30 - 2017-01-11 01:20 - 02210866 ____H C:\Users\Micha\AppData\Local\IconCache.db
2016-12-23 23:18 - 2016-12-23 23:18 - 00000000 ____D C:\windows\SysWOW64\BestPractices
2016-12-23 23:18 - 2016-12-23 23:18 - 00000000 ____D C:\windows\system32\BestPractices
2016-12-23 23:18 - 2016-12-23 23:18 - 00000000 ____D C:\inetpub
2016-12-23 17:25 - 2016-12-23 17:25 - 43886552 _____ (Skype Technologies S.A.) C:\Users\Micha\Downloads\SkypeSetupFull(2).exe
2016-12-23 17:25 - 2016-12-23 17:25 - 00003142 _____ C:\windows\System32\Tasks\{42239007-962A-405B-897B-E4E0207270AF}
2016-12-23 17:23 - 2016-12-23 17:24 - 01463424 _____ (Skype Technologies S.A.) C:\Users\Micha\Downloads\skypesetup.exe
2016-12-23 16:13 - 2017-01-03 14:27 - 00524288 ___SH C:\windows\system32\config\components{2f89a682-c922-11e6-aa72-54271e9e7c13}.TMContainer00000000000000000001.regtrans-ms
2016-12-23 16:13 - 2017-01-03 14:27 - 00065536 ___SH C:\windows\system32\config\components{2f89a682-c922-11e6-aa72-54271e9e7c13}.TM.blf
2016-12-23 16:13 - 2016-12-23 16:17 - 00524288 ___SH C:\windows\system32\config\components{2f89a682-c922-11e6-aa72-54271e9e7c13}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 15:52 - 2016-12-23 15:52 - 00000000 __SHD C:\found.000
2016-12-18 14:28 - 2016-12-18 14:28 - 00000000 ____D C:\Users\Micha\Tracing
2016-12-18 14:25 - 2016-12-18 14:25 - 43872728 _____ (Skype Technologies S.A.) C:\Users\Micha\Downloads\SkypeSetupFull(1).exe
2016-12-18 14:20 - 2016-12-18 14:20 - 43878872 _____ (Skype Technologies S.A.) C:\Users\Micha\Downloads\SkypeSetupFull.exe
2016-12-18 14:12 - 2017-01-12 10:48 - 00000000 ____D C:\Users\Micha\AppData\Roaming\Skype
2016-12-18 14:12 - 2016-12-18 14:28 - 00000000 ____D C:\Users\Micha\AppData\Local\Skype
2016-12-18 11:45 - 2016-12-18 11:45 - 00003202 _____ C:\windows\System32\Tasks\{7C15C6ED-AB8F-4479-AB67-B366BCA58406}
2016-12-18 11:00 - 2017-01-04 15:36 - 00000000 ____D C:\Users\Micha\AppData\Local\SlimWare Utilities Inc
2016-12-18 11:00 - 2016-12-18 11:00 - 00000000 ____D C:\Users\Public\Documents\Downloaded Installers
2016-12-16 09:55 - 2016-12-16 09:57 - 00000000 ____D C:\Users\Micha\Documents\Fax
2016-12-16 09:55 - 2016-12-16 09:55 - 00000000 ___RD C:\Users\Micha\Documents\Scanned Documents
2016-12-16 01:19 - 2016-12-16 01:19 - 00307001 _____ C:\Users\Micha\Downloads\urkunden(2).jpeg
2016-12-15 19:15 - 2016-12-15 19:15 - 00000000 ____D C:\Program Files\Common Files\Lavasoft
2016-12-15 19:13 - 2016-12-15 19:13 - 02586928 _____ C:\Users\Micha\Downloads\Adaware_Installer(7).exe
2016-12-14 03:58 - 2016-11-21 19:12 - 00109568 _____ (Microsoft Corporation) C:\windows\system32\hlink.dll
2016-12-14 03:58 - 2016-11-20 17:19 - 00084992 _____ (Microsoft Corporation) C:\windows\SysWOW64\hlink.dll
2016-12-14 03:58 - 2016-11-20 15:07 - 00467392 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2016-12-14 03:58 - 2016-11-17 17:41 - 00370920 _____ (Microsoft Corporation) C:\windows\system32\clfs.sys
2016-12-14 03:58 - 2016-11-15 00:27 - 00394448 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2016-12-14 03:58 - 2016-11-14 23:39 - 00346320 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2016-12-14 03:58 - 2016-11-12 20:48 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2016-12-14 03:58 - 2016-11-12 20:48 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2016-12-14 03:58 - 2016-11-12 20:28 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2016-12-14 03:58 - 2016-11-12 20:26 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2016-12-14 03:58 - 2016-11-12 20:26 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2016-12-14 03:58 - 2016-11-12 20:25 - 00576000 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2016-12-14 03:58 - 2016-11-12 20:25 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2016-12-14 03:58 - 2016-11-12 20:21 - 02896384 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2016-12-14 03:58 - 2016-11-12 20:15 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2016-12-14 03:58 - 2016-11-12 20:14 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2016-12-14 03:58 - 2016-11-12 20:09 - 00615936 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2016-12-14 03:58 - 2016-11-12 20:08 - 25759744 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2016-12-14 03:58 - 2016-11-12 20:08 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2016-12-14 03:58 - 2016-11-12 20:08 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2016-12-14 03:58 - 2016-11-12 20:07 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2016-12-14 03:58 - 2016-11-12 20:07 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2016-12-14 03:58 - 2016-11-12 19:56 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2016-12-14 03:58 - 2016-11-12 19:53 - 06049280 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2016-12-14 03:58 - 2016-11-12 19:52 - 00489984 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2016-12-14 03:58 - 2016-11-12 19:47 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2016-12-14 03:58 - 2016-11-12 19:41 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2016-12-14 03:58 - 2016-11-12 19:40 - 00107520 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2016-12-14 03:58 - 2016-11-12 19:35 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2016-12-14 03:58 - 2016-11-12 19:34 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2016-12-14 03:58 - 2016-11-12 19:31 - 00315392 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2016-12-14 