Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Alles rund um Windows (https://www.trojaner-board.de/alles-rund-um-windows/)
-   -   Telekom Abuse Team - generic Trojaner/Virus (https://www.trojaner-board.de/164247-telekom-abuse-team-generic-trojaner-virus.html)

RonnysPC 20.02.2015 18:59

Telekom Abuse Team - generic Trojaner/Virus
 
Hallo,
Ich habe gestern per Post von meinem Internetanbieter Telekom einen Brief bekommen. Der enthält eine wichtige Sicherheitswarnung mit Empfehlungen. Microsoft Defender meines Windows 8.1 als auch Bitdefender 2015 in einer Testversion sowie Malwarebytes haben keine schädlichen Funde auf meinen 3 Geräten angezeigt. Könnt ihr mir bitte weiterhelfen? Meine Fritz!Box 7490 zeigte neben den bekannten Rechnern (Win 8.1 Notebook, Ipad 3, IPhone 5 und ein per eingerichtetem Gastzugang am WLAN angeschlossenes MacBook und ein daran angeschlossenes Win 8.1 Notebook) weitere 6 Rechner mit der Bezeichnung PC ## ## ## ## ##, wobei ## für Ziffern/ Buchstaben steht, in meinem WLAN. Die unbekannten PC-Einträge habe ich entfernt und die Fritz!Box Option "Bekannte Geräte zulassen" aktiviert. Das Passwort meiner Fritz!Box habe ich geändert. Die WLAN (eigenes & Gast) sind WPA2 verschlüsselt :heulen:

schrauber 20.02.2015 20:44

hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)


RonnysPC 20.02.2015 23:04

Hallo Schrauber,
vielen Dank für deine schnelle Antwort, hier die gewünschten .txt Files:
FRST
FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-02-2015 01
Ran by Ronny (administrator) on RONNY-PC on 20-02-2015 22:52:07
Running from C:\Users\Ronny\Downloads
Loaded Profiles: Ronny (Available profiles: Ronny)
Platform: Microsoft Windows 8.1 Pro (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvwmi.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\stacsv.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\AEstSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\officeclicktorun.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(NVIDIA) C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.26.9\GoogleCrashHandler.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvwmi.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(TrueCrypt Foundation) C:\Program Files\TrueCrypt\TrueCrypt.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Bitdefender) C:\Program Files\Bitdefender\60-Second Virus Scanner\pdscan.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
() H:\05_Tools\torchat-windows-0.9.9.553\bin\torchat.exe
() H:\05_Tools\torchat-windows-0.9.9.553\bin\torchat.exe
() H:\05_Tools\torchat-windows-0.9.9.553\bin\Tor\tor.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Windows\System32\ThumbnailExtractionHost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [488816 2011-01-04] (Alps Electric Co., Ltd.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray.exe [442467 2008-07-02] (IDT, Inc.)
HKLM\...\Run: [InstallerLauncher] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-41 (the data entry has 36 more characters).
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\Run: [NVIDIA nTune] => C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe [81920 2007-09-04] (NVIDIA)
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5489944 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\Run: [pdiface] => C:\Program Files\Bitdefender\60-Second Virus Scanner\pdiface.exe [261984 2013-10-30] (Bitdefender)
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {1d3e3d2c-cd3f-11e3-97b3-002170b871a4} - "H:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {1eb9c41c-b727-11e3-9781-002170b871a4} - "G:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {22b84248-fdb2-11e3-97c9-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {2bc07355-770a-11e3-975a-002170b871a4} - "G:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {3409f44f-4bd0-11e3-971b-0016eae408aa} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {490eee48-4e0d-11e3-971c-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {58c8f203-4885-11e3-971a-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {58c908b1-4885-11e3-971a-002170b871a4} - "I:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {63388ec2-4fbc-11e3-971d-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {65e3ac35-f353-11e3-97c8-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {7b5a52d6-7719-11e3-975b-0016eae408aa} - "I:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {94c98766-431a-11e3-9716-806e6f6e6963} - "E:\Setup.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {9b8a2d68-4332-11e3-9718-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {9b8a2f2a-4332-11e3-9718-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {a9b7a72a-c188-11e3-9797-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {cd9925b5-155c-11e4-97d6-002170b871a4} - "H:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {cd992936-155c-11e4-97d6-002170b871a4} - "H:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {da0b8075-cb2a-11e3-97af-002170b871a4} - "F:\AutoRun.exe"
Startup: C:\Users\Ronny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\S-1-5-21-2443804570-283508326-906284146-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2443804570-283508326-906284146-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/
HKU\S-1-5-21-2443804570-283508326-906284146-1000\Software\Microsoft\Internet Explorer\Main,DisableRequiresActiveXPrompt = www.wdr.de
SearchScopes: HKLM -> DefaultScope value is missing.
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKU\S-1-5-21-2443804570-283508326-906284146-1000 -> No Name - {41524553-2D53-5000-76A7-7A786E7484D7} -  No File
Toolbar: HKU\S-1-5-21-2443804570-283508326-906284146-1000 -> No Name - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -  No File
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Ronny\AppData\Roaming\Mozilla\Firefox\Profiles\gy1zzbbj.default
FF DefaultSearchEngine: Bing
FF SelectedSearchEngine: Bing
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Extension: Garmin Communicator - C:\Users\Ronny\AppData\Roaming\Mozilla\Firefox\Profiles\gy1zzbbj.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} [2014-10-17]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AESTFilters; C:\WINDOWS\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\aestsrv.exe [77824 2008-06-27] (Andrea Electronics Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [1679536 2014-11-11] (Microsoft Corporation)
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
R2 nTuneService; C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe [131072 2007-09-04] (NVIDIA) [File not signed]
R2 NVWMI; C:\WINDOWS\system32\nvwmi.exe [1027872 2013-09-05] (NVIDIA Corporation)
R2 pdserv; C:\Program Files\Bitdefender\60-Second Virus Scanner\pdscan.exe [1221384 2013-11-11] (Bitdefender)
S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation)
R2 STacSV; C:\WINDOWS\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\STacSV.exe [221273 2008-07-02] (IDT, Inc.)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [288128 2014-09-22] (Microsoft Corporation)
S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22192 2014-09-22] (Microsoft Corporation)
S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1222144 2014-07-24] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 acpials; C:\WINDOWS\system32\DRIVERS\acpials.sys [7680 2013-09-30] (Microsoft Corporation)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-02-22] (Microsoft Corporation)
S3 FTDIBUS; C:\WINDOWS\system32\drivers\ftdibus.sys [63464 2013-02-13] (FTDI Ltd.)
S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation)
S3 huawei_cdcacm; C:\WINDOWS\system32\DRIVERS\ew_jucdcacm.sys [90368 2011-02-25] (Huawei Technologies Co., Ltd.)
S3 huawei_cdcecm; C:\WINDOWS\system32\DRIVERS\ew_jucdcecm.sys [64384 2011-01-30] (Huawei Technologies Co., Ltd.)
S3 huawei_ext_ctrl; C:\WINDOWS\System32\drivers\ew_juextctrl.sys [26624 2011-01-30] (Huawei Technologies Co., Ltd.)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [23256 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [114904 2015-02-20] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [51928 2014-11-21] (Malwarebytes Corporation)
R3 NETwNs32; C:\WINDOWS\system32\DRIVERS\NETwNs32.sys [7518208 2013-06-18] (Intel Corporation)
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [29696 2007-09-04] (NVidia Corp.) [File not signed]
R3 SensorsAlsDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [188416 2014-05-31] (Microsoft Corporation)
S3 silabenm; C:\WINDOWS\system32\DRIVERS\silabenm.sys [47176 2013-03-06] (Silicon Laboratories)
S3 silabser; C:\WINDOWS\system32\DRIVERS\silabser.sys [63104 2013-03-06] (Silicon Laboratories)
S3 SIUSBXP; C:\WINDOWS\system32\drivers\SiUSBXp.sys [14848 2010-04-30] (Silicon Laboratories)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [84800 2014-09-22] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-03-13] (Microsoft Corporation)
R3 WUDFSensorLP; C:\WINDOWS\System32\drivers\WUDFRd.sys [188416 2014-05-31] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [188416 2014-05-31] (Microsoft Corporation)
S4 avc3; system32\DRIVERS\avc3.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-20 22:52 - 2015-02-20 22:52 - 00014703 _____ () C:\Users\Ronny\Downloads\FRST.txt
2015-02-20 22:51 - 2015-02-20 22:52 - 00000000 ____D () C:\FRST
2015-02-20 22:51 - 2015-02-20 22:51 - 01126400 _____ (Farbar) C:\Users\Ronny\Downloads\FRST.exe
2015-02-20 18:13 - 2015-02-20 18:13 - 00310897 _____ () C:\ProgramData\1424451964.bdinstall.bin
2015-02-20 18:10 - 2015-02-20 18:10 - 00050051 _____ () C:\ProgramData\1424452189.bdinstall.bin
2015-02-20 18:09 - 2015-02-20 18:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 60-Second Virus Scanner
2015-02-20 18:01 - 2015-02-20 18:01 - 00074952 _____ (BitDefender) C:\WINDOWS\system32\Drivers\bdvedisk.sys.upd
2015-02-20 17:54 - 2015-02-20 19:45 - 00114904 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-02-20 17:54 - 2015-02-20 17:54 - 00001078 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-02-20 17:54 - 2015-02-20 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-02-20 17:54 - 2015-02-20 17:54 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-02-20 17:54 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-02-20 17:54 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-02-20 17:54 - 2014-11-21 06:14 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-02-20 17:53 - 2015-02-20 17:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Ronny\Downloads\mbam-setup-2.0.4.1028.exe
2015-02-20 17:32 - 2015-02-20 17:32 - 00000385 _____ () C:\WINDOWS\system32\user_gensett.xml
2015-02-20 17:31 - 2015-02-20 17:31 - 00000299 _____ () C:\WINDOWS\setupact.log
2015-02-20 17:31 - 2015-02-20 17:31 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2015-02-20 17:31 - 2015-02-20 17:31 - 00000000 ____D () C:\ProgramData\BDLogging
2015-02-20 17:31 - 2015-02-20 17:31 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-02-20 17:31 - 2014-12-02 16:37 - 00074000 _____ (BitDefender SRL) C:\WINDOWS\system32\bdsandboxuiskin.dll
2015-02-20 17:31 - 2014-12-02 16:37 - 00066832 _____ (BitDefender SRL) C:\WINDOWS\system32\Drivers\bdsandbox.sys
2015-02-20 17:31 - 2014-12-02 13:37 - 00026624 _____ (BitDefender SRL) C:\WINDOWS\system32\bdsandboxuh.dll
2015-02-20 17:31 - 2014-10-03 20:09 - 00244480 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avchv.sys
2015-02-20 17:31 - 2013-09-08 20:04 - 00019984 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys
2015-02-20 17:31 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\capicom.dll
2015-02-20 17:28 - 2015-02-20 18:10 - 00000000 ____D () C:\ProgramData\Bitdefender
2015-02-20 17:28 - 2015-02-20 18:09 - 00000000 ____D () C:\Program Files\Bitdefender
2015-02-20 17:27 - 2015-02-20 17:27 - 00000000 ____D () C:\Users\Ronny\AppData\Roaming\QuickScan
2015-02-20 17:26 - 2015-02-20 18:09 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2015-02-20 17:25 - 2015-02-20 17:25 - 02867648 _____ () C:\Users\Ronny\Downloads\bitdefender_antivirus.exe
2015-02-13 15:13 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-02-11 17:20 - 2015-01-19 19:36 - 01192552 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2015-02-11 17:20 - 2015-01-13 23:04 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-02-11 17:20 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-02-11 17:20 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-02-11 17:20 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-02-11 17:20 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-02-11 17:20 - 2015-01-12 02:55 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-02-11 17:20 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-02-11 17:20 - 2015-01-12 02:34 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-02-11 17:20 - 2015-01-12 02:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-02-11 17:20 - 2015-01-12 02:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-02-11 17:20 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-02-11 17:20 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-02-11 17:20 - 2015-01-12 02:23 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-02-11 17:20 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-02-11 17:20 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-02-11 17:20 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-02-11 17:20 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-02-11 17:20 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-02-11 17:20 - 2015-01-10 07:38 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-02-11 17:19 - 2015-02-04 00:43 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-02-11 17:19 - 2015-02-04 00:08 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-02-11 17:19 - 2015-02-04 00:08 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-02-11 17:19 - 2015-02-03 00:11 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-02-11 17:19 - 2015-02-03 00:11 - 00766976 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-02-11 17:19 - 2015-02-03 00:11 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-02-11 17:19 - 2015-01-10 08:38 - 03550720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-02-11 17:19 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2015-02-11 17:18 - 2015-01-10 09:28 - 05769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-02-11 17:18 - 2015-01-10 09:28 - 01468408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-02-11 17:17 - 2015-01-15 23:37 - 00478776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-02-11 17:17 - 2015-01-15 23:37 - 00148288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-02-11 17:17 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2015-02-11 17:17 - 2014-12-09 00:11 - 00391526 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-02-11 17:17 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2015-02-11 17:17 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2015-02-11 17:17 - 2014-10-29 02:03 - 01117696 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-02-11 00:06 - 2015-02-11 00:06 - 00030208 _____ () C:\Users\Ronny\Downloads\pcwTreeBuilder.z.exe
2015-02-09 17:51 - 2015-02-20 22:16 - 01559212 _____ () C:\WINDOWS\WindowsUpdate.log
2015-02-08 22:54 - 2015-02-08 22:54 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-01-27 20:58 - 2015-01-27 20:58 - 00001140 _____ () C:\Users\Ronny\Desktop\WinMD5.exe - Verknüpfung.lnk
2015-01-21 19:34 - 2007-04-29 05:12 - 00591872 _____ (www.winmd5.com) C:\Users\Ronny\Downloads\WinMD5.exe
2015-01-21 19:34 - 2007-03-30 06:49 - 00000568 _____ () C:\Users\Ronny\Downloads\Readme.txt
2015-01-21 19:34 - 2007-03-30 06:40 - 00004757 _____ () C:\Users\Ronny\Downloads\License.txt
2015-01-21 19:33 - 2015-01-21 19:33 - 00268376 _____ () C:\Users\Ronny\Downloads\winmd5free.zip
2015-01-21 19:32 - 2015-01-21 19:32 - 01057424 _____ (EFSoftware) C:\Users\Ronny\Downloads\EF_CheckSum_Manager_7.30_CB-DL-Manager [1].exe
2015-01-21 19:29 - 2015-01-21 19:29 - 00823792 _____ ( ) C:\Users\Ronny\Downloads\EF_CheckSum_Manager_7.30_CB-DL-Manager.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-20 22:18 - 2014-10-17 20:03 - 00001124 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-20 22:00 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-02-20 17:32 - 2013-08-22 07:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2015-02-20 17:23 - 2014-10-17 20:03 - 00001120 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-20 17:23 - 2013-08-14 19:01 - 00000000 ___DO () C:\Users\Ronny\SkyDrive
2015-02-20 04:23 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2015-02-19 19:13 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-02-19 00:25 - 2013-11-03 18:41 - 00117760 _____ () C:\Users\Ronny\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-15 17:19 - 2013-03-29 09:57 - 00001551 _____ () C:\Users\Ronny\Desktop\CUG_deu.pdf - Verknüpfung.lnk
2015-02-15 10:13 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\rescache
2015-02-14 23:53 - 2013-11-02 09:53 - 00000000 ____D () C:\Users\Ronny\AppData\Roaming\vlc
2015-02-13 15:16 - 2013-08-22 09:05 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-02-13 15:04 - 2013-11-01 18:28 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-02-13 15:04 - 2013-08-22 08:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-02-13 15:04 - 2013-08-22 08:22 - 00473936 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-02-13 07:15 - 2013-08-22 07:13 - 01310720 ___SH () C:\WINDOWS\system32\config\BBI
2015-02-13 07:14 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\system32\de-DE
2015-02-12 17:44 - 2013-11-15 17:20 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-02-12 17:41 - 2013-11-15 17:20 - 113756392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-02-12 17:39 - 2014-12-10 20:30 - 00000000 ____D () C:\WINDOWS\system32\appraiser
2015-02-12 17:39 - 2014-07-12 12:33 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2015-02-08 22:54 - 2014-10-25 09:09 - 00000000 ____D () C:\Program Files\Java
2015-02-08 22:54 - 2013-11-26 20:22 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-08 22:53 - 2014-10-25 09:09 - 00272296 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2015-02-08 22:53 - 2014-10-25 09:09 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2015-02-08 22:53 - 2014-10-25 09:09 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2015-02-08 22:53 - 2014-10-25 09:09 - 00096680 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2015-02-08 22:53 - 2014-10-25 09:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-03 20:31 - 2014-06-13 06:15 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-02-03 20:31 - 2014-06-13 06:15 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-01-31 22:07 - 2013-09-30 05:08 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-01-29 04:21 - 2013-11-01 18:35 - 00000000 ____D () C:\Users\Ronny

==================== Files in the root of some directories =======

2013-11-03 18:41 - 2015-02-19 00:25 - 0117760 _____ () C:\Users\Ronny\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-04-18 22:20 - 2014-04-18 22:20 - 0007597 _____ () C:\Users\Ronny\AppData\Local\Resmon.ResmonCfg
2014-11-11 17:48 - 2014-11-11 17:53 - 0000000 _____ () C:\Users\Ronny\AppData\Local\{C4DE7E10-A4A8-4175-A632-7EFA7E16A862}
2015-02-20 18:13 - 2015-02-20 18:13 - 0310897 _____ () C:\ProgramData\1424451964.bdinstall.bin
2015-02-20 18:10 - 2015-02-20 18:10 - 0050051 _____ () C:\ProgramData\1424452189.bdinstall.bin
2013-12-03 18:56 - 2013-12-03 18:56 - 0000486 _____ () C:\ProgramData\GRFolder.ini
2013-12-03 18:56 - 2013-12-03 18:56 - 0000028 _____ () C:\ProgramData\GRGames.ini

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-14 02:25

==================== End Of Log ============================

--- --- ---

Addition
Code:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-02-2015 01
Ran by Ronny at 2015-02-20 22:53:11
Running from C:\Users\Ronny\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