03:58 - 2016-11-12 19:30 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2016-12-14 03:58 - 2016-11-12 19:29 - 00498688 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2016-12-14 03:58 - 2016-11-12 19:29 - 00341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2016-12-14 03:58 - 2016-11-12 19:29 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2016-12-14 03:58 - 2016-11-12 19:28 - 00152064 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2016-12-14 03:58 - 2016-11-12 19:27 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2016-12-14 03:58 - 2016-11-12 19:20 - 02287616 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2016-12-14 03:58 - 2016-11-12 19:20 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2016-12-14 03:58 - 2016-11-12 19:19 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2016-12-14 03:58 - 2016-11-12 19:17 - 20302848 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2016-12-14 03:58 - 2016-11-12 19:15 - 00476160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2016-12-14 03:58 - 2016-11-12 19:14 - 00663552 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2016-12-14 03:58 - 2016-11-12 19:14 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2016-12-14 03:58 - 2016-11-12 19:14 - 00262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2016-12-14 03:58 - 2016-11-12 19:14 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2016-12-14 03:58 - 2016-11-12 19:11 - 00725504 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2016-12-14 03:58 - 2016-11-12 19:10 - 00806912 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2016-12-14 03:58 - 2016-11-12 19:08 - 02131456 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2016-12-14 03:58 - 2016-11-12 19:08 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2016-12-14 03:58 - 2016-11-12 19:03 - 00416256 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2016-12-14 03:58 - 2016-11-12 18:57 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-12-14 03:58 - 2016-11-12 18:56 - 00091136 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2016-12-14 03:58 - 2016-11-12 18:52 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2016-12-14 03:58 - 2016-11-12 18:51 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2016-12-14 03:58 - 2016-11-12 18:49 - 00279040 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2016-12-14 03:58 - 2016-11-12 18:47 - 00130048 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2016-12-14 03:58 - 2016-11-12 18:41 - 15257088 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2016-12-14 03:58 - 2016-11-12 18:40 - 00230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2016-12-14 03:58 - 2016-11-12 18:38 - 00693248 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2016-12-14 03:58 - 2016-11-12 18:37 - 04608000 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2016-12-14 03:58 - 2016-11-12 18:36 - 02055680 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2016-12-14 03:58 - 2016-11-12 18:36 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2016-12-14 03:58 - 2016-11-12 18:35 - 02920960 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2016-12-14 03:58 - 2016-11-12 18:21 - 13653504 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2016-12-14 03:58 - 2016-11-12 18:20 - 01543680 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2016-12-14 03:58 - 2016-11-12 18:11 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2016-12-14 03:58 - 2016-11-12 18:05 - 02444800 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2016-12-14 03:58 - 2016-11-12 18:02 - 01312256 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2016-12-14 03:58 - 2016-11-12 18:02 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2016-12-14 03:58 - 2016-11-10 17:32 - 01009152 _____ (Microsoft Corporation) C:\windows\system32\user32.dll
2016-12-14 03:58 - 2016-11-10 17:19 - 00833024 _____ (Microsoft Corporation) C:\windows\SysWOW64\user32.dll
2016-12-14 03:58 - 2016-11-09 17:41 - 00114408 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2016-12-14 03:58 - 2016-11-09 17:33 - 03244032 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2016-12-14 03:58 - 2016-11-09 17:33 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2016-12-14 03:58 - 2016-11-09 17:33 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2016-12-14 03:58 - 2016-11-09 17:33 - 00070144 _____ (Microsoft Corporation) C:\windows\system32\appinfo.dll
2016-12-14 03:58 - 2016-11-09 17:33 - 00025088 _____ (Microsoft Corporation) C:\windows\system32\msimsg.dll
2016-12-14 03:58 - 2016-11-09 17:33 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2016-12-14 03:58 - 2016-11-09 17:17 - 02365440 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2016-12-14 03:58 - 2016-11-09 17:17 - 01806848 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2016-12-14 03:58 - 2016-11-09 17:17 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2016-12-14 03:58 - 2016-11-09 17:17 - 00025088 _____ (Microsoft Corporation) C:\windows\SysWOW64\msimsg.dll
2016-12-14 03:58 - 2016-11-09 17:17 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2016-12-14 03:58 - 2016-11-09 17:02 - 00128512 _____ (Microsoft Corporation) C:\windows\system32\msiexec.exe
2016-12-14 03:58 - 2016-11-09 16:55 - 00073216 _____ (Microsoft Corporation) C:\windows\SysWOW64\msiexec.exe
2016-12-14 03:58 - 2016-11-06 17:33 - 00404992 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2016-12-14 03:58 - 2016-11-06 17:16 - 00312832 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2016-12-14 03:58 - 2016-11-06 17:01 - 03219456 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2016-12-14 03:58 - 2016-10-27 16:33 - 00802304 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll
2016-12-14 03:58 - 2016-10-27 16:20 - 00627712 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll
2016-12-14 03:58 - 2016-10-11 16:40 - 00631176 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2016-12-14 03:58 - 2016-10-11 16:37 - 05547752 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2016-12-14 03:58 - 2016-10-11 16:37 - 00706792 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2016-12-14 03:58 - 2016-10-11 16:34 - 01732864 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2016-12-14 03:58 - 2016-10-11 16:32 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2016-12-14 03:58 - 2016-10-11 16:32 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2016-12-14 03:58 - 2016-10-11 16:32 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2016-12-14 03:58 - 2016-10-11 16:32 - 00215552 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2016-12-14 03:58 - 2016-10-11 16:32 - 00069120 _____ (Microsoft Corporation) C:\windows\system32\nlsbres.dll
2016-12-14 03:58 - 2016-10-11 16:32 - 00063488 _____ (Microsoft Corporation) C:\windows\system32\setbcdlocale.dll
2016-12-14 03:58 - 2016-10-11 16:32 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2016-12-14 03:58 - 2016-10-11 16:32 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2016-12-14 03:58 - 2016-10-11 16:32 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 01163264 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00880640 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00419840 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00059904 _____ (Microsoft Corporation) C:\windows\system32\appidapi.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00044032 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00034816 _____ (Microsoft Corporation) C:\windows\system32\appidsvc.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:31 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:24 - 04000488 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2016-12-14 03:58 - 2016-10-11 16:24 - 03944680 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2016-12-14 03:58 - 2016-10-11 16:21 - 01314112 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00644096 _____ (Microsoft Corporation) C:\windows\SysWOW64\advapi32.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00275456 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\nlsbres.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00050688 _____ (Microsoft Corporation) C:\windows\SysWOW64\appidapi.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:18 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 16:03 - 00148480 _____ (Microsoft Corporation) C:\windows\system32\appidpolicyconverter.exe
2016-12-14 03:58 - 2016-10-11 16:03 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys
2016-12-14 03:58 - 2016-10-11 16:03 - 00017920 _____ (Microsoft Corporation) C:\windows\system32\appidcertstorecheck.exe
2016-12-14 03:58 - 2016-10-11 15:59 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2016-12-14 03:58 - 2016-10-11 15:59 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2016-12-14 03:58 - 2016-10-11 15:55 - 00346112 _____ (Microsoft Corporation) C:\windows\system32\bcdedit.exe
2016-12-14 03:58 - 2016-10-11 15:55 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2016-12-14 03:58 - 2016-10-11 15:51 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2016-12-14 03:58 - 2016-10-11 15:51 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2016-12-14 03:58 - 2016-10-11 15:51 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2016-12-14 03:58 - 2016-10-11 15:51 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2016-12-14 03:58 - 2016-10-11 15:50 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 15:50 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 15:50 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 15:50 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2016-12-14 03:58 - 2016-10-11 14:18 - 00419648 _____ C:\windows\SysWOW64\locale.nls
2016-12-14 03:58 - 2016-10-11 14:17 - 00419648 _____ C:\windows\system32\locale.nls
2016-12-14 03:58 - 2016-10-08 14:06 - 00633296 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2016-12-14 03:58 - 2016-10-04 16:31 - 01483264 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2016-12-14 03:58 - 2016-10-04 16:31 - 00229376 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2016-12-14 03:58 - 2016-10-04 16:31 - 00190976 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2016-12-14 03:58 - 2016-10-04 16:31 - 00141824 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2016-12-14 03:58 - 2016-10-04 16:13 - 01176064 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2016-12-14 03:58 - 2016-10-04 16:13 - 00179200 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2016-12-14 03:58 - 2016-10-04 16:13 - 00145920 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2016-12-14 03:58 - 2016-10-04 16:13 - 00106496 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll
2016-12-13 11:53 - 2016-12-13 11:53 - 00180102 _____ C:\Users\Micha\Downloads\HERMES_label_2016-12-13_11_37_40(1).pdf
2016-12-13 11:38 - 2016-12-13 11:38 - 00180102 _____ C:\Users\Micha\Downloads\HERMES_label_2016-12-13_11_37_40.pdf