2.0 (HKLM\...\Free Video to GIF Converter_is1) (Version: 2.0 - www.video-gif-converter.com)
3GX (HKLM\...\{D0783152-6826-4FA7-93C3-1F0D53FD5460}) (Version: 3.03.2101 - ALIGN)
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
Acala 3GP Movies Free 4.2.7 (HKLM\...\Acala 3GP Movies Free_is1) (Version:  - Acala Software)
Artisan (HKLM\...\Artisan) (Version: 0.6.0.0 - The Artisan Team)
Avidemux 2.5 (HKLM\...\Avidemux 2.5) (Version: 2.5.3.0 - )
Bitdefender 60-Second Virus Scanner (HKLM\...\{CCEA2053-D975-4E38-AC09-4D5E6DAC6B6F}) (Version: 1.0.3.76 - Bitdefender)
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
ClearView (HKLM\...\{A95AF23D-1875-41E7-B684-ECA583126755}) (Version: 5.3.4 - SVKSystems)
DataExplorer (HKLM\...\DataExplorer) (Version: 3.1.7 - )
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1207.101.108 - ALPS ELECTRIC CO., LTD.)
FlashGet(Jetcar) 1.81 (HKLM\...\FlashGet(Jetcar) 1.81) (Version:  - )
Garmin City Navigator Europe NT 2008 (HKLM\...\{EEC8205A-E3DE-4C00-B60C-48E3B9B58B13}) (Version: 10.0.0.0 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin (HKLM\...\{71DBFBF2-F7EB-4268-8485-9471D83C4E66}) (Version: 4.2.0 - Garmin Ltd or its subsidiaries)
GOM Player (HKLM\...\GOM Player) (Version: 2.2.64.5211 - Gretech Corporation)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
HELI-X 5.0 Demo (HKLM\...\B0C9899E-7D17-46E6-9496-8333A1F8C441_is1) (Version:  - Michael Schreiner)
Image Grabber II (HKLM\...\Image Grabber II) (Version:  - )
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.36 - Irfan Skiljan)
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
JLC 7.0.0.6 (HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\b87250e759877692) (Version: 7.0.0.6 - R2Prototyping)
LogView V2 (HKLM\...\LogView V2) (Version: LogView V2 2 - LogView.info - D.Schmidt / H.Hemmecke)
LogView V2 2 (HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\LogView V2 2) (Version: 2 - LogView.info)
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Microsoft Office Professional 2013 - de-de (HKLM\...\ProfessionalRetail - de-de) (Version: 15.0.4675.1003 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\SkyDriveSetup.exe) (Version: 17.0.2003.1112 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
NVIDIA 3D Vision Treiber 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 327.02 - NVIDIA Corporation)
NVIDIA Grafiktreiber 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.02 - NVIDIA Corporation)
NVIDIA nTune (HKLM\...\InstallShield_{7C7F30F4-94E7-4AA8-8941-90C4A80C68BF}) (Version: 1.00.0000 - NVIDIA Corporation)
NVIDIA nView 140.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 140.62 - NVIDIA Corporation)
NVIDIA WMI 2.14.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI) (Version: 2.14.0 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
Pazera Free MOV to AVI Converter 1.6 (HKLM\...\{770103E9-E1C3-48C9-812B-2982C7070575}_is1) (Version: 1.6 - Pazera Jacek)
pdfsam (HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\pdfsam) (Version: 1.1.1 - )
Recuva (HKLM\...\Recuva) (Version: 1.38 - Piriform)
SDFormatter (HKLM\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association)
Shape Collage (HKLM\...\ShapeCollage) (Version:  - Shape Collage Inc.)
Silicon Laboratories CP210x USB to UART Bridge (Driver Removal) (HKLM\...\SLABCOMM&10C4&EA60) (Version:  - )
Silicon Laboratories CP210x VCP Drivers for Windows 2000/XP/2003 Server/Vista (HKLM\...\{1F50FB31-0092-4D78-A85E-F22B2502C40E}) (Version: 5.10 - Silicon Laboratories, Inc.)
SM UniSens-E Tool (HKLM\...\{D35352AE-7C1E-470B-9AAE-A13BAA13841B}) (Version: 1.0.4.1 - SM-Modellbau)
TeamViewer 10 (HKLM\...\TeamViewer) (Version: 10.0.36897 - TeamViewer)
TrueCrypt (HKLM\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation)
TSDoctor (HKLM\...\{83CC8459-F239-4409-896C-17034A70EC5F}) (Version: 1.2.104 - Cypheros)
TsRemux 0.23.2 (HKLM\...\TsRemux_is1) (Version:  - )
Video Converter Packages (HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\Video Converter Packages) (Version:  - ) <==== ATTENTION
VideoConverter (HKLM\...\VideoConverter) (Version: ${VERSION} - )
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
VStabi 5.3.4 (HKLM\...\VStabi 5.3_is1) (Version: 5.3.4 - VStabi Support Center)
WinRAR 5.10 Beta 4 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 5.10.4 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{7B37E4E2-C62F-4914-9620-8FB5062718CC}\localserver32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{AB807329-7324-431B-8B36-DBD581F56E0B}\localserver32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\FileSyncApi.dll (Microsoft Corporation)

==================== Restore Points  =========================

28-01-2015 16:47:40 Windows Update
06-02-2015 20:13:09 Windows Update
12-02-2015 17:39:02 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 07:13 - 2013-08-22 07:13 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {3BA7A4B2-0A3B-4721-AF4B-262B54503210} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX86\OfficeC2RClient.exe [2014-11-04] (Microsoft Corporation)
Task: {8158EF83-886C-46C4-B930-C21A0E8F2416} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-02-12] (Microsoft Corporation)
Task: {8B14EB57-99F7-4A9C-9092-B0D6BF1A1C2F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-17] (Google Inc.)
Task: {B1EA2E5A-E1CB-410C-8589-1273E4203F3F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {C3CB5B0B-1EF3-483B-8888-6CCAD53953CE} - System32\Tasks\Microsoft Office 15 Sync Maintenance for RONNY-PC-Ronny Ronny-PC => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-11-04] (Microsoft Corporation)
Task: {F96634F1-9301-49ED-B0F3-FBDF8DE3D92B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-17] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2014-03-21 07:29 - 2014-05-20 02:11 - 00080040 _____ () C:\Program Files\Microsoft Office 15\ClientX86\ApiClient.dll
2014-06-10 21:05 - 2014-11-15 10:49 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2014-12-12 23:24 - 2014-12-12 23:24 - 00047104 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2015-01-06 11:27 - 2012-09-15 16:05 - 06329392 _____ () H:\05_Tools\torchat-windows-0.9.9.553\bin\torchat.exe
2015-02-20 22:46 - 2015-02-20 22:46 - 00033792 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\win32api.pyd
2015-02-20 22:46 - 2015-02-20 22:46 - 00053248 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\pywintypes27.dll
2015-02-20 22:46 - 2015-02-20 22:46 - 00033280 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\_ctypes.pyd
2015-02-20 22:46 - 2015-02-20 22:46 - 00160256 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\wx._core_.pyd
2015-02-20 22:46 - 2015-02-20 22:46 - 00110080 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\wx._gdi_.pyd
2015-02-20 22:46 - 2015-02-20 22:46 - 00084480 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\wx._windows_.pyd
2015-02-20 22:46 - 2015-02-20 22:46 - 00117760 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\wx._controls_.pyd
2015-02-20 22:46 - 2015-02-20 22:46 - 00095744 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\wx._misc_.pyd
2015-02-20 22:46 - 2015-02-20 22:46 - 00020480 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\_socket.pyd
2015-02-20 22:46 - 2015-02-20 22:46 - 00270336 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\_ssl.pyd
2015-02-20 22:46 - 2015-02-20 22:46 - 00107008 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\_hashlib.pyd
2015-02-20 22:46 - 2015-02-20 22:46 - 00182272 _____ () C:\Users\Ronny\AppData\Local\Temp\_MEI46882\unicodedata.pyd
2015-01-06 11:27 - 2012-09-15 16:05 - 03184654 _____ () H:\05_Tools\torchat-windows-0.9.9.553\bin\Tor\tor.exe

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:69E87FA2
AlternateDataStreams: C:\ProgramData\TEMP:862BDB1A
AlternateDataStreams: C:\Users\Ronny\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\Ronny\Downloads\mbam-setup-2.0.4.1028.exe:BDU

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2443804570-283508326-906284146-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 192.168.178.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\StartupApproved\StartupFolder: => "Hardcopy.LNK"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk"

==================== Accounts: =============================

Administrator (S-1-5-21-2443804570-283508326-906284146-500 - Administrator - Disabled)
Gast (S-1-5-21-2443804570-283508326-906284146-501 - Limited - Disabled)
Ronny (S-1-5-21-2443804570-283508326-906284146-1000 - Administrator - Enabled) => C:\Users\Ronny

==================== Faulty Device Manager Devices =============

Name: Broadcom USH
Description: Broadcom USH
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (02/20/2015 04:24:50 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/20/2015 04:24:50 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/20/2015 04:24:50 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/19/2015 10:29:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm backgroundTaskHost.exe, Version 6.3.9600.16384 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: f40

Startzeit: 01d04c8a511414f8

Endzeit: 4294967295

Anwendungspfad: C:\WINDOWS\system32\backgroundTaskHost.exe

Berichts-ID: 48ea367e-b87e-11e4-98e4-002170b871a4

Vollständiger Name des fehlerhaften Pakets: 12199Asparion.AsparionClock_3.5.1.53_neutral__f89vgcf3qm37t

Anwendungs-ID, die relativ zum fehlerhaften Paket ist: App

Error: (02/19/2015 06:49:11 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/19/2015 06:49:11 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/19/2015 06:49:11 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/19/2015 06:46:30 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/19/2015 06:46:30 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/19/2015 06:46:30 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".


System errors:
=============
Error: (02/20/2015 06:06:48 PM) (Source: Service Control Manager) (EventID: 7006) (User: )
Description: Der Aufruf "ScRegSetValueExW" ist für "DeleteFlag" aufgrund folgenden Fehlers fehlgeschlagen:
%%5

Error: (02/20/2015 05:03:51 PM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0

Error: (02/20/2015 06:14:10 AM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252.

Error: (02/20/2015 05:12:59 AM) (Source: disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.

Error: (02/20/2015 03:32:19 AM) (Source: disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.

Error: (02/19/2015 07:18:07 PM) (Source: disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.

Error: (02/19/2015 05:54:07 PM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0

Error: (02/19/2015 06:10:52 AM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0

Error: (02/18/2015 05:15:46 PM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0

Error: (02/18/2015 05:14:30 AM) (Source: disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.


Microsoft Office Sessions:
=========================
Error: (02/20/2015 04:24:50 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvcplUIR.dll

Error: (02/20/2015 04:24:50 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvExpBar.dll

Error: (02/20/2015 04:24:50 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvCplUI.exe

Error: (02/19/2015 10:29:41 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: backgroundTaskHost.exe6.3.9600.16384f4001d04c8a511414f84294967295C:\WINDOWS\system32\backgroundTaskHost.exe48ea367e-b87e-11e4-98e4-002170b871a412199Asparion.AsparionClock_3.5.1.53_neutral__f89vgcf3qm37tApp

Error: (02/19/2015 06:49:11 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvcplUIR.dll

Error: (02/19/2015 06:49:11 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvExpBar.dll

Error: (02/19/2015 06:49:11 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvCplUI.exe

Error: (02/19/2015 06:46:30 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvcplUIR.dll

Error: (02/19/2015 06:46:30 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvExpBar.dll

Error: (02/19/2015 06:46:30 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvCplUI.exe


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU T9400 @ 2.53GHz
Percentage of memory in use: 37%
Total physical RAM: 3571.9 MB
Available physical RAM: 2220.82 MB
Total Pagefile: 4211.9 MB
Available Pagefile: 2592.91 MB
Total Virtual: 2047.88 MB
Available Virtual: 1862.3 MB

==================== Drives ================================

Drive c: (System) (Fixed) (Total:61.03 GB) (Free:17.13 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (Daten) (Fixed) (Total:87.89 GB) (Free:55.4 GB) NTFS
Drive h: () (Fixed) (Total:1397.23 GB) (Free:350.8 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 149.1 GB) (Disk ID: D8000000)
Partition 1: (Not Active) - (Size=133 MB) - (Type=DE)
Partition 2: (Active) - (Size=61 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=87.9 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 1397.2 GB) (Disk ID: A25D172F)
Partition 1: (Not Active) - (Size=1397.2 GB) - (Type=07 NTFS)

==================== End Of Log ============================


schrauber 21.02.2015 14:14

Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:

    Video Converter Packages



  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 






Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.

RonnysPC 21.02.2015 14:39

Liste der Anhänge anzeigen (Anzahl: 1)
Hallo Schrauber,
der Uninstaller meldet folgendes Problem beim Deinstallieren des Programmes
Video Converter Packages

RonnysPC 21.02.2015 14:44

Liste der Anhänge anzeigen (Anzahl: 1)
nach dem "Weiter"-Klicken komme ich zu diesem Fenster, eh ich etwas falsch mache, poste ich dieses erst einmal:

RonnysPC 21.02.2015 17:30

MBAM.txt
 
Anbei das Ergebnis des Malwarebytes-Bedrohungssuchlaufes

RonnysPC 21.02.2015 17:47

Hier die Datei AdwCleaner[S2].txt

RonnysPC 21.02.2015 18:06

JRT.txt und "frische" FRST.txt anbei

felix1 21.02.2015 19:45

Mich mal kurz einmische, nicht was die Bereinigung angeht, die mach der Schrauber schon gut:applaus:
Könnte es sein, dass die Schädlinge von den unbekannten Geräten gekommen sein könnten.
Zu Deiner Sicherheit solltest Du auch mal das Obst überprüfen. Dort sind zwar Infektionen relativ selten, aber auch nicht ausgeschlossen.
Weiterhin rate ich Dir, mal regelmäßig auf die vorhandenen Geräte im Router zu sehen. Wie die bei einer ordentlichen Verschlüsselung sich bei Dir einwählen konnten, ist mir ein Rätsel.

RonnysPC 21.02.2015 21:46

Liste der Anhänge anzeigen (Anzahl: 2)
Hallo feflix1,
Zitat:

Zitat von felix1 (Beitrag 1430698)
...Könnte es sein, dass die Schädlinge von den unbekannten Geräten gekommen sein könnten.

die Gastzugänge, 1 MacBook, 1 Win 8.1 Notebook und evt. weitere Apple IPhones 4, 5 des MacBook-Besitzers werden nicht eben von Benutzern betreut, die viel Wert auf Computersicherheit und Virenfreiheit legen. Die angehängte Malwarebytes-Grafik zeigt das Ergebnis des heutigen Suchlaufes auf dem Win 8.1. Notebook auf mein Anraten hin. Kann über das Gefährdungspotenzial des "Eindringlings" jedoch keine Aussage machen.
Zitat:

Zitat von felix1 (Beitrag 1430698)
Zu Deiner Sicherheit solltest Du auch mal das Obst überprüfen. Dort sind zwar Infektionen relativ selten, aber auch nicht ausgeschlossen.

meine beiden Äpfel (IPhone 5 und IPad 3 mit jeweils aktuellem OS 8.1.3) werde ich prüfen.
Zitat:

Zitat von felix1 (Beitrag 1430698)
Weiterhin rate ich Dir, mal regelmäßig auf die vorhandenen Geräte im Router zu sehen. Wie die bei einer ordentlichen Verschlüsselung sich bei Dir einwählen konnten, ist mir ein Rätsel.

Direkt unter meinem 3 Geräten, dem Notebook und IPad, IPhone hingen 6 Rechner mit den oben beschriebenen "kryptischen" Bezeichnungen und einem PC vornangestellt. Darunter dann die Rechner, denen ich einen Gastzugang (ebenfalls WPA2 verschlüsselt) eingerichtet hatte. Bislang hatte ich (offensichtlich sehr naiv) keinen Blick auf die im WLAN befindlichen Geräte geworfen. Skeptisch bin ich erst geworden, als ich den Brief der Deutschen Telekom geöffnet und gelesen hatte. Leider keinen Screenshot von der Fritzbox mit den unerwünschten Gästen gemacht. Vielmehr habe ich auch dann erst die Option "nur bekannten Geräten WLAN-Zugang erlauben" in der Fritz!Box gewählt. Ich lasse mal meine Mutmaßungen über ein mögliches Einfallstor weg, da ich davon keine Ahnung habe.

felix1 21.02.2015 22:25

Zitat:

Zitat von RonnysPC (Beitrag 1430759)
6 Rechner mit den oben beschriebenen "kryptischen" Bezeichnungen und einem PC vornangestellt.

Diese Bzeichnung vergibt der DHCP-Server der Fritzen, an Rechner, sobald sie die Autehentifizierung überstanden haben. Also ein gültiges Passwort hatten. Warum auch immer. Dass kannst nur Du beantworten.
Siehe auch PM

schrauber 22.02.2015 09:21

Hi,

Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen.
Ich kann auf Arbeit keine Anhänge öffnen, danke.

So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
http://www.trojaner-board.de/picture...&pictureid=307




ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme? :)

Und den Router würde ich einfach mal auf Werksenstellungen zurücksetzen.

RonnysPC 22.02.2015 11:25

log.txt
Code:

ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=dfa5b87e204f7042aaeb67744ca07a61
# engine=22587
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-02-22 09:57:01
# local_time=2015-02-22 10:57:01 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 29449 14903331 0 0
# scanned=184730
# found=51
# cleaned=0
# scan_time=4612
sh=6F3A3B433459E6773C9FBE8CFB154DB6534EFA86 ft=1 fh=60bff0ff01dbe663 vn="Variante von Win32/InstallCore.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files\VideoConverter\VideoConverter.exe.vir"
sh=ED65C41C73ACB12239FD4D68F84057F6B0CBB9B6 ft=1 fh=a6514df833bf49fb vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\lrrot.dll.vir"
sh=ACBE58D6D92A2CA08436016FC557AE8A624D5348 ft=1 fh=5a75b1409dbb2f5a vn="Variante von MSIL/Toolbar.Linkury.M.gen evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\Smartbar.Monetization.Proxy.ProxyService.dll.vir"
sh=8CE050971B99FA7810D9B01B72062C522E10505C ft=1 fh=9c2b38b4d477e173 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\Smartbar.Resources.HistoryAndStatsWrapper.dll.vir"
sh=49B44A57605BB86188BC4462AD5C2F7475917639 ft=1 fh=05ee54c9c3173dea vn="Variante von MSIL/Toolbar.Linkury.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\sppsm.dll.vir"
sh=80CAFBFBE2CA34EBDD2315EFE7429179B0C6AD35 ft=1 fh=90543bd945ae265b vn="Variante von MSIL/Toolbar.Linkury.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\spusm.dll.vir"
sh=4BF384E514CA7D79B9B45D9F406B80C35D6EB9A0 ft=1 fh=59da264755303e03 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\srbs.dll.vir"
sh=CB59DFB167BFCCFFB83183FD3FA898034E1AB63A ft=1 fh=96385afa5fe0d75b vn="Variante von MSIL/Toolbar.Linkury.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\srbu.dll.vir"
sh=A32D62E892843C05A0E1A36D978A9F3DD48846F5 ft=1 fh=c1a83d881ca4488b vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\srpt.dll.vir"
sh=D93B42CCC57AE1859A4685A809D411EEE26BE0C6 ft=1 fh=75f2c7ee1c9b32f1 vn="Variante von MSIL/Toolbar.Linkury.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\srptc.dll.vir"
sh=8B5AA8AC3D8FC9F99B7BF83D6DCEFDD2BFF089BE ft=1 fh=e3345957ccca0c87 vn="Variante von Win32/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\Resources\ntdis_32.dll.vir"
sh=104B1C8C21DC480E1D0C7BC010F76FB635FF85AA ft=1 fh=924eccf4bdcb3f50 vn="Variante von Win64/Toolbar.Linkury.A.gen evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\LPT\Resources\ntdis_64.dll.vir"
sh=ED65C41C73ACB12239FD4D68F84057F6B0CBB9B6 ft=1 fh=a6514df833bf49fb vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\lrrot.dll.vir"
sh=391D034C6EF23E9C15706CEE2245169F53B0B660 ft=1 fh=873707a588ca8511 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\Smartbar.GUI.Controls.dll.vir"
sh=5AB8DBD05DE709B9FFB25056C2734F02E37B27A8 ft=1 fh=7c4fbf427ba381f6 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Core.dll.vir"
sh=DF8FF9DE611EF7B2ADB82BCA8556C03CECDA8453 ft=1 fh=a28e7dac480f5332 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Plugins.ChromeLocalPlugin.dll.vir"
sh=6C56507F34C71F12A7F92D91760BC9F140480830 ft=1 fh=7e361336dcc7e3c9 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Plugins.FireFoxLocalPlugin.dll.vir"
sh=D712B73602CC489616FAC4ECD8DA8EC2B9CF9496 ft=1 fh=dd4cedfed51f1d18 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Plugins.InternetExplorerLocalPlugin.dll.vir"
sh=ACBE58D6D92A2CA08436016FC557AE8A624D5348 ft=1 fh=5a75b1409dbb2f5a vn="Variante von MSIL/Toolbar.Linkury.M.gen evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\Smartbar.Monetization.Proxy.ProxyService.dll.vir"
sh=8CE050971B99FA7810D9B01B72062C522E10505C ft=1 fh=9c2b38b4d477e173 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\Smartbar.Resources.HistoryAndStatsWrapper.dll.vir"
sh=06E4DFA138D6522C404B5AB0ECDCC2E21703B92C ft=1 fh=cfd402a2bd0317b0 vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\SmartbarInternetExplorerBHO.dll.vir"
sh=06E4DFA138D6522C404B5AB0ECDCC2E21703B92C ft=1 fh=cfd402a2bd0317b0 vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\SmartbarInternetExplorerBHO2.dll.vir"
sh=998764836CBC3560F793ADE9A7C3C1405D00BEC6 ft=1 fh=bbe0ad0db99c4fb6 vn="Variante von MSIL/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\SmartbarInternetExplorerExtension.dll.vir"
sh=998764836CBC3560F793ADE9A7C3C1405D00BEC6 ft=1 fh=bbe0ad0db99c4fb6 vn="Variante von MSIL/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\SmartbarInternetExplorerExtension2.dll.vir"
sh=20FCD65403A550E6A185927FEA34B4ECC434D9F6 ft=1 fh=e800e4f6819a5c0a vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\smta.dll.vir"
sh=E2AD662A4073D06733B8E0C72F8DDCCF5C1562D4 ft=1 fh=58e3eb413d4c6de1 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\smtu.dll.vir"
sh=A39508C8AC3135702D10F7A7E0953F5EF163288B ft=1 fh=fceedcdafd969011 vn="Variante von MSIL/Toolbar.Linkury.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\SnapDo.exe.vir"
sh=D854B083293E9B50B6375FA7FCBD124A3CDC7A59 ft=1 fh=eeaec87c62b5c22d vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\spbe.dll.vir"
sh=FDF6D15982D2747CE3D8EDBEC8F04C61E5524EF1 ft=1 fh=d803b32229b0bebd vn="Variante von MSIL/Toolbar.Linkury.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\spbl.dll.vir"
sh=49B44A57605BB86188BC4462AD5C2F7475917639 ft=1 fh=05ee54c9c3173dea vn="Variante von MSIL/Toolbar.Linkury.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\sppsm.dll.vir"
sh=80CAFBFBE2CA34EBDD2315EFE7429179B0C6AD35 ft=1 fh=90543bd945ae265b vn="Variante von MSIL/Toolbar.Linkury.G evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\spusm.dll.vir"
sh=C95073A2BB4BF29801DA47772D50F4EC110FB9F7 ft=1 fh=fce07d86c47f786e vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\srau.dll.vir"
sh=4BF384E514CA7D79B9B45D9F406B80C35D6EB9A0 ft=1 fh=59da264755303e03 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\srbs.dll.vir"
sh=CB59DFB167BFCCFFB83183FD3FA898034E1AB63A ft=1 fh=96385afa5fe0d75b vn="Variante von MSIL/Toolbar.Linkury.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\srbu.dll.vir"
sh=C79099DE5503D08CA1C5E6A0309172487C5A5D6A ft=1 fh=ca48d55b7c1876a9 vn="Variante von MSIL/Toolbar.Linkury.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\srpu.dll.vir"
sh=D8526969FF65DF7B7BF3276BE3DFF9E62B68AF49 ft=1 fh=db26de03d3a27910 vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\GoogleChromeRemotePlugin.dll.vir"
sh=561249B34D97B2B2BC46BCD6123F67137BE6E30F ft=1 fh=958ee95189059e15 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_25.dll.vir"
sh=C4572103452CB2E459912D1C5F12F59066A50FA9 ft=1 fh=d0c221068451f4c6 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_26.dll.vir"
sh=8AF0B8395CA2B561C93D4704838FD4549F6D59DB ft=1 fh=7c4e70a6fcfc43b7 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_27.dll.vir"
sh=2B6CFCD7C81463D2544FDE96AD85BF6AA873379D ft=1 fh=6950e4890066eaa5 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_28.dll.vir"
sh=6EB1CCC67427C21F93B928D2FFDFD38C13637D68 ft=1 fh=34833efd3fe0ff41 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_29.dll.vir"
sh=C9A7CA3C06A8BD159C76E82BE3C0129DFAF370E2 ft=1 fh=c647e824ec6e2f74 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_30.dll.vir"
sh=31CE21FE36C11E107A6E315EFE1875743809B4CC ft=1 fh=48abcfa6ce4a4014 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Local\Temp\OCS\ocs_v71b.exe.vir"
sh=2DAAB83B0439BC76845E58F3F7DDB84EE8E210C4 ft=1 fh=855a37aa5dbeb36f vn="Win32/InstallCore.PC evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Roaming\1H1Q\Video Converter Packages\uninstaller.exe.vir"
sh=B563BEC7EC0608AB8EBC51C5E228C9270DAC0A09 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Ronny\AppData\Roaming\Mozilla\Firefox\Profiles\gy1zzbbj.default\Extensions\39ed7c16-185d-4f88-b976-666d4928ba01@fe4550c1-7a4f-4a62-ad1c-45e0afdf81a4.com\extensionData\plugins\91.js.vir"
sh=CBCC1E6CB927BD3952159335198197F8F67536B6 ft=1 fh=bb7c8298b4ec4cef vn="Variante von Win32/MaxPCsecure evtl. unerwünschte Anwendung" ac=I fn="C:\Desktop\20130110\Maxspywaredetector.exe"
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L evtl. unerwünschte Anwendung" ac=I fn="C:\ProgramData\InstallMate\{DDF029A7-698C-4969-AB82-21AE06130B51}\Custom.dll"
sh=49D8EF6835A6DE734EAD4E0B2CBBC65735CD5C17 ft=1 fh=b7c2cf7d50fb560b vn="Win32/InstalleRex.L evtl. unerwünschte Anwendung" ac=I fn="C:\Users\All Users\InstallMate\{DDF029A7-698C-4969-AB82-21AE06130B51}\Custom.dll"
sh=C06F101D9B9F237C6AB6CDAECC7C7B604EAADE39 ft=1 fh=de54c1317f028c4f vn="Variante von Win32/InstallCore.UF evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Ronny\Downloads\EF_CheckSum_Manager_7.30_CB-DL-Manager.exe"
sh=CBCC1E6CB927BD3952159335198197F8F67536B6 ft=1 fh=bb7c8298b4ec4cef vn="Variante von Win32/MaxPCsecure evtl. unerwünschte Anwendung" ac=I fn="D:\Eigene Dateien\Privat\PC\Desktop\20130110\Maxspywaredetector.exe"
sh=CBCC1E6CB927BD3952159335198197F8F67536B6 ft=1 fh=bb7c8298b4ec4cef vn="Variante von Win32/MaxPCsecure evtl. unerwünschte Anwendung" ac=I fn="D:\Eigene Dateien\Privat\PC\Desktop\20130119\Maxspywaredetector.exe"

checkup.txt
Code:

Results of screen317's Security Check version 0.99.96 
  x86 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
Windows Defender 
 WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
 Spybot - Search & Destroy
 CCleaner   
 Java 8 Update 31 
 Java version 32-bit out of Date!
  Java 64-bit 8 Update 31 
````````Process Check: objlist.exe by Laurent```````` 
 Windows Defender MSMpEng.exe
 Spybot Teatimer.exe is disabled!
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:: 
````````````````````End of Log``````````````````````

FRST.txt

FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-02-2015 01
Ran by Ronny (administrator) on RONNY-PC on 22-02-2015 11:04:02
Running from C:\Users\Ronny\Downloads
Loaded Profiles: Ronny (Available profiles: Ronny)
Platform: Microsoft Windows 8.1 Pro (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvwmi.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\stacsv.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\AEstSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\officeclicktorun.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(NVIDIA) C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.26.9\GoogleCrashHandler.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvwmi.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\msosync.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
() C:\Users\Ronny\Desktop\SecurityCheck.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x86__8wekyb3d8bbwe\livecomm.exe
(Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\ThumbnailExtractionHost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [488816 2011-01-04] (Alps Electric Co., Ltd.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray.exe [442467 2008-07-02] (IDT, Inc.)
HKLM\...\Run: [InstallerLauncher] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-41 (the data entry has 36 more characters).
HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\Run: [NVIDIA nTune] => C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe [81920 2007-09-04] (NVIDIA)
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5489944 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\Run: [pdiface] => C:\Program Files\Bitdefender\60-Second Virus Scanner\pdiface.exe -noshow
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {1d3e3d2c-cd3f-11e3-97b3-002170b871a4} - "H:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {1eb9c41c-b727-11e3-9781-002170b871a4} - "G:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {22b84248-fdb2-11e3-97c9-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {2bc07355-770a-11e3-975a-002170b871a4} - "G:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {3409f44f-4bd0-11e3-971b-0016eae408aa} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {490eee48-4e0d-11e3-971c-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {58c8f203-4885-11e3-971a-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {58c908b1-4885-11e3-971a-002170b871a4} - "I:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {63388ec2-4fbc-11e3-971d-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {65e3ac35-f353-11e3-97c8-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {7b5a52d6-7719-11e3-975b-0016eae408aa} - "I:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {94c98766-431a-11e3-9716-806e6f6e6963} - "E:\Setup.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {9b8a2d68-4332-11e3-9718-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {9b8a2f2a-4332-11e3-9718-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {a9b7a72a-c188-11e3-9797-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {cd9925b5-155c-11e4-97d6-002170b871a4} - "H:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {cd992936-155c-11e4-97d6-002170b871a4} - "H:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {da0b8075-cb2a-11e3-97af-002170b871a4} - "F:\AutoRun.exe"
Startup: C:\Users\Ronny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\S-1-5-21-2443804570-283508326-906284146-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2443804570-283508326-906284146-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/
HKU\S-1-5-21-2443804570-283508326-906284146-1000\Software\Microsoft\Internet Explorer\Main,DisableRequiresActiveXPrompt = www.wdr.de
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKU\S-1-5-21-2443804570-283508326-906284146-1000 -> No Name - {41524553-2D53-5000-76A7-7A786E7484D7} -  No File
Toolbar: HKU\S-1-5-21-2443804570-283508326-906284146-1000 -> No Name - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -  No File
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Ronny\AppData\Roaming\Mozilla\Firefox\Profiles\gy1zzbbj.default
FF DefaultSearchEngine: Bing
FF SelectedSearchEngine: Bing
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Extension: Garmin Communicator - C:\Users\Ronny\AppData\Roaming\Mozilla\Firefox\Profiles\gy1zzbbj.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} [2014-10-17]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AESTFilters; C:\WINDOWS\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\aestsrv.exe [77824 2008-06-27] (Andrea Electronics Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [1840304 2015-01-13] (Microsoft Corporation)
S2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
R2 nTuneService; C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe [131072 2007-09-04] (NVIDIA) [File not signed]
R2 NVWMI; C:\WINDOWS\system32\nvwmi.exe [1027872 2013-09-05] (NVIDIA Corporation)
S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation)
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 STacSV; C:\WINDOWS\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\STacSV.exe [221273 2008-07-02] (IDT, Inc.)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [288128 2014-09-22] (Microsoft Corporation)
S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22192 2014-09-22] (Microsoft Corporation)
S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1222144 2014-07-24] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 acpials; C:\WINDOWS\system32\DRIVERS\acpials.sys [7680 2013-09-30] (Microsoft Corporation)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-02-22] (Microsoft Corporation)
S3 FTDIBUS; C:\WINDOWS\system32\drivers\ftdibus.sys [63464 2013-02-13] (FTDI Ltd.)
S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation)
S3 huawei_cdcacm; C:\WINDOWS\system32\DRIVERS\ew_jucdcacm.sys [90368 2011-02-25] (Huawei Technologies Co., Ltd.)
S3 huawei_cdcecm; C:\WINDOWS\system32\DRIVERS\ew_jucdcecm.sys [64384 2011-01-30] (Huawei Technologies Co., Ltd.)
S3 huawei_ext_ctrl; C:\WINDOWS\System32\drivers\ew_juextctrl.sys [26624 2011-01-30] (Huawei Technologies Co., Ltd.)
S3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [23256 2014-11-21] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [51928 2014-11-21] (Malwarebytes Corporation)
R3 NETwNs32; C:\WINDOWS\system32\DRIVERS\NETwNs32.sys [7518208 2013-06-18] (Intel Corporation)
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [29696 2007-09-04] (NVidia Corp.) [File not signed]
R3 SensorsAlsDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [188416 2014-05-31] (Microsoft Corporation)
S3 silabenm; C:\WINDOWS\system32\DRIVERS\silabenm.sys [47176 2013-03-06] (Silicon Laboratories)
S3 silabser; C:\WINDOWS\system32\DRIVERS\silabser.sys [63104 2013-03-06] (Silicon Laboratories)
S3 SIUSBXP; C:\WINDOWS\system32\drivers\SiUSBXp.sys [14848 2010-04-30] (Silicon Laboratories)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [84800 2014-09-22] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-03-13] (Microsoft Corporation)
R3 WUDFSensorLP; C:\WINDOWS\System32\drivers\WUDFRd.sys [188416 2014-05-31] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [188416 2014-05-31] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-22 11:00 - 2015-02-22 11:00 - 00852594 _____ () C:\Users\Ronny\Desktop\SecurityCheck.exe
2015-02-22 09:37 - 2015-02-22 09:37 - 02347384 _____ (ESET) C:\Users\Ronny\Desktop\esetsmartinstaller_deu.exe
2015-02-22 09:37 - 2015-02-22 09:37 - 00000000 ____D () C:\Program Files\ESET
2015-02-21 21:38 - 2015-02-21 21:38 - 00005342 _____ () C:\WINDOWS\system32\PerfStringBackup.TMP
2015-02-21 17:57 - 2015-02-21 17:57 - 00029051 _____ () C:\Users\Ronny\Downloads\FRST_20150221_1757.txt
2015-02-21 17:51 - 2015-02-21 17:51 - 00000833 _____ () C:\Users\Ronny\Desktop\JRT.txt
2015-02-21 17:49 - 2015-02-21 17:49 - 01388274 _____ (Thisisu) C:\Users\Ronny\Downloads\JRT (1).exe
2015-02-21 17:31 - 2015-02-21 17:31 - 02126848 _____ () C:\Users\Ronny\Downloads\AdwCleaner_4.111.exe
2015-02-21 14:31 - 2015-02-21 14:31 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Ronny\Downloads\revosetup95.exe
2015-02-21 14:31 - 2015-02-21 14:31 - 00001244 _____ () C:\Users\Ronny\Desktop\Revo Uninstaller.lnk
2015-02-21 14:31 - 2015-02-21 14:31 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-02-21 13:46 - 2015-02-21 14:27 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2015-02-21 13:46 - 2015-02-21 13:47 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2015-02-21 13:46 - 2015-02-21 13:46 - 00002149 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2015-02-21 13:46 - 2015-02-21 13:46 - 00002137 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2015-02-21 13:46 - 2015-02-21 13:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2015-02-21 13:46 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean.exe
2015-02-21 13:44 - 2015-02-21 13:45 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Ronny\Downloads\spybot-2.4.exe
2015-02-21 12:06 - 2015-02-21 12:06 - 00381752 _____ () C:\WINDOWS\Minidump\022115-40031-01.dmp
2015-02-21 12:06 - 2015-02-21 12:06 - 00017500 _____ () C:\WINDOWS\PFRO.log
2015-02-21 11:15 - 2015-02-21 11:15 - 00032616 _____ () C:\ProgramData\1424513664.bdinstall.bin
2015-02-20 22:53 - 2015-02-20 22:54 - 00026860 _____ () C:\Users\Ronny\Downloads\Addition.txt
2015-02-20 22:52 - 2015-02-22 11:04 - 00015151 _____ () C:\Users\Ronny\Downloads\FRST.txt
2015-02-20 22:51 - 2015-02-22 11:04 - 00000000 ____D () C:\FRST
2015-02-20 22:51 - 2015-02-20 22:51 - 01126400 _____ (Farbar) C:\Users\Ronny\Downloads\FRST.exe
2015-02-20 18:13 - 2015-02-20 18:13 - 00310897 _____ () C:\ProgramData\1424451964.bdinstall.bin
2015-02-20 18:10 - 2015-02-20 18:10 - 00050051 _____ () C:\ProgramData\1424452189.bdinstall.bin
2015-02-20 17:54 - 2015-02-21 17:46 - 00114904 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-02-20 17:54 - 2015-02-20 17:54 - 00001078 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-02-20 17:54 - 2015-02-20 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-02-20 17:54 - 2015-02-20 17:54 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-02-20 17:54 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-02-20 17:54 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-02-20 17:54 - 2014-11-21 06:14 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-02-20 17:53 - 2015-02-20 17:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Ronny\Downloads\mbam-setup-2.0.4.1028.exe
2015-02-20 17:32 - 2015-02-20 17:32 - 00000385 _____ () C:\WINDOWS\system32\user_gensett.xml
2015-02-20 17:31 - 2015-02-21 17:39 - 00001326 _____ () C:\WINDOWS\setupact.log
2015-02-20 17:31 - 2015-02-20 17:31 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2015-02-20 17:31 - 2015-02-20 17:31 - 00000000 ____D () C:\ProgramData\BDLogging
2015-02-20 17:31 - 2015-02-20 17:31 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-02-20 17:31 - 2014-12-02 16:37 - 00074000 _____ (BitDefender SRL) C:\WINDOWS\system32\bdsandboxuiskin.dll
2015-02-20 17:31 - 2014-12-02 13:37 - 00026624 _____ (BitDefender SRL) C:\WINDOWS\system32\bdsandboxuh.dll
2015-02-20 17:31 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\capicom.dll
2015-02-20 17:28 - 2015-02-21 12:06 - 00000000 ____D () C:\Program Files\Bitdefender
2015-02-20 17:28 - 2015-02-20 18:10 - 00000000 ____D () C:\ProgramData\Bitdefender
2015-02-20 17:27 - 2015-02-20 17:27 - 00000000 ____D () C:\Users\Ronny\AppData\Roaming\QuickScan
2015-02-20 17:26 - 2015-02-20 18:09 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2015-02-20 17:25 - 2015-02-20 17:25 - 02867648 _____ () C:\Users\Ronny\Downloads\bitdefender_antivirus.exe
2015-02-13 15:13 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-02-11 17:20 - 2015-01-19 19:36 - 01192552 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2015-02-11 17:20 - 2015-01-13 23:04 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-02-11 17:20 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-02-11 17:20 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-02-11 17:20 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-02-11 17:20 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-02-11 17:20 - 2015-01-12 02:55 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-02-11 17:20 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-02-11 17:20 - 2015-01-12 02:34 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-02-11 17:20 - 2015-01-12 02:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-02-11 17:20 - 2015-01-12 02:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-02-11 17:20 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-02-11 17:20 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-02-11 17:20 - 2015-01-12 02:23 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-02-11 17:20 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-02-11 17:20 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-02-11 17:20 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-02-11 17:20 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-02-11 17:20 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-02-11 17:20 - 2015-01-10 07:38 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-02-11 17:19 - 2015-02-04 00:43 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-02-11 17:19 - 2015-02-04 00:08 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-02-11 17:19 - 2015-02-04 00:08 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-02-11 17:19 - 2015-02-03 00:11 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-02-11 17:19 - 2015-02-03 00:11 - 00766976 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-02-11 17:19 - 2015-02-03 00:11 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-02-11 17:19 - 2015-01-10 08:38 - 03550720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-02-11 17:19 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2015-02-11 17:18 - 2015-01-10 09:28 - 05769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-02-11 17:18 - 2015-01-10 09:28 - 01468408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-02-11 17:17 - 2015-01-15 23:37 - 00478776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-02-11 17:17 - 2015-01-15 23:37 - 00148288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-02-11 17:17 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2015-02-11 17:17 - 2014-12-09 00:11 - 00391526 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-02-11 17:17 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2015-02-11 17:17 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2015-02-11 17:17 - 2014-10-29 02:03 - 01117696 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-02-11 00:06 - 2015-02-11 00:06 - 00030208 _____ () C:\Users\Ronny\Downloads\pcwTreeBuilder.z.exe
2015-02-09 17:51 - 2015-02-22 10:03 - 01960706 _____ () C:\WINDOWS\WindowsUpdate.log
2015-02-08 22:54 - 2015-02-08 22:54 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-01-27 20:58 - 2015-01-27 20:58 - 00001140 _____ () C:\Users\Ronny\Desktop\WinMD5.exe - Verknüpfung.lnk