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2017-01-12 10:17 - 2014-12-14 15:17 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2017-01-12 09:08 - 2016-11-22 11:54 - 00000000 ____D C:\Users\Micha\AppData\LocalLow\Mozilla
2017-01-12 08:01 - 2009-07-14 05:45 - 00024432 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2017-01-12 08:01 - 2009-07-14 05:45 - 00024432 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2017-01-11 21:01 - 2014-12-19 21:37 - 00010240 _____ C:\Users\Micha\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-01-11 12:42 - 2015-07-15 11:33 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-01-11 12:40 - 2015-01-21 09:55 - 00004476 _____ C:\windows\System32\Tasks\Adobe Acrobat Update Task
2017-01-11 12:38 - 2015-05-27 15:08 - 00000000 ____D C:\ProgramData\panda_url_filtering
2017-01-11 01:40 - 2015-07-26 08:18 - 00000000 ____D C:\Users\Micha\AppData\LocalLow\360WD
2017-01-11 01:29 - 2015-02-27 20:57 - 00000000 ____D C:\Users\Micha\AppData\Local\FreePDF_XP
2017-01-11 01:27 - 2013-07-31 21:55 - 00000000 ____D C:\ProgramData\Realtek
2017-01-11 01:26 - 2016-12-05 21:00 - 00002312 _____ C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
2017-01-11 01:25 - 2009-07-14 06:08 - 00032640 _____ C:\windows\Tasks\SCHEDLGU.TXT
2017-01-11 01:25 - 2009-07-14 06:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2017-01-11 00:03 - 2014-12-14 16:17 - 00000000 ____D C:\windows\system32\MRT
2017-01-11 00:02 - 2014-12-20 03:20 - 135657872 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2017-01-10 16:17 - 2014-12-14 15:17 - 00003822 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2017-01-10 16:17 - 2014-12-14 15:17 - 00000000 ____D C:\windows\system32\Macromed
2017-01-10 16:17 - 2013-07-31 22:22 - 00802904 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2017-01-10 16:17 - 2013-07-31 22:22 - 00144472 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2017-01-10 16:17 - 2013-07-31 22:22 - 00000000 ____D C:\windows\SysWOW64\Macromed
2017-01-10 09:37 - 2016-11-06 01:54 - 00000000 ____D C:\ProgramData\Malwarebytes
2017-01-09 15:53 - 2015-09-21 09:06 - 00000000 __SHD C:\$360Section
2017-01-09 15:53 - 2015-09-02 15:13 - 00000000 ____D C:\ProgramData\360Quarant
2017-01-05 20:02 - 2013-07-31 22:29 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-01-05 20:02 - 2013-07-31 22:28 - 00000000 ____D C:\ProgramData\Skype
2017-01-04 13:31 - 2014-12-14 15:54 - 00000000 ____D C:\Program Files (x86)\chip
2017-01-04 10:35 - 2009-07-14 05:45 - 00313104 _____ C:\windows\system32\FNTCACHE.DAT
2017-01-04 10:34 - 2009-07-14 04:20 - 00000000 ____D C:\windows\PolicyDefinitions
2017-01-04 10:34 - 2009-07-14 04:20 - 00000000 ____D C:\windows\inf
2017-01-04 10:31 - 2013-07-31 21:39 - 01687534 _____ C:\windows\SysWOW64\PerfStringBackup.INI
2017-01-04 10:31 - 2013-07-31 19:42 - 00738178 _____ C:\windows\system32\perfh007.dat
2017-01-04 10:31 - 2013-07-31 19:42 - 00160894 _____ C:\windows\system32\perfc007.dat
2017-01-04 10:31 - 2009-07-14 06:13 - 01687534 _____ C:\windows\system32\PerfStringBackup.INI
2017-01-04 10:31 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\inetsrv
2017-01-04 09:47 - 2016-06-30 15:21 - 00000000 ____D C:\Users\Micha\AppData\Local\ElevatedDiagnostics
2017-01-04 09:01 - 2015-07-24 19:27 - 00000000 ____D C:\ProgramData\360safe
2017-01-04 02:21 - 2014-12-14 00:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX
2017-01-04 02:05 - 2009-07-14 03:34 - 00000568 _____ C:\windows\win.ini
2017-01-03 17:08 - 2015-09-24 19:26 - 00000356 _____ C:\Users\Micha\Desktop\Zitate.txt
2016-12-28 22:36 - 2009-07-14 04:20 - 00000000 ____D C:\windows\rescache
2016-12-25 00:18 - 2009-07-14 04:20 - 00000000 ____D C:\windows\SysWOW64\migration
2016-12-25 00:18 - 2009-07-14 04:20 - 00000000 ____D C:\windows\SysWOW64\inetsrv
2016-12-25 00:18 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\migration