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-22 10:18 - 2014-10-17 20:03 - 00001124 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-22 10:00 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-02-22 09:30 - 2013-08-14 19:01 - 00000000 __RDO () C:\Users\Ronny\SkyDrive
2015-02-22 09:29 - 2014-10-17 20:03 - 00001120 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-22 09:29 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2015-02-21 21:06 - 2013-09-30 05:08 - 01806364 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-21 17:40 - 2013-08-22 08:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-02-21 17:39 - 2013-11-01 18:28 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-02-21 17:39 - 2013-08-22 07:13 - 01310720 ___SH () C:\WINDOWS\system32\config\BBI
2015-02-21 17:38 - 2014-05-23 21:08 - 00000000 ____D () C:\AdwCleaner
2015-02-21 12:06 - 2014-02-13 18:43 - 00000000 ____D () C:\WINDOWS\Minidump
2015-02-21 12:06 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\ELAMBKUP
2015-02-21 11:16 - 2013-12-25 03:49 - 00000000 ____D () C:\Program Files\Image Grabber II
2015-02-21 09:01 - 2013-11-01 21:28 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2015-02-20 17:32 - 2013-08-22 07:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2015-02-19 19:13 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-02-19 00:25 - 2013-11-03 18:41 - 00117760 _____ () C:\Users\Ronny\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-15 17:19 - 2013-03-29 09:57 - 00001551 _____ () C:\Users\Ronny\Desktop\CUG_deu.pdf - Verknüpfung.lnk
2015-02-15 10:13 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\rescache
2015-02-14 23:53 - 2013-11-02 09:53 - 00000000 ____D () C:\Users\Ronny\AppData\Roaming\vlc
2015-02-13 15:16 - 2013-08-22 09:05 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-02-13 15:04 - 2013-08-22 08:22 - 00473936 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-02-13 07:14 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\system32\de-DE
2015-02-12 17:44 - 2013-11-15 17:20 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-02-12 17:41 - 2013-11-15 17:20 - 113756392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-02-12 17:39 - 2014-12-10 20:30 - 00000000 ____D () C:\WINDOWS\system32\appraiser
2015-02-12 17:39 - 2014-07-12 12:33 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2015-02-08 22:54 - 2014-10-25 09:09 - 00000000 ____D () C:\Program Files\Java
2015-02-08 22:54 - 2013-11-26 20:22 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-08 22:53 - 2014-10-25 09:09 - 00272296 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2015-02-08 22:53 - 2014-10-25 09:09 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2015-02-08 22:53 - 2014-10-25 09:09 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2015-02-08 22:53 - 2014-10-25 09:09 - 00096680 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2015-02-08 22:53 - 2014-10-25 09:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-03 20:31 - 2014-06-13 06:15 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-02-03 20:31 - 2014-06-13 06:15 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-01-29 04:21 - 2013-11-01 18:35 - 00000000 ____D () C:\Users\Ronny

==================== Files in the root of some directories =======

2013-11-03 18:41 - 2015-02-19 00:25 - 0117760 _____ () C:\Users\Ronny\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-04-18 22:20 - 2014-04-18 22:20 - 0007597 _____ () C:\Users\Ronny\AppData\Local\Resmon.ResmonCfg
2014-11-11 17:48 - 2014-11-11 17:53 - 0000000 _____ () C:\Users\Ronny\AppData\Local\{C4DE7E10-A4A8-4175-A632-7EFA7E16A862}
2015-02-20 18:13 - 2015-02-20 18:13 - 0310897 _____ () C:\ProgramData\1424451964.bdinstall.bin
2015-02-20 18:10 - 2015-02-20 18:10 - 0050051 _____ () C:\ProgramData\1424452189.bdinstall.bin
2015-02-21 11:15 - 2015-02-21 11:15 - 0032616 _____ () C:\ProgramData\1424513664.bdinstall.bin
2013-12-03 18:56 - 2013-12-03 18:56 - 0000486 _____ () C:\ProgramData\GRFolder.ini
2013-12-03 18:56 - 2013-12-03 18:56 - 0000028 _____ () C:\ProgramData\GRGames.ini

Some content of TEMP:
====================
C:\Users\Ronny\AppData\Local\Temp\Quarantine.exe
C:\Users\Ronny\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-14 02:25

==================== End Of Log ============================

--- --- ---

Wenn ich hier schon kompetente Hilfe bekomme, dann sollte ich mich natürlich auch an die Spielregeln halten, also Entschuldigung für das Posten der .txt Dateien als Anhang an Stelle der oben beschriebenen Zitate im Text. Ja, Probleme: die hatte ich bis auf die langsame Internetgeschwindigkeit und einen tw. trägen Rechner (Win 8.1 Notebook) nie, die Geschwindigkeit hat sich durch ein gestern durchgeführtes Router-Firmwareupdate auf .24 von .20 deutlich verbessert (Surfverhalten mit Internet Explorer). Was mir noch etwas Sorge bereitet ist, dass der Mitarbeiter der Telekom-Abuse-Hotline mir am Freitag mitgeteilt hat, dass mein Rechner von einem "Generic" befallen sei, einer Art Werkzeugkasten und der Inverkehrbringer jederzeit "losschlagen" und mein System beschädigen und ausspähen könne. Der Brieftext enhält hierzu die folgende Formulierung: "uns liegen Hinweise von Sicherheitsexperten vor, dass mindestens ein Rechner, der sich über Ihren Internetzugang mit dem Internet verbindet, mit einem Virus/ Trojaner infiziert ist." Dann folgen Empfehlungen in Form von Passwörter ändern, Überprüfung Aktualität OS etc. Hier im Forum sowie auf anderen Webseiten habe ich gelesen, dass sich Systeme durchaus versuchen, automatisch in ein WLAN einzuwählen, diese Versuche jedoch nicht zwingenderweise erfolgreich gewesen sein müssen. Ich denke da an die Smartphones (SAMSUNG und IPHONE 4/ 5) der Mitbewohner. Leider habe keinen Screenshot von diesem Status, danach jedoch in der Fitz!Box wie oben beschrieben die unbekannten Rechnereinträge PC ##.##.##... entfernt sowie die Einstellung "Nur bekannte Geräte im WLAN zulassen" aktiviert. Wenn ich nun davon ausgehen kann, dass mein Win 8.1. Notebook frei von jeglicher Art Schadsoftware ist, muss ich dann auch per ESET mein IPhone 5/ IPad 3 prüfen? Müssen jetzt eigentlich die Gäste meines WLAN (Mitbewohner mit div. Smartphones Android und iOS, Apple Macbook, Win 8.1. Notebook ihre Rechner scannen und wenn ja, sollte ich als Betreiber des Routers ein Procedere vorschreiben, z.B. wöchentliches Scannen mit ESET Onlinescanner und Malwarebytes? Klar, der einfachste Weg wäre vermutlich, dass ich den Gastzugang mit Wirkung 01.03.15 einfach "kappe". Danke für Deine/ Eure wertvolle Hilfe & Geduld.

RonnysPC 22.02.2015 17:01

Liste der Anhänge anzeigen (Anzahl: 1)
CCleaner hat noch Snap.Do als installierbares Programm gefunden, leider lässt sich das Programm nicht per CCleaner/ Deinstallieren
entfernen. In der Systemsteuerung/ Anzeige Software erscheint das Programm Snap.Do gar nicht.

felix1 22.02.2015 20:15

Zitat:

Zitat von RonnysPC (Beitrag 1430932)
Hier im Forum sowie auf anderen Webseiten habe ich gelesen, dass sich Systeme durchaus versuchen, automatisch in ein WLAN einzuwählen, diese Versuche jedoch nicht zwingenderweise erfolgreich gewesen sein müssen. Ich denke da an die Smartphones (SAMSUNG und IPHONE 4/ 5) der Mitbewohner. Leider habe keinen Screenshot von diesem Status,

Sollte aber im Log der Fritz dokumentiert sein:rolleyes:
Zitat:

Zitat von RonnysPC (Beitrag 1430932)
danach jedoch in der Fitz!Box wie oben beschrieben die unbekannten Rechnereinträge PC ##.##.##... entfernt sowie die Einstellung "Nur bekannte Geräte im WLAN zulassen" aktiviert.

Wie schon gepostet, bitte überwachen:applaus:
Zitat:

Zitat von RonnysPC (Beitrag 1430932)
Wenn ich nun davon ausgehen kann, dass mein Win 8.1. Notebook frei von jeglicher Art Schadsoftware ist, muss ich dann auch per ESET mein IPhone 5/ IPad 3 prüfen?

Ich jetzt kein Obst- und Gemüsehändler, mir ist daher nicht bekannt ob Eset mit Apple kompatibel ist. Das musst Du bitte selbst prüfen.
Zitat:

Zitat von RonnysPC (Beitrag 1430932)
Müssen jetzt eigentlich die Gäste meines WLAN (Mitbewohner mit div. Smartphones Android und iOS, Apple Macbook, Win 8.1. Notebook ihre Rechner scannen und wenn ja, sollte ich als Betreiber des Routers ein Procedere vorschreiben, z.B. wöchentliches Scannen mit ESET Onlinescanner und Malwarebytes? Klar, der einfachste Weg wäre vermutlich, dass ich den Gastzugang mit Wirkung 01.03.15 einfach "kappe". Danke für Deine/ Eure wertvolle Hilfe & Geduld.

Das ist ein zweischneidiges Schwert. Es ist in der BRD so, dass Du defacto als Telekommunikationsdienstleister auftritts. So sind nunmal die aktuellen Gesetze hier. Im europäischen Ausland sieht man das lockerer. Wir waren letzten Herbst in Frankreich, Region Dyjon. in den Innenstätten und Hotels war jederzeit W-Lan vorhanden.
Mir fällt es schwer, Dir hier einen wirklichen ehrlichen Rat zu geben. Dein Anschluß wird gesperrt, wenn irgendein User mit einer verseuchten Kiste aus Deinem Netz ins WWW geht, der Staatsanwalt steht bei Dir auf der Matte, wenn irgendein User Sch.... gemacht hat.
Und jetzt noch eine Antwort auf Dein snap-do-problem.
Ich hoffe, der Schrauber vergibt mir:taenzer:

RonnysPC 22.02.2015 22:33

Felix,
vielen Dank für deine hilfreichen Antworten. Natürlich hätte ich gerne noch gewusst, ob die von der Telekom beschriebene "Infektion mit einem Virus/ Trojaner" nunmehr erledigt ist. Den div. Logs konnte ich diese Information als Sicherheits-Laie bislang nicht entnehmen. Der Telekom-Support teilte mir telefonisch mit, dass sich auf einem der Rechner ein "Generic" eingenistet habe, was nicht mit Virus/ Trojaner gleichzusetzen sondern vielmehr eine Art Werkzeugkasten für Böswillige sei. Bezüglich Abstellung hilft wohl jetzt nur ein expliziter Anruf bei der Telekom-Hotline.

schrauber 23.02.2015 16:46

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

C:\Desktop\20130110\Maxspywaredetector.exe

C:\ProgramData\InstallMate\{DDF029A7-698C-4969-AB82-21AE06130B51}\Custom.dll

C:\Users\All Users\InstallMate\{DDF029A7-698C-4969-AB82-21AE06130B51}\Custom.dll

C:\Users\Ronny\Downloads\EF_CheckSum_Manager_7.30_CB-DL-Manager.exe

D:\Eigene Dateien\Privat\PC\Desktop\20130110\Maxspywaredetector.exe

D:\Eigene Dateien\Privat\PC\Desktop\20130119\Maxspywaredetector.exe
Emptytemp:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.




FRST öffnen, Haken setzen bei Addition und scannen, poste bitte beide Logfiles. Hast Du noch weitere Windows Rechner im Netzwerk?

RonnysPC 23.02.2015 18:49

Fixlog.txt
Code:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 22-02-2015
Ran by Ronny at 2015-02-23 18:06:12 Run:1
Running from C:\Users\Ronny\Desktop
Loaded Profiles: Ronny (Available profiles: Ronny)
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
C:\Desktop\20130110\Maxspywaredetector.exe

C:\ProgramData\InstallMate\{DDF029A7-698C-4969-AB82-21AE06130B51}\Custom.dll

C:\Users\All Users\InstallMate\{DDF029A7-698C-4969-AB82-21AE06130B51}\Custom.dll

C:\Users\Ronny\Downloads\EF_CheckSum_Manager_7.30_CB-DL-Manager.exe

D:\Eigene Dateien\Privat\PC\Desktop\20130110\Maxspywaredetector.exe

D:\Eigene Dateien\Privat\PC\Desktop\20130119\Maxspywaredetector.exe
Emptytemp:
*****************

"C:\Desktop\20130110\Maxspywaredetector.exe" => File/Directory not found.
"C:\ProgramData\InstallMate\{DDF029A7-698C-4969-AB82-21AE06130B51}\Custom.dll" => File/Directory not found.
"C:\Users\All Users\InstallMate\{DDF029A7-698C-4969-AB82-21AE06130B51}\Custom.dll" => File/Directory not found.
"C:\Users\Ronny\Downloads\EF_CheckSum_Manager_7.30_CB-DL-Manager.exe" => File/Directory not found.
D:\Eigene Dateien\Privat\PC\Desktop\20130110\Maxspywaredetector.exe => Moved successfully.
D:\Eigene Dateien\Privat\PC\Desktop\20130119\Maxspywaredetector.exe => Moved successfully.
EmptyTemp: => Removed 64.1 MB temporary data.


The system needed a reboot.

==== End of Fixlog 18:06:29 ====

FRST.txt Teil 1-3
Code:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 22-02-2015
Ran by Ronny (administrator) on RONNY-PC on 23-02-2015 18:17:51
Running from C:\Users\Ronny\Desktop
Loaded Profiles: Ronny (Available profiles: Ronny)
Platform: Microsoft Windows 8.1 Pro (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvwmi.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Windows\System32\nvwmi.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\stacsv.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\AEstSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\officeclicktorun.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA) C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Malwarebytes Corporation) C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.26.9\GoogleCrashHandler.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\msosync.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [488816 2011-01-04] (Alps Electric Co., Ltd.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray.exe [442467 2008-07-02] (IDT, Inc.)
HKLM\...\Run: [InstallerLauncher] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-41 (the data entry has 36 more characters).
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\Run: [NVIDIA nTune] => C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe [81920 2007-09-04] (NVIDIA)
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5489944 2014-12-12] (Piriform Ltd)
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\Run: [pdiface] => C:\Program Files\Bitdefender\60-Second Virus Scanner\pdiface.exe -noshow
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {1d3e3d2c-cd3f-11e3-97b3-002170b871a4} - "H:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {1eb9c41c-b727-11e3-9781-002170b871a4} - "G:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {22b84248-fdb2-11e3-97c9-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {2bc07355-770a-11e3-975a-002170b871a4} - "G:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {3409f44f-4bd0-11e3-971b-0016eae408aa} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {490eee48-4e0d-11e3-971c-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {58c8f203-4885-11e3-971a-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {58c908b1-4885-11e3-971a-002170b871a4} - "I:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {63388ec2-4fbc-11e3-971d-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {65e3ac35-f353-11e3-97c8-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {7b5a52d6-7719-11e3-975b-0016eae408aa} - "I:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {94c98766-431a-11e3-9716-806e6f6e6963} - "E:\Setup.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {9b8a2d68-4332-11e3-9718-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {9b8a2f2a-4332-11e3-9718-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {a9b7a72a-c188-11e3-9797-002170b871a4} - "F:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {cd9925b5-155c-11e4-97d6-002170b871a4} - "H:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {cd992936-155c-11e4-97d6-002170b871a4} - "H:\AutoRun.exe"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\MountPoints2: {da0b8075-cb2a-11e3-97af-002170b871a4} - "F:\AutoRun.exe"
Startup: C:\Users\Ronny\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\S-1-5-21-2443804570-283508326-906284146-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2443804570-283508326-906284146-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/
HKU\S-1-5-21-2443804570-283508326-906284146-1000\Software\Microsoft\Internet Explorer\Main,DisableRequiresActiveXPrompt = www.wdr.de
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKU\S-1-5-21-2443804570-283508326-906284146-1000 -> No Name - {41524553-2D53-5000-76A7-7A786E7484D7} -  No File
Toolbar: HKU\S-1-5-21-2443804570-283508326-906284146-1000 -> No Name - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -  No File
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Ronny\AppData\Roaming\Mozilla\Firefox\Profiles\gy1zzbbj.default
FF DefaultSearchEngine: Bing
FF SelectedSearchEngine: Bing
FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll (GARMIN Corp.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Extension: Garmin Communicator - C:\Users\Ronny\AppData\Roaming\Mozilla\Firefox\Profiles\gy1zzbbj.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} [2014-10-17]
FF Extension: No Name - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AESTFilters; C:\WINDOWS\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\aestsrv.exe [77824 2008-06-27] (Andrea Electronics Corporation)
S3 BthHFSrv; C:\WINDOWS\System32\BthHFSrv.dll [250880 2014-10-29] (Microsoft Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [1840304 2015-01-13] (Microsoft Corporation)
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
R2 nTuneService; C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe [131072 2007-09-04] (NVIDIA) [File not signed]
R2 NVWMI; C:\WINDOWS\system32\nvwmi.exe [1027872 2013-09-05] (NVIDIA Corporation)
S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [103936 2014-10-29] (Microsoft Corporation)
R2 STacSV; C:\WINDOWS\System32\DriverStore\FileRepository\stwrt.inf_x86_41e41214c1c8e236\STacSV.exe [221273 2008-07-02] (IDT, Inc.)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [5426448 2014-12-15] (TeamViewer GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [288128 2014-09-22] (Microsoft Corporation)
S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2014-10-29] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22192 2014-09-22] (Microsoft Corporation)
S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1269248 2014-10-29] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 acpials; C:\WINDOWS\System32\drivers\acpials.sys [7680 2014-10-29] (Microsoft Corporation)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-02-22] (Microsoft Corporation)
S3 FTDIBUS; C:\WINDOWS\system32\drivers\ftdibus.sys [63464 2013-02-13] (FTDI Ltd.)
S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation)
S3 huawei_cdcacm; C:\WINDOWS\system32\DRIVERS\ew_jucdcacm.sys [90368 2011-02-25] (Huawei Technologies Co., Ltd.)
S3 huawei_cdcecm; C:\WINDOWS\system32\DRIVERS\ew_jucdcecm.sys [64384 2011-01-30] (Huawei Technologies Co., Ltd.)
S3 huawei_ext_ctrl; C:\WINDOWS\System32\drivers\ew_juextctrl.sys [26624 2011-01-30] (Huawei Technologies Co., Ltd.)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [23256 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [114904 2015-02-23] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [51928 2014-11-21] (Malwarebytes Corporation)
R3 NETwNs32; C:\WINDOWS\system32\DRIVERS\NETwNs32.sys [7518208 2013-06-18] (Intel Corporation)
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [29696 2007-09-04] (NVidia Corp.) [File not signed]
R3 SensorsAlsDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [190976 2014-10-29] (Microsoft Corporation)
S3 silabenm; C:\WINDOWS\system32\DRIVERS\silabenm.sys [47176 2013-03-06] (Silicon Laboratories)
S3 silabser; C:\WINDOWS\system32\DRIVERS\silabser.sys [63104 2013-03-06] (Silicon Laboratories)
S3 SIUSBXP; C:\WINDOWS\system32\drivers\SiUSBXp.sys [14848 2010-04-30] (Silicon Laboratories)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [84800 2014-09-22] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-03-13] (Microsoft Corporation)
R3 WUDFSensorLP; C:\WINDOWS\System32\drivers\WUDFRd.sys [190976 2014-10-29] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\System32\drivers\WUDFRd.sys [190976 2014-10-29] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-23 18:17 - 2015-02-23 18:18 - 00014208 _____ () C:\Users\Ronny\Desktop\FRST.txt
2015-02-23 18:05 - 2015-02-23 18:05 - 01126912 _____ (Farbar) C:\Users\Ronny\Desktop\FRST.exe
2015-02-23 18:05 - 2015-02-23 18:05 - 00000000 ____D () C:\Users\Ronny\Desktop\FRST-OlderVersion
2015-02-22 20:34 - 2015-02-22 20:35 - 00000324 ____N () C:\WINDOWS\DtcInstall.log
2015-02-22 20:12 - 2015-02-22 20:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-02-22 20:12 - 2015-02-22 20:12 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-02-22 20:01 - 2014-10-29 04:14 - 00108864 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2015-02-22 20:01 - 2014-10-29 04:13 - 02948136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2015-02-22 20:01 - 2014-10-29 04:13 - 01901240 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-02-22 20:01 - 2014-10-29 04:11 - 02689392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2015-02-22 20:01 - 2014-10-29 04:07 - 02324208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-02-22 20:01 - 2014-10-29 03:10 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-02-22 20:01 - 2014-10-29 03:03 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-02-22 20:01 - 2014-10-29 03:00 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2015-02-22 20:01 - 2014-10-29 02:45 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-02-22 20:01 - 2014-10-29 02:44 - 02984448 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2015-02-22 20:01 - 2014-10-29 02:42 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2015-02-22 20:01 - 2014-10-29 02:26 - 03561984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-02-22 20:01 - 2014-10-29 02:16 - 05267968 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2015-02-22 20:01 - 2014-10-29 02:12 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-02-22 20:01 - 2014-10-29 02:08 - 02542080 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-02-22 20:01 - 2014-10-29 02:08 - 02174976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2015-02-22 20:01 - 2014-10-29 02:05 - 03273216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2015-02-22 20:01 - 2014-10-29 02:03 - 04067840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2015-02-22 20:01 - 2014-10-29 02:02 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-02-22 20:01 - 2014-10-29 01:57 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2015-02-22 20:01 - 2014-10-29 01:52 - 02170368 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2015-02-22 20:01 - 2014-10-29 01:51 - 01554432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-02-22 20:01 - 2014-10-29 01:50 - 12749824 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-02-22 20:01 - 2014-10-29 01:45 - 13318144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-02-22 20:01 - 2014-10-29 01:43 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-02-22 20:01 - 2014-10-29 01:42 - 01922560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-02-22 20:01 - 2014-10-29 01:37 - 06386176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-02-22 20:01 - 2014-10-29 01:34 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-02-22 20:01 - 2014-10-29 01:33 - 06213632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2015-02-22 20:01 - 2014-10-29 01:31 - 02975232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-02-22 20:01 - 2014-10-07 04:44 - 02890296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2015-02-22 20:00 - 2014-10-29 04:18 - 01782912 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2015-02-22 20:00 - 2014-10-29 04:18 - 01103768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2015-02-22 20:00 - 2014-10-29 04:18 - 01066400 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2015-02-22 20:00 - 2014-10-29 04:18 - 00848568 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2015-02-22 20:00 - 2014-10-29 04:15 - 00340288 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2015-02-22 20:00 - 2014-10-29 04:15 - 00089856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2015-02-22 20:00 - 2014-10-29 04:12 - 01946144 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2015-02-22 20:00 - 2014-10-29 04:12 - 01907384 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-02-22 20:00 - 2014-10-29 04:12 - 01403280 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-02-22 20:00 - 2014-10-29 04:12 - 01130024 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-02-22 20:00 - 2014-10-29 04:12 - 00616704 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2015-02-22 20:00 - 2014-10-29 04:12 - 00430176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-02-22 20:00 - 2014-10-29 04:12 - 00403776 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2015-02-22 20:00 - 2014-10-29 04:12 - 00277808 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2015-02-22 20:00 - 2014-10-29 04:11 - 02528760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2015-02-22 20:00 - 2014-10-29 04:11 - 02447104 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVENCOD.DLL
2015-02-22 20:00 - 2014-10-29 04:11 - 01331008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-02-22 20:00 - 2014-10-29 04:11 - 01037656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2015-02-22 20:00 - 2014-10-29 04:11 - 01024200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2015-02-22 20:00 - 2014-10-29 04:11 - 00914648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2015-02-22 20:00 - 2014-10-29 04:11 - 00565472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.exe
2015-02-22 20:00 - 2014-10-29 04:11 - 00492704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSDECD.DLL
2015-02-22 20:00 - 2014-10-29 04:11 - 00488064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2015-02-22 20:00 - 2014-10-29 04:10 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-02-22 20:00 - 2014-10-29 04:10 - 02163568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2015-02-22 20:00 - 2014-10-29 04:10 - 01580992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2015-02-22 20:00 - 2014-10-29 04:10 - 01564464 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2015-02-22 20:00 - 2014-10-29 04:10 - 01287112 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2015-02-22 20:00 - 2014-10-29 04:10 - 01209624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2015-02-22 20:00 - 2014-10-29 04:10 - 01178104 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2015-02-22 20:00 - 2014-10-29 04:10 - 00569128 _____ (Microsoft Corporation) C:\WINDOWS\system32\clbcatq.dll
2015-02-22 20:00 - 2014-10-29 04:10 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-02-22 20:00 - 2014-10-29 04:10 - 00547992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2015-02-22 20:00 - 2014-10-29 04:10 - 00492232 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-02-22 20:00 - 2014-10-29 04:10 - 00367248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2015-02-22 20:00 - 2014-10-29 04:08 - 00888864 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 01321192 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 01291752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 01115104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00857384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00705008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00700328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00584120 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00551064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00482360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00409040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00399752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00331048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2015-02-22 20:00 - 2014-10-29 04:07 - 00320256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2015-02-22 20:00 - 2014-10-29 04:06 - 00507152 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2015-02-22 20:00 - 2014-10-29 04:06 - 00334120 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-02-22 20:00 - 2014-10-29 04:05 - 00890128 _____ (Microsoft Corporation) C:\WINDOWS\system32\drmv2clt.dll
2015-02-22 20:00 - 2014-10-29 04:05 - 00852192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-02-22 20:00 - 2014-10-29 03:11 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2015-02-22 20:00 - 2014-10-29 03:04 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-02-22 20:00 - 2014-10-29 03:03 - 00832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe
2015-02-22 20:00 - 2014-10-29 03:03 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll
2015-02-22 20:00 - 2014-10-29 03:00 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2015-02-22 20:00 - 2014-10-29 02:59 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched20.dll
2015-02-22 20:00 - 2014-10-29 02:59 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2015-02-22 20:00 - 2014-10-29 02:57 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2015-02-22 20:00 - 2014-10-29 02:56 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2015-02-22 20:00 - 2014-10-29 02:54 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2015-02-22 20:00 - 2014-10-29 02:53 - 01065984 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8.dll
2015-02-22 20:00 - 2014-10-29 02:53 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlcese40.dll
2015-02-22 20:00 - 2014-10-29 02:50 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlsrv32.dll
2015-02-22 20:00 - 2014-10-29 02:49 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlceqp40.dll
2015-02-22 20:00 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70804.dll
2015-02-22 20:00 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70404.dll
2015-02-22 20:00 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7001E.dll
2015-02-22 20:00 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70011.dll
2015-02-22 20:00 - 2014-10-29 02:47 - 01096192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ogldrv.dll
2015-02-22 20:00 - 2014-10-29 02:47 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpssvcs.dll
2015-02-22 20:00 - 2014-10-29 02:47 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsound.dll
2015-02-22 20:00 - 2014-10-29 02:46 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx.dll
2015-02-22 20:00 - 2014-10-29 02:45 - 00672768 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2015-02-22 20:00 - 2014-10-29 02:45 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\blackbox.dll
2015-02-22 20:00 - 2014-10-29 02:45 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2015-02-22 20:00 - 2014-10-29 02:44 - 00872960 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi3.dll
2015-02-22 20:00 - 2014-10-29 02:41 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2015-02-22 20:00 - 2014-10-29 02:40 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll
2015-02-22 20:00 - 2014-10-29 02:37 - 01563136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2015-02-22 20:00 - 2014-10-29 02:37 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2015-02-22 20:00 - 2014-10-29 02:34 - 00353792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswmdm.dll
2015-02-22 20:00 - 2014-10-29 02:33 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-02-22 20:00 - 2014-10-29 02:32 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll
2015-02-22 20:00 - 2014-10-29 02:32 - 00512512 _____ (Microsoft Corporation) C:\WINDOWS\system32\psisdecd.dll
2015-02-22 20:00 - 2014-10-29 02:32 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmnet.dll
2015-02-22 20:00 - 2014-10-29 02:31 - 01105408 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2015-02-22 20:00 - 2014-10-29 02:31 - 00761344 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2fs.dll
2015-02-22 20:00 - 2014-10-29 02:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2015-02-22 20:00 - 2014-10-29 02:30 - 06465536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2015-02-22 20:00 - 2014-10-29 02:30 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2015-02-22 20:00 - 2014-10-29 02:30 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2015-02-22 20:00 - 2014-10-29 02:30 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL
2015-02-22 20:00 - 2014-10-29 02:29 - 02848768 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2015-02-22 20:00 - 2014-10-29 02:28 - 02213888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2015-02-22 20:00 - 2014-10-29 02:28 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WavDest.dll
2015-02-22 20:00 - 2014-10-29 02:27 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll
2015-02-22 20:00 - 2014-10-29 02:25 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-02-22 20:00 - 2014-10-29 02:25 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2015-02-22 20:00 - 2014-10-29 02:25 - 01058816 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2015-02-22 20:00 - 2014-10-29 02:25 - 00534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2015-02-22 20:00 - 2014-10-29 02:24 - 02364928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2015-02-22 20:00 - 2014-10-29 02:24 - 01335296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2015-02-22 20:00 - 2014-10-29 02:24 - 00902144 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2015-02-22 20:00 - 2014-10-29 02:23 - 01826304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2015-02-22 20:00 - 2014-10-29 02:23 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2015-02-22 20:00 - 2014-10-29 02:23 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2015-02-22 20:00 - 2014-10-29 02:22 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2015-02-22 20:00 - 2014-10-29 02:22 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2015-02-22 20:00 - 2014-10-29 02:22 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2015-02-22 20:00 - 2014-10-29 02:21 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2015-02-22 20:00 - 2014-10-29 02:21 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2015-02-22 20:00 - 2014-10-29 02:20 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2015-02-22 20:00 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2015-02-22 20:00 - 2014-10-29 02:19 - 02714624 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2015-02-22 20:00 - 2014-10-29 02:18 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\system32\certmgr.dll
2015-02-22 20:00 - 2014-10-29 02:18 - 01050624 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMNetMgr.dll
2015-02-22 20:00 - 2014-10-29 02:18 - 00967680 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmclient.dll
2015-02-22 20:00 - 2014-10-29 02:17 - 01402368 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2015-02-22 20:00 - 2014-10-29 02:17 - 00829952 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2015-02-22 20:00 - 2014-10-29 02:17 - 00730624 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmcsnap.dll
2015-02-22 20:00 - 2014-10-29 02:17 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\msra.exe
2015-02-22 20:00 - 2014-10-29 02:16 - 00983552 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-02-22 20:00 - 2014-10-29 02:15 - 00809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-02-22 20:00 - 2014-10-29 02:14 - 03553280 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2015-02-22 20:00 - 2014-10-29 02:14 - 03354112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe
2015-02-22 20:00 - 2014-10-29 02:14 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdosys.dll
2015-02-22 20:00 - 2014-10-29 02:14 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2015-02-22 20:00 - 2014-10-29 02:14 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-02-22 20:00 - 2014-10-29 02:12 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll
2015-02-22 20:00 - 2014-10-29 02:12 - 01315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2015-02-22 20:00 - 2014-10-29 02:12 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2015-02-22 20:00 - 2014-10-29 02:12 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2015-02-22 20:00 - 2014-10-29 02:11 - 02597376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2015-02-22 20:00 - 2014-10-29 02:11 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2015-02-22 20:00 - 2014-10-29 02:10 - 02469888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2015-02-22 20:00 - 2014-10-29 02:10 - 01133568 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2015-02-22 20:00 - 2014-10-29 02:10 - 00861184 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-02-22 20:00 - 2014-10-29 02:10 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2015-02-22 20:00 - 2014-10-29 02:10 - 00516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll
2015-02-22 20:00 - 2014-10-29 02:10 - 00516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2015-02-22 20:00 - 2014-10-29 02:10 - 00442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll
2015-02-22 20:00 - 2014-10-29 02:09 - 00809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2015-02-22 20:00 - 2014-10-29 02:08 - 01560576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-02-22 20:00 - 2014-10-29 02:08 - 01478144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2015-02-22 20:00 - 2014-10-29 02:08 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2015-02-22 20:00 - 2014-10-29 02:08 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2015-02-22 20:00 - 2014-10-29 02:07 - 02033152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2015-02-22 20:00 - 2014-10-29 02:07 - 01197056 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2015-02-22 20:00 - 2014-10-29 02:07 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2015-02-22 20:00 - 2014-10-29 02:06 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2015-02-22 20:00 - 2014-10-29 02:05 - 01088512 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-02-22 20:00 - 2014-10-29 02:05 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\atlthunk.dll
2015-02-22 20:00 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2015-02-22 20:00 - 2014-10-29 02:03 - 00607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2015-02-22 20:00 - 2014-10-29 02:03 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-02-22 20:00 - 2014-10-29 02:02 - 00695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2015-02-22 20:00 - 2014-10-29 02:01 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCacheProvider.dll