2016-12-24 23:11 - 2014-12-19 22:43 - 00000000 ____D C:\Users\Micha\Documents\Youcam
2016-12-24 20:13 - 2009-07-14 04:18 - 00000000 __SHD C:\$Recycle.Bin
2016-12-24 00:58 - 2014-12-31 14:21 - 00000000 ____D C:\ProgramData\Freemake
2016-12-24 00:58 - 2014-12-31 14:21 - 00000000 ____D C:\Program Files (x86)\Freemake
2016-12-24 00:48 - 2015-07-30 22:30 - 00000000 _RSHD C:\360SANDBOX
2016-12-24 00:00 - 2009-07-14 04:20 - 00000000 __RSD C:\windows\assembly
2016-12-24 00:00 - 2009-07-14 04:20 - 00000000 ____D C:\windows\Microsoft.NET
2016-12-23 23:52 - 2014-12-14 00:06 - 00000000 ___RD C:\Users\Micha\Videos
2016-12-23 23:20 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2016-12-23 23:18 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-12-23 23:18 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Microsoft Games
2016-12-23 23:18 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\Drivers\etc
2016-12-23 23:18 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-12-23 21:47 - 2016-01-21 10:17 - 00000000 ____D C:\Program Files (x86)\pandasecuritytb
2016-12-23 19:30 - 2009-07-14 04:20 - 00000000 ____D C:\windows\AppPatch
2016-12-23 15:29 - 2016-11-02 17:00 - 00524288 ___SH C:\windows\system32\config\components{36abe97a-a115-11e6-9f6c-54271e9e7c13}.TMContainer00000000000000000002.regtrans-ms
2016-12-23 15:29 - 2016-11-02 17:00 - 00065536 ___SH C:\windows\system32\config\components{36abe97a-a115-11e6-9f6c-54271e9e7c13}.TM.blf
2016-12-23 15:02 - 2016-11-02 17:00 - 00524288 ___SH C:\windows\system32\config\components{36abe97a-a115-11e6-9f6c-54271e9e7c13}.TMContainer00000000000000000001.regtrans-ms
2016-12-18 14:28 - 2014-12-14 00:06 - 00000000 ____D C:\Users\Micha\AppData\Local\Microsoft
2016-12-18 14:28 - 2014-12-14 00:06 - 00000000 ____D C:\Users\Micha
2016-12-18 12:19 - 2014-12-14 00:07 - 00072008 _____ C:\Users\Micha\AppData\Local\GDIPFONTCACHEV1.DAT
2016-12-18 12:13 - 2015-05-27 15:05 - 00000000 ____D C:\Program Files (x86)\Panda Security
2016-12-18 12:07 - 2015-05-27 15:03 - 00000000 ____D C:\ProgramData\Panda Security
2016-12-18 12:06 - 2015-05-27 15:06 - 00000000 ____D C:\Users\Micha\AppData\Roaming\Panda Security
2016-12-18 11:00 - 2009-07-14 04:20 - 00000000 ___RD C:\Users\Public\Documents
2016-12-18 01:40 - 2014-12-14 00:06 - 00000000 ___RD C:\Users\Micha\Pictures
2016-12-17 01:20 - 2014-12-21 14:52 - 00003542 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-12-17 01:20 - 2014-12-21 14:52 - 00003414 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-12-15 22:58 - 2016-12-07 07:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-12-15 22:58 - 2014-12-14 14:25 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-12-15 22:00 - 2014-12-27 00:03 - 00000000 ____D C:\Users\Micha\AppData\Roaming\Apple Computer
2016-12-15 19:17 - 2015-01-05 13:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2016-12-15 19:15 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files
2016-12-15 11:19 - 2014-12-21 14:53 - 00002197 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-12-15 11:19 - 2014-12-21 14:53 - 00002185 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\windows\SysWOW64\it-IT
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\windows\SysWOW64\fr-FR
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\windows\SysWOW64\es-ES
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\windows\SysWOW64\en-US
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\it-IT
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\fr-FR
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\es-ES
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\en-US
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\Boot
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Internet Explorer
2016-12-15 03:29 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files (x86)\Internet Explorer