2015-02-22 20:00 - 2014-10-29 02:01 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2015-02-22 20:00 - 2014-10-29 01:59 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2015-02-22 20:00 - 2014-10-29 01:59 - 01207296 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2015-02-22 20:00 - 2014-10-29 01:59 - 01021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-02-22 20:00 - 2014-10-29 01:59 - 00643072 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2015-02-22 20:00 - 2014-10-29 01:59 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSync.dll
2015-02-22 20:00 - 2014-10-29 01:59 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2015-02-22 20:00 - 2014-10-29 01:59 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2015-02-22 20:00 - 2014-10-29 01:58 - 03442688 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2015-02-22 20:00 - 2014-10-29 01:58 - 00909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-02-22 20:00 - 2014-10-29 01:58 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-02-22 20:00 - 2014-10-29 01:58 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2015-02-22 20:00 - 2014-10-29 01:58 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2015-02-22 20:00 - 2014-10-29 01:57 - 01065472 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10.dll
2015-02-22 20:00 - 2014-10-29 01:57 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll
2015-02-22 20:00 - 2014-10-29 01:57 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_isv.exe
2015-02-22 20:00 - 2014-10-29 01:57 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc.dll
2015-02-22 20:00 - 2014-10-29 01:57 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc_isv.dll
2015-02-22 20:00 - 2014-10-29 01:57 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll
2015-02-22 20:00 - 2014-10-29 01:56 - 01328640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2015-02-22 20:00 - 2014-10-29 01:56 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-02-22 20:00 - 2014-10-29 01:55 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2015-02-22 20:00 - 2014-10-29 01:55 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscms.dll
2015-02-22 20:00 - 2014-10-29 01:55 - 00418816 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2015-02-22 20:00 - 2014-10-29 01:55 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2015-02-22 20:00 - 2014-10-29 01:54 - 01945600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-02-22 20:00 - 2014-10-29 01:54 - 01245184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-02-22 20:00 - 2014-10-29 01:54 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2015-02-22 20:00 - 2014-10-29 01:53 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2015-02-22 20:00 - 2014-10-29 01:53 - 00612352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provcore.dll
2015-02-22 20:00 - 2014-10-29 01:53 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-02-22 20:00 - 2014-10-29 01:53 - 00441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msTextPrediction.dll
2015-02-22 20:00 - 2014-10-29 01:53 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2015-02-22 20:00 - 2014-10-29 01:52 - 01461248 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2015-02-22 20:00 - 2014-10-29 01:52 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2015-02-22 20:00 - 2014-10-29 01:52 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2015-02-22 20:00 - 2014-10-29 01:52 - 00544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll
2015-02-22 20:00 - 2014-10-29 01:51 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2015-02-22 20:00 - 2014-10-29 01:51 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2015-02-22 20:00 - 2014-10-29 01:51 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2015-02-22 20:00 - 2014-10-29 01:50 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2015-02-22 20:00 - 2014-10-29 01:50 - 01482752 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2015-02-22 20:00 - 2014-10-29 01:50 - 01324544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll
2015-02-22 20:00 - 2014-10-29 01:50 - 00866304 _____ (Microsoft Corporation) C:\WINDOWS\system32\perftrack.dll
2015-02-22 20:00 - 2014-10-29 01:50 - 00624128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2015-02-22 20:00 - 2014-10-29 01:50 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2015-02-22 20:00 - 2014-10-29 01:50 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-02-22 20:00 - 2014-10-29 01:50 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-02-22 20:00 - 2014-10-29 01:49 - 00665088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2015-02-22 20:00 - 2014-10-29 01:49 - 00385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2015-02-22 20:00 - 2014-10-29 01:48 - 01344000 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2015-02-22 20:00 - 2014-10-29 01:48 - 01326080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-02-22 20:00 - 2014-10-29 01:48 - 00454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll
2015-02-22 20:00 - 2014-10-29 01:47 - 01845248 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll
2015-02-22 20:00 - 2014-10-29 01:47 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2015-02-22 20:00 - 2014-10-29 01:47 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2015-02-22 20:00 - 2014-10-29 01:47 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2015-02-22 20:00 - 2014-10-29 01:47 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2015-02-22 20:00 - 2014-10-29 01:47 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2015-02-22 20:00 - 2014-10-29 01:46 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RacEngn.dll
2015-02-22 20:00 - 2014-10-29 01:46 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-02-22 20:00 - 2014-10-29 01:46 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2015-02-22 20:00 - 2014-10-29 01:45 - 00918016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll
2015-02-22 20:00 - 2014-10-29 01:45 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2015-02-22 20:00 - 2014-10-29 01:45 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceApi.dll
2015-02-22 20:00 - 2014-10-29 01:45 - 00524288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2015-02-22 20:00 - 2014-10-29 01:45 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2015-02-22 20:00 - 2014-10-29 01:44 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-02-22 20:00 - 2014-10-29 01:43 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-02-22 20:00 - 2014-10-29 01:43 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2015-02-22 20:00 - 2014-10-29 01:43 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll
2015-02-22 20:00 - 2014-10-29 01:42 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2015-02-22 20:00 - 2014-10-29 01:42 - 00539648 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2015-02-22 20:00 - 2014-10-29 01:42 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\provsvc.dll
2015-02-22 20:00 - 2014-10-29 01:41 - 00873984 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-02-22 20:00 - 2014-10-29 01:41 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-02-22 20:00 - 2014-10-29 01:41 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-02-22 20:00 - 2014-10-29 01:40 - 02104832 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2015-02-22 20:00 - 2014-10-29 01:40 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2015-02-22 20:00 - 2014-10-29 01:39 - 01000448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-02-22 20:00 - 2014-10-29 01:39 - 00565248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2015-02-22 20:00 - 2014-10-29 01:39 - 00454144 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetcfg.dll
2015-02-22 20:00 - 2014-10-29 01:39 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrv.dll
2015-02-22 20:00 - 2014-10-29 01:38 - 01262080 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2015-02-22 20:00 - 2014-10-29 01:38 - 01175040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-02-22 20:00 - 2014-10-29 01:37 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2015-02-22 20:00 - 2014-10-29 01:36 - 00954880 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-02-22 20:00 - 2014-10-29 01:35 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.dll
2015-02-22 20:00 - 2014-10-29 01:35 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-02-22 20:00 - 2014-10-29 01:35 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2015-02-22 20:00 - 2014-10-29 01:35 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2015-02-22 20:00 - 2014-10-29 01:34 - 01544192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-02-22 20:00 - 2014-10-29 01:33 - 01102848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2015-02-22 20:00 - 2014-10-29 01:32 - 02310656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-02-22 20:00 - 2014-10-29 01:32 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-02-22 20:00 - 2014-10-29 01:31 - 00626176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-02-22 20:00 - 2014-10-29 01:30 - 01269248 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2015-02-22 20:00 - 2014-10-29 01:30 - 00768512 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-02-22 20:00 - 2014-10-29 01:30 - 00602624 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2015-02-22 20:00 - 2014-10-29 01:30 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2015-02-22 20:00 - 2014-10-15 09:37 - 01689408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-02-22 20:00 - 2014-10-13 03:45 - 00869696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-02-22 20:00 - 2014-10-07 04:34 - 00426304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-02-22 20:00 - 2014-09-25 03:45 - 00312128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-02-22 19:59 - 2014-10-29 04:18 - 00348048 _____ (Microsoft Corporation) C:\WINDOWS\system32\verifier.dll
2015-02-22 19:59 - 2014-10-29 04:18 - 00320736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll
2015-02-22 19:59 - 2014-10-29 04:18 - 00294880 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeunlock.exe
2015-02-22 19:59 - 2014-10-29 04:18 - 00241168 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2015-02-22 19:59 - 2014-10-29 04:18 - 00196736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityUxHost.exe
2015-02-22 19:59 - 2014-10-29 04:18 - 00164264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2015-02-22 19:59 - 2014-10-29 04:18 - 00148728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2015-02-22 19:59 - 2014-10-29 04:18 - 00127552 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2015-02-22 19:59 - 2014-10-29 04:18 - 00120352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cabinet.dll
2015-02-22 19:59 - 2014-10-29 04:18 - 00081728 _____ (Microsoft Corporation) C:\WINDOWS\system32\embeddedapplauncher.exe
2015-02-22 19:59 - 2014-10-29 04:18 - 00016504 _____ (Microsoft Corporation) C:\WINDOWS\system32\psapi.dll
2015-02-22 19:59 - 2014-10-29 04:15 - 00340848 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2015-02-22 19:59 - 2014-10-29 04:15 - 00245296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-02-22 19:59 - 2014-10-29 04:15 - 00192096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2015-02-22 19:59 - 2014-10-29 04:15 - 00165728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntasn1.dll
2015-02-22 19:59 - 2014-10-29 04:15 - 00154392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntmarta.dll
2015-02-22 19:59 - 2014-10-29 04:15 - 00147192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2015-02-22 19:59 - 2014-10-29 04:15 - 00130592 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll
2015-02-22 19:59 - 2014-10-29 04:15 - 00119800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll
2015-02-22 19:59 - 2014-10-29 04:15 - 00115672 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2015-02-22 19:59 - 2014-10-29 04:15 - 00098152 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2015-02-22 19:59 - 2014-10-29 04:15 - 00026816 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogHost.exe
2015-02-22 19:59 - 2014-10-29 04:13 - 00185880 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll
2015-02-22 19:59 - 2014-10-29 04:12 - 00416760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2015-02-22 19:59 - 2014-10-29 04:12 - 00362304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2015-02-22 19:59 - 2014-10-29 04:12 - 00241680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2015-02-22 19:59 - 2014-10-29 04:12 - 00151288 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2015-02-22 19:59 - 2014-10-29 04:12 - 00116696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxva2.dll
2015-02-22 19:59 - 2014-10-29 04:12 - 00102728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-02-22 19:59 - 2014-10-29 04:12 - 00087224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpr.dll
2015-02-22 19:59 - 2014-10-29 04:11 - 00463744 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP4SDECD.DLL
2015-02-22 19:59 - 2014-10-29 04:11 - 00319808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-02-22 19:59 - 2014-10-29 04:11 - 00275280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPG4DECD.DLL
2015-02-22 19:59 - 2014-10-29 04:11 - 00274256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP43DECD.DLL
2015-02-22 19:59 - 2014-10-29 04:11 - 00245296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMASF.DLL
2015-02-22 19:59 - 2014-10-29 04:11 - 00229248 _____ (Microsoft Corporation) C:\WINDOWS\system32\RESAMPLEDMO.DLL
2015-02-22 19:59 - 2014-10-29 04:11 - 00191104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2015-02-22 19:59 - 2014-10-29 04:11 - 00190048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVol.exe
2015-02-22 19:59 - 2014-10-29 04:11 - 00187488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2015-02-22 19:59 - 2014-10-29 04:11 - 00184888 _____ (Microsoft Corporation) C:\WINDOWS\system32\COLORCNV.DLL
2015-02-22 19:59 - 2014-10-29 04:11 - 00183832 _____ (Microsoft Corporation) C:\WINDOWS\system32\VIDRESZR.DLL
2015-02-22 19:59 - 2014-10-29 04:11 - 00099104 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2015-02-22 19:59 - 2014-10-29 04:10 - 01906872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplaySwitch.exe
2015-02-22 19:59 - 2014-10-29 04:10 - 00758176 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2015-02-22 19:59 - 2014-10-29 04:10 - 00278352 _____ (Microsoft Corporation) C:\WINDOWS\system32\shlwapi.dll
2015-02-22 19:59 - 2014-10-29 04:10 - 00276816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsta.dll
2015-02-22 19:59 - 2014-10-29 04:10 - 00272648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpendp.dll
2015-02-22 19:59 - 2014-10-29 04:10 - 00223616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbroker.exe
2015-02-22 19:59 - 2014-10-29 04:10 - 00094464 _____ (Microsoft Corporation) C:\WINDOWS\system32\RestoreOptIn.exe
2015-02-22 19:59 - 2014-10-29 04:09 - 00017216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhost.exe
2015-02-22 19:59 - 2014-10-29 04:07 - 00336680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2015-02-22 19:59 - 2014-10-29 04:07 - 00260800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-02-22 19:59 - 2014-10-29 04:07 - 00202440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2015-02-22 19:59 - 2014-10-29 04:07 - 00136840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll
2015-02-22 19:59 - 2014-10-29 04:07 - 00134280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmmbase.dll
2015-02-22 19:59 - 2014-10-29 04:07 - 00089816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.dll
2015-02-22 19:59 - 2014-10-29 04:07 - 00081008 _____ (Microsoft Corporation) C:\WINDOWS\system32\devenum.dll
2015-02-22 19:59 - 2014-10-29 04:07 - 00019096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksuser.dll
2015-02-22 19:59 - 2014-10-29 04:06 - 00800008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll
2015-02-22 19:59 - 2014-10-29 04:06 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\system32\RTWorkQ.dll
2015-02-22 19:59 - 2014-10-29 04:06 - 00074824 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2015-02-22 19:59 - 2014-10-29 04:05 - 00321248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2015-02-22 19:59 - 2014-10-29 04:05 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll
2015-02-22 19:59 - 2014-10-29 04:05 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2015-02-22 19:59 - 2014-10-29 04:05 - 00138928 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2015-02-22 19:59 - 2014-10-29 04:05 - 00120864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPHLPAPI.DLL
2015-02-22 19:59 - 2014-10-29 03:10 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfh264enc.dll
2015-02-22 19:59 - 2014-10-29 03:04 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp60.dll
2015-02-22 19:59 - 2014-10-29 03:02 - 00435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\csc.sys
2015-02-22 19:59 - 2014-10-29 03:01 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2015-02-22 19:59 - 2014-10-29 03:01 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFRd.sys
2015-02-22 19:59 - 2014-10-29 03:01 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFPf.sys
2015-02-22 19:59 - 2014-10-29 03:00 - 00435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\glmf32.dll
2015-02-22 19:59 - 2014-10-29 03:00 - 00375808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2015-02-22 19:59 - 2014-10-29 03:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msls31.dll
2015-02-22 19:59 - 2014-10-29 03:00 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll
2015-02-22 19:59 - 2014-10-29 03:00 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
2015-02-22 19:59 - 2014-10-29 03:00 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched32.dll
2015-02-22 19:59 - 2014-10-29 02:58 - 00423424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2015-02-22 19:59 - 2014-10-29 02:58 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\uudf.dll
2015-02-22 19:59 - 2014-10-29 02:58 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbnetlib.dll
2015-02-22 19:59 - 2014-10-29 02:58 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\radardt.dll
2015-02-22 19:59 - 2014-10-29 02:57 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2015-02-22 19:59 - 2014-10-29 02:57 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\drt.dll
2015-02-22 19:59 - 2014-10-29 02:57 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2015-02-22 19:59 - 2014-10-29 02:57 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll
2015-02-22 19:59 - 2014-10-29 02:56 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcjt32.dll
2015-02-22 19:59 - 2014-10-29 02:55 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput8.dll
2015-02-22 19:59 - 2014-10-29 02:55 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput.dll
2015-02-22 19:59 - 2014-10-29 02:54 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dim.dll
2015-02-22 19:59 - 2014-10-29 02:54 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-02-22 19:59 - 2014-10-29 02:54 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfui.dll
2015-02-22 19:59 - 2014-10-29 02:53 - 02238464 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0404.dll
2015-02-22 19:59 - 2014-10-29 02:53 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll
2015-02-22 19:59 - 2014-10-29 02:53 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\prncache.dll
2015-02-22 19:59 - 2014-10-29 02:53 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\chartv.dll
2015-02-22 19:59 - 2014-10-29 02:53 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrstub.exe
2015-02-22 19:59 - 2014-10-29 02:52 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0804.dll
2015-02-22 19:59 - 2014-10-29 02:52 - 00224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsldp.dll
2015-02-22 19:59 - 2014-10-29 02:52 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionQueue.dll
2015-02-22 19:59 - 2014-10-29 02:52 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 07331840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0011.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00782848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data001E.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsdyn.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow32.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\rgb9rast.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmstyle.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\oledlg.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmscript.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\atl.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2015-02-22 19:59 - 2014-10-29 02:51 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcompos.dll
2015-02-22 19:59 - 2014-10-29 02:50 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlceoledb40.dll
2015-02-22 19:59 - 2014-10-29 02:50 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlcecompact40.dll
2015-02-22 19:59 - 2014-10-29 02:50 - 00101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscript.ocx
2015-02-22 19:59 - 2014-10-29 02:50 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\avifil32.dll
2015-02-22 19:59 - 2014-10-29 02:49 - 00478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wvc.dll
2015-02-22 19:59 - 2014-10-29 02:49 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\migflt.dll
2015-02-22 19:59 - 2014-10-29 02:49 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\cewmdm.dll
2015-02-22 19:59 - 2014-10-29 02:49 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2015-02-22 19:59 - 2014-10-29 02:49 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmime.dll
2015-02-22 19:59 - 2014-10-29 02:49 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSyncMetastore.dll
2015-02-22 19:59 - 2014-10-29 02:49 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll
2015-02-22 19:59 - 2014-10-29 02:49 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSTPager.ax
2015-02-22 19:59 - 2014-10-29 02:49 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\cca.dll
2015-02-22 19:59 - 2014-10-29 02:49 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\amstream.dll
2015-02-22 19:59 - 2014-10-29 02:48 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcbase.dll
2015-02-22 19:59 - 2014-10-29 02:48 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\appmgmts.dll
2015-02-22 19:59 - 2014-10-29 02:48 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2015-02-22 19:59 - 2014-10-29 02:48 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsClassExtension.dll
2015-02-22 19:59 - 2014-10-29 02:48 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmusic.dll
2015-02-22 19:59 - 2014-10-29 02:47 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll
2015-02-22 19:59 - 2014-10-29 02:47 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscobj.dll
2015-02-22 19:59 - 2014-10-29 02:47 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhengine.dll
2015-02-22 19:59 - 2014-10-29 02:47 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskpart.exe
2015-02-22 19:59 - 2014-10-29 02:47 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassvcs.dll
2015-02-22 19:59 - 2014-10-29 02:47 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdv.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsnt.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskraid.exe
2015-02-22 19:59 - 2014-10-29 02:46 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mycomput.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmdskmgr.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasrad.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssha.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdiageng.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmvdspa.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasnap.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidpolicyconverter.exe
2015-02-22 19:59 - 2014-10-29 02:46 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfdvdec.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsRasterService.dll
2015-02-22 19:59 - 2014-10-29 02:46 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Kswdmcap.ax
2015-02-22 19:59 - 2014-10-29 02:46 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.WorkplaceSettings.dll
2015-02-22 19:59 - 2014-10-29 02:45 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartCardSimulator.dll
2015-02-22 19:59 - 2014-10-29 02:45 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdohlp.dll
2015-02-22 19:59 - 2014-10-29 02:45 - 00378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\termmgr.dll
2015-02-22 19:59 - 2014-10-29 02:45 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\NAPSTAT.EXE
2015-02-22 19:59 - 2014-10-29 02:45 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2015-02-22 19:59 - 2014-10-29 02:45 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll
2015-02-22 19:59 - 2014-10-29 02:45 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpresult.exe
2015-02-22 19:59 - 2014-10-29 02:45 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Mpeg2Data.ax
2015-02-22 19:59 - 2014-10-29 02:45 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSDvbNP.ax
2015-02-22 19:59 - 2014-10-29 02:44 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasplap.dll
2015-02-22 19:59 - 2014-10-29 02:44 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2015-02-22 19:59 - 2014-10-29 02:44 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2015-02-22 19:59 - 2014-10-29 02:44 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetpp.dll
2015-02-22 19:59 - 2014-10-29 02:44 - 00101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll
2015-02-22 19:59 - 2014-10-29 02:44 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2015-02-22 19:59 - 2014-10-29 02:43 - 00736256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVXENCD.DLL
2015-02-22 19:59 - 2014-10-29 02:43 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\recimg.exe
2015-02-22 19:59 - 2014-10-29 02:43 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2015-02-22 19:59 - 2014-10-29 02:43 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3gpui.dll
2015-02-22 19:59 - 2014-10-29 02:43 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2015-02-22 19:59 - 2014-10-29 02:43 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSNP.ax
2015-02-22 19:59 - 2014-10-29 02:43 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\offfilt.dll