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2014-09-01 09:18 - 2014-09-01 09:18 - 0001248 _____ () C:\Users\Micha\AppData\Roaming\FODX
2014-12-14 00:06 - 2017-01-12 08:48 - 0077464 _____ () C:\Users\Micha\AppData\Local\BTServer.log
2014-12-19 21:37 - 2017-01-11 21:01 - 0010240 _____ () C:\Users\Micha\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

Einige Dateien in TEMP:
====================
C:\Users\Micha\AppData\Local\Temp\DllMonoCtrl.dll


==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\windows\system32\winlogon.exe => Datei ist digital signiert
C:\windows\system32\wininit.exe => Datei ist digital signiert
C:\windows\SysWOW64\wininit.exe => Datei ist digital signiert
C:\windows\explorer.exe => Datei ist digital signiert
C:\windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\windows\system32\svchost.exe => Datei ist digital signiert
C:\windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\windows\system32\services.exe => Datei ist digital signiert
C:\windows\system32\User32.dll => Datei ist digital signiert
C:\windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\windows\system32\userinit.exe => Datei ist digital signiert
C:\windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\windows\system32\rpcss.dll => Datei ist digital signiert
C:\windows\system32\dnsapi.dll => Datei ist digital signiert
C:\windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\windows\system32\Drivers\volsnap.sys => Datei ist digital signiert

LastRegBack: 2017-01-03 14:36

==================== Ende von FRST.txt ============================
         
hoffe hier ist noch etwas zu retten, danke MS-Michael

Geändert von milkit54 (12.01.2017 um 23:57 Uhr) Grund: Teil 1 FRST

 

Themen zu msi cr70 erkennt kamera nicht weder interne noch externe, win7,downspeedtest
ad-aware, antivirus, avast, bonjour, cid, cpu, defender, desktop, email, error, explorer, failed, fehler, firefox, firewall, flash player, helper, home, homepage, internet, internet explorer, kameras weg, lavasofttcpservice64.dll, monitor, mozilla, msiwin7, prozesse, realtek, registry, scan, schutz, security, server, software, startseitenänderung, svchost.exe, symantec, system, temp, udp, usb, windows




Ähnliche Themen: msi cr70 erkennt kamera nicht weder interne noch externe, win7,downspeedtest


  1. Win10 (Lenovo): Skype erkennt Kamera nicht
    Alles rund um Windows - 15.01.2017 (2)
  2. msi cr70 erkennt kamera nicht weder interne noch externe,
    Mülltonne - 13.01.2017 (1)
  3. msi cr70 erkennt kamera nicht weder interne noch externe
    Mülltonne - 13.01.2017 (1)
  4. reimage erscheint nicht bei den uninstallern und lässt sich weder entfernen noch löschen
    Plagegeister aller Art und deren Bekämpfung - 09.08.2015 (2)
  5. Virus - Weder Bios noch Hochfahren funktionieren, kann Pc nicht wiederherstellen Part 2
    Plagegeister aller Art und deren Bekämpfung - 02.07.2015 (5)
  6. Virus - Weder Bios noch Hochfahren funktionieren, kann Pc nicht wiederherstellen
    Plagegeister aller Art und deren Bekämpfung - 10.06.2015 (3)
  7. Win7 kein Download möglich, weder IE noch Outlook
    Log-Analyse und Auswertung - 18.11.2014 (49)
  8. Win7 keine Downloads möglich, weder mit IE noch im Outlook
    Mülltonne - 02.10.2014 (3)
  9. Win7:Lautsprecher, Mikrofon & Kamera verselbständig, Probleme beim Hochladen
    Log-Analyse und Auswertung - 23.03.2014 (19)
  10. PC erkennt externe Festplatte (Hitachi oso3292) nicht mehr
    Netzwerk und Hardware - 08.02.2013 (8)
  11. interne Festplatten werden nicht mehr angezeigt (Win7)
    Plagegeister aller Art und deren Bekämpfung - 06.11.2012 (11)
  12. Win7 32-bit: GVU 2.07 mit Kamera
    Log-Analyse und Auswertung - 05.11.2012 (45)
  13. Pc erkennt keine externe Festplatte etc mehr +++ c:\windows\system32\msdtc.exe der dienst ........
    Log-Analyse und Auswertung - 27.07.2011 (1)
  14. Medion DVd-Rekorder erkennt keine externe Fp
    Netzwerk und Hardware - 23.07.2011 (3)
  15. HijackThis erkennt weder Virenschutzprogramm noch Firewall
    Log-Analyse und Auswertung - 11.02.2011 (11)
  16. Windows neu aufsetzten-- erkennt externe Festplatte nicht?
    Alles rund um Windows - 25.05.2010 (14)
  17. Kann weder Win7,Antivir noch Blizzard Software updaten!
    Antiviren-, Firewall- und andere Schutzprogramme - 29.04.2010 (6)

Zum Thema msi cr70 erkennt kamera nicht weder interne noch externe, win7,downspeedtest - Hallo zusammen hier bittet ein ziemlich verwirrter und MS kranker unwissender Anwender um evtl mögliche Hilfe. Fehler meinerseits bitte ich schon jetzt zu entschuldigen Danke ich starte mal den Versuch - msi cr70 erkennt kamera nicht weder interne noch externe, win7,downspeedtest...
Archiv
Du betrachtest: msi cr70 erkennt kamera nicht weder interne noch externe, win7,downspeedtest auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.