2015-02-22 19:59 - 2014-10-29 02:43 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\elshyph.dll
2015-02-22 19:59 - 2014-10-29 02:43 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssText3d.scr
2015-02-22 19:59 - 2014-10-29 02:42 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapi32.dll
2015-02-22 19:59 - 2014-10-29 02:42 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasrecst.dll
2015-02-22 19:59 - 2014-10-29 02:42 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\advpack.dll
2015-02-22 19:59 - 2014-10-29 02:41 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassdo.dll
2015-02-22 19:59 - 2014-10-29 02:41 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\QAGENTRT.DLL
2015-02-22 19:59 - 2014-10-29 02:41 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnp.dll
2015-02-22 19:59 - 2014-10-29 02:41 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2015-02-22 19:59 - 2014-10-29 02:41 - 00216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsicpl.dll
2015-02-22 19:59 - 2014-10-29 02:41 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2015-02-22 19:59 - 2014-10-29 02:40 - 02036224 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0007.dll
2015-02-22 19:59 - 2014-10-29 02:40 - 00380928 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshipsec.dll
2015-02-22 19:59 - 2014-10-29 02:40 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2015-02-22 19:59 - 2014-10-29 02:40 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll
2015-02-22 19:59 - 2014-10-29 02:40 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dskquoui.dll
2015-02-22 19:59 - 2014-10-29 02:40 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Tabbtn.dll
2015-02-22 19:59 - 2014-10-29 02:40 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\softkbd.dll
2015-02-22 19:59 - 2014-10-29 02:40 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Robocopy.exe
2015-02-22 19:59 - 2014-10-29 02:40 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\olethk32.dll
2015-02-22 19:59 - 2014-10-29 02:39 - 09604608 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000a.dll
2015-02-22 19:59 - 2014-10-29 02:39 - 04531712 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0416.dll
2015-02-22 19:59 - 2014-10-29 02:39 - 04530688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001d.dll
2015-02-22 19:59 - 2014-10-29 02:39 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSENCD.DLL
2015-02-22 19:59 - 2014-10-29 02:39 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscandui.dll
2015-02-22 19:59 - 2014-10-29 02:39 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\unattend.dll
2015-02-22 19:59 - 2014-10-29 02:39 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsadmin.exe
2015-02-22 19:59 - 2014-10-29 02:39 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasppp.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 04945920 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 04530688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0010.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 04530176 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0414.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 04529664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0816.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 02387456 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000d.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 02307072 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000c.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 02012160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0026.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 02012160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData000f.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 01548800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0000.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 00404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 00363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.PointOfService.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\itircl.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmgp.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscript.exe
2015-02-22 19:59 - 2014-10-29 02:38 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe
2015-02-22 19:59 - 2014-10-29 02:38 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fde.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi.dll
2015-02-22 19:59 - 2014-10-29 02:38 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSyncProviders.dll
2015-02-22 19:59 - 2014-10-29 02:37 - 03149824 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0039.dll
2015-02-22 19:59 - 2014-10-29 02:37 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData002a.dll
2015-02-22 19:59 - 2014-10-29 02:37 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsnap.dll
2015-02-22 19:59 - 2014-10-29 02:37 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2015-02-22 19:59 - 2014-10-29 02:37 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2015-02-22 19:59 - 2014-10-29 02:37 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msconfig.exe
2015-02-22 19:59 - 2014-10-29 02:37 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\lltdapi.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004e.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004c.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004b.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData004a.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0049.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0047.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0046.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0045.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0020.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01999360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0027.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0c1a.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData081a.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0024.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001b.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData001a.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0018.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0003.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0002.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData003e.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0022.dll
2015-02-22 19:59 - 2014-10-29 02:36 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0021.dll
2015-02-22 19:59 - 2014-10-29 02:35 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysFxUI.dll
2015-02-22 19:59 - 2014-10-29 02:35 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2015-02-22 19:59 - 2014-10-29 02:35 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\scansetting.dll
2015-02-22 19:59 - 2014-10-29 02:35 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wavemsp.dll
2015-02-22 19:59 - 2014-10-29 02:35 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhshl.dll
2015-02-22 19:59 - 2014-10-29 02:34 - 00473600 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnfldr.dll
2015-02-22 19:59 - 2014-10-29 02:34 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2.dll
2015-02-22 19:59 - 2014-10-29 02:34 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmon.ocx
2015-02-22 19:59 - 2014-10-29 02:34 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmdlgs.dll
2015-02-22 19:59 - 2014-10-29 02:34 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\difxapi.dll
2015-02-22 19:59 - 2014-10-29 02:34 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-02-22 19:59 - 2014-10-29 02:34 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\eudcedit.exe
2015-02-22 19:59 - 2014-10-29 02:34 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapisrv.dll
2015-02-22 19:59 - 2014-10-29 02:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcat.dll
2015-02-22 19:59 - 2014-10-29 02:34 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\regedit.exe
2015-02-22 19:59 - 2014-10-29 02:33 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2015-02-22 19:59 - 2014-10-29 02:33 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll
2015-02-22 19:59 - 2014-10-29 02:33 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgprint.dll
2015-02-22 19:59 - 2014-10-29 02:32 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll
2015-02-22 19:59 - 2014-10-29 02:32 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\psr.exe
2015-02-22 19:59 - 2014-10-29 02:32 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SnippingTool.exe
2015-02-22 19:59 - 2014-10-29 02:32 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppIdPolicyEngineApi.dll
2015-02-22 19:59 - 2014-10-29 02:32 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lltdsvc.dll
2015-02-22 19:59 - 2014-10-29 02:32 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsprop.dll
2015-02-22 19:59 - 2014-10-29 02:32 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceSyncProvider.dll
2015-02-22 19:59 - 2014-10-29 02:32 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\twext.dll
2015-02-22 19:59 - 2014-10-29 02:32 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContent.dll
2015-02-22 19:59 - 2014-10-29 02:32 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dskquota.dll
2015-02-22 19:59 - 2014-10-29 02:32 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\psisrndr.ax
2015-02-22 19:59 - 2014-10-29 02:31 - 00392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2015-02-22 19:59 - 2014-10-29 02:31 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2015-02-22 19:59 - 2014-10-29 02:31 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdprint.dll
2015-02-22 19:59 - 2014-10-29 02:31 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll
2015-02-22 19:59 - 2014-10-29 02:31 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.cpl
2015-02-22 19:59 - 2014-10-29 02:31 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdiagprv.dll
2015-02-22 19:59 - 2014-10-29 02:31 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll
2015-02-22 19:59 - 2014-10-29 02:31 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\rshx32.dll
2015-02-22 19:59 - 2014-10-29 02:30 - 02118144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsCpl.dll
2015-02-22 19:59 - 2014-10-29 02:30 - 00597504 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2015-02-22 19:59 - 2014-10-29 02:30 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdial32.dll
2015-02-22 19:59 - 2014-10-29 02:30 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrptadm.dll
2015-02-22 19:59 - 2014-10-29 02:30 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\els.dll
2015-02-22 19:59 - 2014-10-29 02:29 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\IasMigPlugin.dll
2015-02-22 19:59 - 2014-10-29 02:29 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll
2015-02-22 19:59 - 2014-10-29 02:29 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\devmgr.dll
2015-02-22 19:59 - 2014-10-29 02:29 - 00464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll
2015-02-22 19:59 - 2014-10-29 02:29 - 00434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2015-02-22 19:59 - 2014-10-29 02:29 - 00392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2015-02-22 19:59 - 2014-10-29 02:29 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\srchadmin.dll
2015-02-22 19:59 - 2014-10-29 02:29 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\system32\localsec.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadefui.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsquery.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodev.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\xwtpdui.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmstormod.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2015-02-22 19:59 - 2014-10-29 02:28 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\xwtpw32.dll
2015-02-22 19:59 - 2014-10-29 02:28 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\brdgcfg.dll
2015-02-22 19:59 - 2014-10-29 02:27 - 00763392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2015-02-22 19:59 - 2014-10-29 02:27 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercpl.dll
2015-02-22 19:59 - 2014-10-29 02:27 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xwizards.dll
2015-02-22 19:59 - 2014-10-29 02:27 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2015-02-22 19:59 - 2014-10-29 02:27 - 00362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptuiwizard.dll
2015-02-22 19:59 - 2014-10-29 02:27 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmontr.dll
2015-02-22 19:59 - 2014-10-29 02:27 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-02-22 19:59 - 2014-10-29 02:27 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2015-02-22 19:59 - 2014-10-29 02:26 - 03788288 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll
2015-02-22 19:59 - 2014-10-29 02:26 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2015-02-22 19:59 - 2014-10-29 02:26 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2pnetsh.dll
2015-02-22 19:59 - 2014-10-29 02:26 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\QAGENT.DLL
2015-02-22 19:59 - 2014-10-29 02:25 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroleui.dll
2015-02-22 19:59 - 2014-10-29 02:25 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncInfrastructure.dll
2015-02-22 19:59 - 2014-10-29 02:25 - 00333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe
2015-02-22 19:59 - 2014-10-29 02:25 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\certreq.exe
2015-02-22 19:59 - 2014-10-29 02:25 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2015-02-22 19:59 - 2014-10-29 02:25 - 00246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe
2015-02-22 19:59 - 2014-10-29 02:25 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2015-02-22 19:59 - 2014-10-29 02:25 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrdc.dll
2015-02-22 19:59 - 2014-10-29 02:25 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlhtml.dll
2015-02-22 19:59 - 2014-10-29 02:24 - 01389056 _____ (Microsoft Corporation) C:\WINDOWS\system32\DxpTaskSync.dll
2015-02-22 19:59 - 2014-10-29 02:24 - 01005568 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagCpl.dll
2015-02-22 19:59 - 2014-10-29 02:24 - 00779776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe
2015-02-22 19:59 - 2014-10-29 02:24 - 00739328 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabletPC.cpl
2015-02-22 19:59 - 2014-10-29 02:24 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2015-02-22 19:59 - 2014-10-29 02:24 - 00487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll
2015-02-22 19:59 - 2014-10-29 02:24 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpdMtp.dll
2015-02-22 19:59 - 2014-10-29 02:24 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceWMDRM.dll
2015-02-22 19:59 - 2014-10-29 02:24 - 00136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceWiaCompat.dll
2015-02-22 19:59 - 2014-10-29 02:23 - 00781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mblctr.exe
2015-02-22 19:59 - 2014-10-29 02:23 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPDSp.dll
2015-02-22 19:59 - 2014-10-29 02:23 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthHFSrv.dll
2015-02-22 19:59 - 2014-10-29 02:23 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOVER.exe
2015-02-22 19:59 - 2014-10-29 02:23 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2015-02-22 19:59 - 2014-10-29 02:23 - 00107008 _____ () C:\WINDOWS\system32\OEMLicense.dll
2015-02-22 19:59 - 2014-10-29 02:22 - 00839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2015-02-22 19:59 - 2014-10-29 02:22 - 00369152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe
2015-02-22 19:59 - 2014-10-29 02:22 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\qasf.dll
2015-02-22 19:59 - 2014-10-29 02:22 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rekeywiz.exe
2015-02-22 19:59 - 2014-10-29 02:22 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll
2015-02-22 19:59 - 2014-10-29 02:22 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPDShServiceObj.dll
2015-02-22 19:59 - 2014-10-29 02:21 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2015-02-22 19:59 - 2014-10-29 02:21 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2015-02-22 19:59 - 2014-10-29 02:21 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscp.dll
2015-02-22 19:59 - 2014-10-29 02:21 - 00297984 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll
2015-02-22 19:59 - 2014-10-29 02:21 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2015-02-22 19:59 - 2014-10-29 02:21 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-02-22 19:59 - 2014-10-29 02:21 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2015-02-22 19:59 - 2014-10-29 02:21 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmidx.dll
2015-02-22 19:59 - 2014-10-29 02:20 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsecsnp.dll
2015-02-22 19:59 - 2014-10-29 02:20 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll
2015-02-22 19:59 - 2014-10-29 02:20 - 00437760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdri.dll
2015-02-22 19:59 - 2014-10-29 02:20 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\shwebsvc.dll
2015-02-22 19:59 - 2014-10-29 02:20 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Usb.dll
2015-02-22 19:59 - 2014-10-29 02:20 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2015-02-22 19:59 - 2014-10-29 02:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
2015-02-22 19:59 - 2014-10-29 02:20 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\netdiagfx.dll
2015-02-22 19:59 - 2014-10-29 02:20 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2015-02-22 19:59 - 2014-10-29 02:19 - 00701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2015-02-22 19:59 - 2014-10-29 02:19 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2015-02-22 19:59 - 2014-10-29 02:19 - 00476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceControl.dll
2015-02-22 19:59 - 2014-10-29 02:19 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpipcfg.dll
2015-02-22 19:59 - 2014-10-29 02:19 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2015-02-22 19:59 - 2014-10-29 02:19 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdListen.dll
2015-02-22 19:59 - 2014-10-29 02:18 - 00773632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2015-02-22 19:59 - 2014-10-29 02:18 - 00743936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFWMAAEC.DLL
2015-02-22 19:59 - 2014-10-29 02:18 - 00362496 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2015-02-22 19:59 - 2014-10-29 02:18 - 00281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll
2015-02-22 19:59 - 2014-10-29 02:18 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2015-02-22 19:59 - 2014-10-29 02:18 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dxpserver.exe
2015-02-22 19:59 - 2014-10-29 02:17 - 01296896 _____ (Microsoft Corporation) C:\WINDOWS\system32\connect.dll
2015-02-22 19:59 - 2014-10-29 02:17 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdt.exe
2015-02-22 19:59 - 2014-10-29 02:17 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipsmsnap.dll
2015-02-22 19:59 - 2014-10-29 02:17 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2015-02-22 19:59 - 2014-10-29 02:17 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceregistration.dll
2015-02-22 19:59 - 2014-10-29 02:16 - 00900096 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2015-02-22 19:59 - 2014-10-29 02:16 - 00795136 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2015-02-22 19:59 - 2014-10-29 02:16 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Vault.dll
2015-02-22 19:59 - 2014-10-29 02:16 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanui.dll
2015-02-22 19:59 - 2014-10-29 02:16 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe
2015-02-22 19:59 - 2014-10-29 02:16 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2015-02-22 19:59 - 2014-10-29 02:16 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\drmmgrtn.dll
2015-02-22 19:59 - 2014-10-29 02:16 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoeacct.dll
2015-02-22 19:59 - 2014-10-29 02:16 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcorehc.dll
2015-02-22 19:59 - 2014-10-29 02:16 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msnetobj.dll
2015-02-22 19:59 - 2014-10-29 02:15 - 00528384 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSSVC.exe
2015-02-22 19:59 - 2014-10-29 02:15 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ppcsnap.dll
2015-02-22 19:59 - 2014-10-29 02:15 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2015-02-22 19:59 - 2014-10-29 02:15 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinput.exe
2015-02-22 19:59 - 2014-10-29 02:14 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2015-02-22 19:59 - 2014-10-29 02:14 - 00423424 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2015-02-22 19:59 - 2014-10-29 02:14 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXP.dll
2015-02-22 19:59 - 2014-10-29 02:14 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2015-02-22 19:59 - 2014-10-29 02:14 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
2015-02-22 19:59 - 2014-10-29 02:14 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoert2.dll
2015-02-22 19:59 - 2014-10-29 02:14 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2015-02-22 19:59 - 2014-10-29 02:13 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll
2015-02-22 19:59 - 2014-10-29 02:13 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\apds.dll
2015-02-22 19:59 - 2014-10-29 02:12 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\appmgr.dll
2015-02-22 19:59 - 2014-10-29 02:12 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2015-02-22 19:59 - 2014-10-29 02:12 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2015-02-22 19:59 - 2014-10-29 02:12 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollUI.dll
2015-02-22 19:59 - 2014-10-29 02:11 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2015-02-22 19:59 - 2014-10-29 02:11 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMPOSE.dll
2015-02-22 19:59 - 2014-10-29 02:10 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFS.exe
2015-02-22 19:59 - 2014-10-29 02:10 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll
2015-02-22 19:59 - 2014-10-29 02:10 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbeio.dll
2015-02-22 19:59 - 2014-10-29 02:08 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2015-02-22 19:59 - 2014-10-29 02:07 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2015-02-22 19:59 - 2014-10-29 02:06 - 01086976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2015-02-22 19:59 - 2014-10-29 02:06 - 00301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll
2015-02-22 19:59 - 2014-10-29 02:06 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2015-02-22 19:59 - 2014-10-29 02:06 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2015-02-22 19:59 - 2014-10-29 02:06 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll
2015-02-22 19:59 - 2014-10-29 02:05 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2015-02-22 19:59 - 2014-10-29 02:05 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2015-02-22 19:59 - 2014-10-29 02:05 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2015-02-22 19:59 - 2014-10-29 02:05 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2015-02-22 19:59 - 2014-10-29 02:05 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2015-02-22 19:59 - 2014-10-29 02:05 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2015-02-22 19:59 - 2014-10-29 02:05 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ulib.dll
2015-02-22 19:59 - 2014-10-29 02:05 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptnet.dll
2015-02-22 19:59 - 2014-10-29 02:05 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\loadperf.dll
2015-02-22 19:59 - 2014-10-29 02:04 - 00364032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPTpm12.dll
2015-02-22 19:59 - 2014-10-29 02:04 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2015-02-22 19:59 - 2014-10-29 02:04 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\netjoin.dll
2015-02-22 19:59 - 2014-10-29 02:04 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe
2015-02-22 19:59 - 2014-10-29 02:04 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2015-02-22 19:59 - 2014-10-29 02:04 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll
2015-02-22 19:59 - 2014-10-29 02:04 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutil.dll
2015-02-22 19:59 - 2014-10-29 02:04 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\net1.exe
2015-02-22 19:59 - 2014-10-29 02:04 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2015-02-22 19:59 - 2014-10-29 02:04 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ufat.dll
2015-02-22 19:59 - 2014-10-29 02:03 - 00608256 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll
2015-02-22 19:59 - 2014-10-29 02:03 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2015-02-22 19:59 - 2014-10-29 02:03 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\polstore.dll
2015-02-22 19:59 - 2014-10-29 02:03 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\provthrd.dll
2015-02-22 19:59 - 2014-10-29 02:03 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2015-02-22 19:59 - 2014-10-29 02:03 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDist.dll
2015-02-22 19:59 - 2014-10-29 02:03 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasman.dll
2015-02-22 19:59 - 2014-10-29 02:03 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2015-02-22 19:59 - 2014-10-29 02:03 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\negoexts.dll
2015-02-22 19:59 - 2014-10-29 02:03 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2015-02-22 19:59 - 2014-10-29 02:02 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2015-02-22 19:59 - 2014-10-29 02:02 - 00217600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Geolocation.dll


RonnysPC 23.02.2015 18:50

FRST.txt Teil 2-3
Code:

2015-02-22 19:59 - 2014-10-29 02:02 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-02-22 19:59 - 2014-10-29 02:02 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mibincodec.dll
2015-02-22 19:59 - 2014-10-29 02:02 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-02-22 19:59 - 2014-10-29 02:01 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-02-22 19:59 - 2014-10-29 02:01 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-02-22 19:59 - 2014-10-29 02:01 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdelta.dll
2015-02-22 19:59 - 2014-10-29 02:01 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2015-02-22 19:59 - 2014-10-29 02:01 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsku.dll
2015-02-22 19:59 - 2014-10-29 02:01 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\livessp.dll
2015-02-22 19:59 - 2014-10-29 02:01 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-02-22 19:59 - 2014-10-29 02:01 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2015-02-22 19:59 - 2014-10-29 02:01 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2015-02-22 19:59 - 2014-10-29 02:01 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2015-02-22 19:59 - 2014-10-29 02:01 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFSvc.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10_1core.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFHost.exe
2015-02-22 19:59 - 2014-10-29 02:00 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedyn.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdscore.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\CryptoWinRT.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\dps.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Compression.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\biwinrt.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdprov.dll
2015-02-22 19:59 - 2014-10-29 02:00 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhst3g.exe
2015-02-22 19:59 - 2014-10-29 01:59 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxApplicabilityEngine.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10core.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\conhost.exe
2015-02-22 19:59 - 2014-10-29 01:59 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkEd.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmitomi.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmidcom.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\sstpsvc.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msched.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtclog.dll
2015-02-22 19:59 - 2014-10-29 01:59 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\comrepl.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00351744 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10_1.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\fundisc.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IDStore.dll
2015-02-22 19:59 - 2014-10-29 01:58 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\txflog.dll
2015-02-22 19:59 - 2014-10-29 01:57 - 00543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate.exe
2015-02-22 19:59 - 2014-10-29 01:57 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2PGraph.dll
2015-02-22 19:59 - 2014-10-29 01:57 - 00364032 _____ (Microsoft Corporation) C:\WINDOWS\system32\authfwcfg.dll
2015-02-22 19:59 - 2014-10-29 01:57 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Proximity.dll
2015-02-22 19:59 - 2014-10-29 01:57 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\qwave.dll
2015-02-22 19:59 - 2014-10-29 01:57 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mlang.dll
2015-02-22 19:59 - 2014-10-29 01:57 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2015-02-22 19:59 - 2014-10-29 01:57 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtutil.exe
2015-02-22 19:59 - 2014-10-29 01:57 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2015-02-22 19:59 - 2014-10-29 01:57 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2015-02-22 19:59 - 2014-10-29 01:57 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtstocom.exe
2015-02-22 19:59 - 2014-10-29 01:56 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_ssp_isv.exe
2015-02-22 19:59 - 2014-10-29 01:56 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMActivate_ssp.exe
2015-02-22 19:59 - 2014-10-29 01:56 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-02-22 19:59 - 2014-10-29 01:56 - 00297984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2015-02-22 19:59 - 2014-10-29 01:56 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll
2015-02-22 19:59 - 2014-10-29 01:56 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2015-02-22 19:59 - 2014-10-29 01:55 - 00887808 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dim700.dll
2015-02-22 19:59 - 2014-10-29 01:55 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2015-02-22 19:59 - 2014-10-29 01:55 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-02-22 19:59 - 2014-10-29 01:55 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2015-02-22 19:59 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-02-22 19:59 - 2014-10-29 01:55 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2015-02-22 19:59 - 2014-10-29 01:55 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2015-02-22 19:59 - 2014-10-29 01:55 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\hotspotauth.dll
2015-02-22 19:59 - 2014-10-29 01:55 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll
2015-02-22 19:59 - 2014-10-29 01:55 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsAuth.dll
2015-02-22 19:59 - 2014-10-29 01:54 - 00560640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-02-22 19:59 - 2014-10-29 01:54 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprapi.dll
2015-02-22 19:59 - 2014-10-29 01:54 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxclu.dll
2015-02-22 19:59 - 2014-10-29 01:54 - 00322560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtckrm.dll
2015-02-22 19:59 - 2014-10-29 01:54 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2015-02-22 19:59 - 2014-10-29 01:54 - 00178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2015-02-22 19:59 - 2014-10-29 01:54 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2015-02-22 19:59 - 2014-10-29 01:54 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2015-02-22 19:59 - 2014-10-29 01:53 - 00550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2015-02-22 19:59 - 2014-10-29 01:53 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll
2015-02-22 19:59 - 2014-10-29 01:53 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_8.dll
2015-02-22 19:59 - 2014-10-29 01:53 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2015-02-22 19:59 - 2014-10-29 01:53 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2015-02-22 19:59 - 2014-10-29 01:53 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdmaud.drv
2015-02-22 19:59 - 2014-10-29 01:53 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpsrv.dll
2015-02-22 19:59 - 2014-10-29 01:52 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2015-02-22 19:59 - 2014-10-29 01:52 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2015-02-22 19:59 - 2014-10-29 01:52 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL
2015-02-22 19:59 - 2014-10-29 01:52 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2015-02-22 19:59 - 2014-10-29 01:52 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-02-22 19:59 - 2014-10-29 01:52 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wecsvc.dll
2015-02-22 19:59 - 2014-10-29 01:52 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWSD.dll
2015-02-22 19:59 - 2014-10-29 01:52 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-02-22 19:59 - 2014-10-29 01:51 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll
2015-02-22 19:59 - 2014-10-29 01:51 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2015-02-22 19:59 - 2014-10-29 01:51 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2015-02-22 19:59 - 2014-10-29 01:51 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsCfg.dll
2015-02-22 19:59 - 2014-10-29 01:51 - 00169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiohlp.dll
2015-02-22 19:59 - 2014-10-29 01:50 - 00399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
2015-02-22 19:59 - 2014-10-29 01:50 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll
2015-02-22 19:59 - 2014-10-29 01:50 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2015-02-22 19:59 - 2014-10-29 01:50 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2015-02-22 19:59 - 2014-10-29 01:49 - 00831488 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2015-02-22 19:59 - 2014-10-29 01:49 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsvcs.dll
2015-02-22 19:59 - 2014-10-29 01:49 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2015-02-22 19:59 - 2014-10-29 01:49 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2015-02-22 19:59 - 2014-10-29 01:49 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-02-22 19:59 - 2014-10-29 01:49 - 00212480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2015-02-22 19:59 - 2014-10-29 01:49 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringStation.dll
2015-02-22 19:59 - 2014-10-29 01:49 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2015-02-22 19:59 - 2014-10-29 01:48 - 01170432 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSh.dll
2015-02-22 19:59 - 2014-10-29 01:48 - 00481280 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmscan.dll
2015-02-22 19:59 - 2014-10-29 01:48 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-02-22 19:59 - 2014-10-29 01:48 - 00354816 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2015-02-22 19:59 - 2014-10-29 01:48 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2015-02-22 19:59 - 2014-10-29 01:48 - 00140288 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DscCoreConfProv.dll
2015-02-22 19:59 - 2014-10-29 01:47 - 01144320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2015-02-22 19:59 - 2014-10-29 01:47 - 00527872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2015-02-22 19:59 - 2014-10-29 01:47 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll
2015-02-22 19:59 - 2014-10-29 01:47 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll
2015-02-22 19:59 - 2014-10-29 01:47 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-02-22 19:59 - 2014-10-29 01:47 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistWSDDiscoProv.dll
2015-02-22 19:59 - 2014-10-29 01:46 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntprint.dll
2015-02-22 19:59 - 2014-10-29 01:46 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll
2015-02-22 19:59 - 2014-10-29 01:46 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringMgr.dll
2015-02-22 19:59 - 2014-10-29 01:46 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-22 19:59 - 2014-10-29 01:46 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmon.dll
2015-02-22 19:59 - 2014-10-29 01:46 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll
2015-02-22 19:59 - 2014-10-29 01:45 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-02-22 19:59 - 2014-10-29 01:45 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.dll
2015-02-22 19:59 - 2014-10-29 01:45 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndfapi.dll
2015-02-22 19:59 - 2014-10-29 01:45 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstask.dll
2015-02-22 19:59 - 2014-10-29 01:45 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll
2015-02-22 19:59 - 2014-10-29 01:45 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2015-02-22 19:59 - 2014-10-29 01:45 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00732672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanpref.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdeploy.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll
2015-02-22 19:59 - 2014-10-29 01:44 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 01119232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00724480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSATAPI.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioCredProv.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\NAPMONTR.DLL
2015-02-22 19:59 - 2014-10-29 01:43 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.HardwareId.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceTypes.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AltTab.dll
2015-02-22 19:59 - 2014-10-29 01:43 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2015-02-22 19:59 - 2014-10-29 01:42 - 03277312 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootux.dll
2015-02-22 19:59 - 2014-10-29 01:42 - 00865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallControlPanel.dll
2015-02-22 19:59 - 2014-10-29 01:42 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2015-02-22 19:59 - 2014-10-29 01:42 - 00366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll
2015-02-22 19:59 - 2014-10-29 01:42 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2015-02-22 19:59 - 2014-10-29 01:42 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2015-02-22 19:59 - 2014-10-29 01:42 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.SpeechSynthesis.dll
2015-02-22 19:59 - 2014-10-29 01:42 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlancfg.dll
2015-02-22 19:59 - 2014-10-29 01:41 - 00472064 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2015-02-22 19:59 - 2014-10-29 01:41 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2015-02-22 19:59 - 2014-10-29 01:41 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-02-22 19:59 - 2014-10-29 01:41 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll
2015-02-22 19:59 - 2014-10-29 01:40 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll
2015-02-22 19:59 - 2014-10-29 01:40 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2015-02-22 19:59 - 2014-10-29 01:39 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2015-02-22 19:59 - 2014-10-29 01:39 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\umrdp.dll
2015-02-22 19:59 - 2014-10-29 01:39 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2015-02-22 19:59 - 2014-10-29 01:39 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingMonitor.dll
2015-02-22 19:59 - 2014-10-29 01:38 - 01232896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2015-02-22 19:59 - 2014-10-29 01:38 - 00565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2015-02-22 19:59 - 2014-10-29 01:37 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll
2015-02-22 19:59 - 2014-10-29 01:37 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2015-02-22 19:59 - 2014-10-29 01:35 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2015-02-22 19:59 - 2014-10-29 01:35 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2015-02-22 19:59 - 2014-10-29 01:31 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2015-02-22 19:59 - 2014-10-29 01:30 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll
2015-02-22 19:59 - 2014-10-29 01:30 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2015-02-22 19:59 - 2014-10-29 01:30 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2015-02-22 19:59 - 2014-10-15 09:37 - 00292160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2015-02-22 19:59 - 2014-10-08 09:17 - 00376128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-02-22 19:59 - 2014-10-08 07:46 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2015-02-22 19:59 - 2014-10-08 07:45 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2015-02-22 19:59 - 2014-09-27 05:16 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2015-02-22 19:59 - 2014-08-26 03:24 - 00270144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2015-02-22 19:58 - 2014-10-29 04:18 - 00255136 _____ (Microsoft Corporation) C:\WINDOWS\system32\powrprof.dll
2015-02-22 19:58 - 2014-10-29 04:18 - 00172936 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2015-02-22 19:58 - 2014-10-29 04:18 - 00092992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootsect.exe
2015-02-22 19:58 - 2014-10-29 04:18 - 00076096 _____ (Microsoft Corporation) C:\WINDOWS\system32\KeyboardFilterSvc.dll
2015-02-22 19:58 - 2014-10-29 04:18 - 00070728 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhost.exe
2015-02-22 19:58 - 2014-10-29 04:18 - 00067656 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostex.exe
2015-02-22 19:58 - 2014-10-29 04:18 - 00043344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2015-02-22 19:58 - 2014-10-29 04:18 - 00036160 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmbeddedAppLauncherConfig.dll
2015-02-22 19:58 - 2014-10-29 04:18 - 00034112 _____ (Microsoft Corporation) C:\WINDOWS\system32\KeyboardFilterCore.dll
2015-02-22 19:58 - 2014-10-29 04:18 - 00030528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2015-02-22 19:58 - 2014-10-29 04:18 - 00029920 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel.appcore.dll
2015-02-22 19:58 - 2014-10-29 04:18 - 00028992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2015-02-22 19:58 - 2014-10-29 04:18 - 00026432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2015-02-22 19:58 - 2014-10-29 04:18 - 00018752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2015-02-22 19:58 - 2014-10-29 04:17 - 00033088 _____ (Microsoft Corporation) C:\WINDOWS\system32\svchost.exe
2015-02-22 19:58 - 2014-10-29 04:15 - 00168256 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00156992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssenh.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00110512 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00099104 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptxml.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00096032 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsp.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00076912 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2015-02-22 19:58 - 2014-10-29 04:15 - 00074352 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00073840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00068168 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00064552 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00054680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlrmdr.exe
2015-02-22 19:58 - 2014-10-29 04:15 - 00051608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msasn1.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00035592 _____ (Microsoft Corporation) C:\WINDOWS\system32\netutils.dll
2015-02-22 19:58 - 2014-10-29 04:15 - 00021696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsrole.dll
2015-02-22 19:58 - 2014-10-29 04:12 - 00051096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2015-02-22 19:58 - 2014-10-29 04:12 - 00023360 _____ (Microsoft Corporation) C:\WINDOWS\system32\streamci.dll
2015-02-22 19:58 - 2014-10-29 04:12 - 00013760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\swenum.sys
2015-02-22 19:58 - 2014-10-29 04:11 - 00150776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2015-02-22 19:58 - 2014-10-29 04:11 - 00076912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfvdsp.dll
2015-02-22 19:58 - 2014-10-29 04:11 - 00031496 _____ (Microsoft Corporation) C:\WINDOWS\system32\avrt.dll
2015-02-22 19:58 - 2014-10-29 04:11 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\system32\CameraSettingsUIHost.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00091792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2015-02-22 19:58 - 2014-10-29 04:10 - 00070928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2015-02-22 19:58 - 2014-10-29 04:10 - 00066600 _____ (Microsoft Corporation) C:\WINDOWS\system32\sessionmsg.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00056600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhv.sys
2015-02-22 19:58 - 2014-10-29 04:10 - 00052664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wtsapi32.dll
2015-02-22 19:58 - 2014-10-29 04:10 - 00052664 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcRtRemote.dll
2015-02-22 19:58 - 2014-10-29 04:10 - 00045464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2015-02-22 19:58 - 2014-10-29 04:10 - 00044688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2015-02-22 19:58 - 2014-10-29 04:10 - 00040816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00038184 _____ (Microsoft Corporation) C:\WINDOWS\system32\utildll.dll
2015-02-22 19:58 - 2014-10-29 04:10 - 00034016 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00030944 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountBroker.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuntimeBroker.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\PasswordOnWakeSettingFlyout.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00026304 _____ (Microsoft Corporation) C:\WINDOWS\system32\version.dll
2015-02-22 19:58 - 2014-10-29 04:10 - 00026304 _____ (Microsoft Corporation) C:\WINDOWS\system32\PickerHost.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00025240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsRemoveDevice.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00022848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2015-02-22 19:58 - 2014-10-29 04:10 - 00020632 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00017528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SlideToShutDown.exe
2015-02-22 19:58 - 2014-10-29 04:10 - 00013976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2015-02-22 19:58 - 2014-10-29 04:09 - 00024256 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2015-02-22 19:58 - 2014-10-29 04:07 - 00110512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-02-22 19:58 - 2014-10-29 04:07 - 00039720 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdmo.dll
2015-02-22 19:58 - 2014-10-29 04:07 - 00036136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msgsm32.acm
2015-02-22 19:58 - 2014-10-29 04:07 - 00029960 _____ (Microsoft Corporation) C:\WINDOWS\system32\imaadp32.acm
2015-02-22 19:58 - 2014-10-29 04:07 - 00028896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msadp32.acm
2015-02-22 19:58 - 2014-10-29 04:07 - 00026816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2015-02-22 19:58 - 2014-10-29 04:07 - 00022720 _____ (Microsoft Corporation) C:\WINDOWS\system32\msg711.acm
2015-02-22 19:58 - 2014-10-29 04:07 - 00018040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2015-02-22 19:58 - 2014-10-29 04:06 - 00090368 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfAACEnc.dll
2015-02-22 19:58 - 2014-10-29 04:06 - 00080016 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-02-22 19:58 - 2014-10-29 04:06 - 00077632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2015-02-22 19:58 - 2014-10-29 04:05 - 00052152 _____ (Microsoft Corporation) C:\WINDOWS\system32\profapi.dll
2015-02-22 19:58 - 2014-10-29 04:05 - 00035616 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2015-02-22 19:58 - 2014-10-29 04:05 - 00030984 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptbase.dll
2015-02-22 19:58 - 2014-10-29 04:05 - 00026304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2015-02-22 19:58 - 2014-10-29 04:05 - 00020120 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2015-02-22 19:58 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcirt.dll
2015-02-22 19:58 - 2014-10-29 03:03 - 00297472 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-02-22 19:58 - 2014-10-29 03:03 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SSShim.dll
2015-02-22 19:58 - 2014-10-29 03:03 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2015-02-22 19:58 - 2014-10-29 03:03 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2015-02-22 19:58 - 2014-10-29 03:03 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lmhsvc.dll
2015-02-22 19:58 - 2014-10-29 03:03 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2015-02-22 19:58 - 2014-10-29 03:02 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2015-02-22 19:58 - 2014-10-29 03:01 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2015-02-22 19:58 - 2014-10-29 03:01 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncui.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pacer.sys
2015-02-22 19:58 - 2014-10-29 03:00 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisImPlatform.sys
2015-02-22 19:58 - 2014-10-29 03:00 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2015-02-22 19:58 - 2014-10-29 03:00 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\spfileq.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SPInf.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolss.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SortWindows6Compat.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys
2015-02-22 19:58 - 2014-10-29 03:00 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe
2015-02-22 19:58 - 2014-10-29 03:00 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc_os.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SortServer2003Compat.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\shgina.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmutil.dll
2015-02-22 19:58 - 2014-10-29 03:00 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\regidle.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 02013696 _____ (Microsoft Corporation) C:\WINDOWS\system32\batmeter.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdadiag.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciavi32.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\fthsvc.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsnmp32.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds_ps.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmocx.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\regini.exe
2015-02-22 19:58 - 2014-10-29 02:59 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\efslsaext.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\feclient.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\bderepair.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\htui.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\cnvfat.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\hidserv.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsutil.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmpbk32.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\comp.exe
2015-02-22 19:58 - 2014-10-29 02:59 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\fc.exe
2015-02-22 19:58 - 2014-10-29 02:59 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sisbkup.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2015-02-22 19:58 - 2014-10-29 02:59 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\replace.exe
2015-02-22 19:58 - 2014-10-29 02:59 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\doskey.exe
2015-02-22 19:58 - 2014-10-29 02:59 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\find.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msorcl32.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\repair-bde.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmiv2.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00085504 _____ (Radius Inc.) C:\WINDOWS\system32\iccvid.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\makecab.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00069120 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\l3codeca.acm
2015-02-22 19:58 - 2014-10-29 02:58 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdmat.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fmapi.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NapiNSP.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\drttransport.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcbcp.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcicda.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmmon32.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00035840 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\hwrcomp.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvidc32.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2015-02-22 19:58 - 2014-10-29 02:58 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnscacheugc.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ureg.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbtugc.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbnmpntw.dll
2015-02-22 19:58 - 2014-10-29 02:58 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\chkntfs.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\convert.exe
2015-02-22 19:58 - 2014-10-29 02:58 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2015-02-22 19:58 - 2014-10-29 02:58 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiltcfg.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsldpc.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\aelupsvc.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\cliconfg.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dispdiag.exe
2015-02-22 19:58 - 2014-10-29 02:57 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssdpapi.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\expand.exe
2015-02-22 19:58 - 2014-10-29 02:57 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\hidphone.tsp
2015-02-22 19:58 - 2014-10-29 02:57 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\efssvc.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdlg.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\qwinsta.exe
2015-02-22 19:58 - 2014-10-29 02:57 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2015-02-22 19:58 - 2014-10-29 02:57 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2015-02-22 19:58 - 2014-10-29 02:57 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\jnwmon.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\serwvdrv.dll
2015-02-22 19:58 - 2014-10-29 02:57 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmlprovi.dll
2015-02-22 19:58 - 2014-10-29 02:56 - 00107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2015-02-22 19:58 - 2014-10-29 02:56 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2015-02-22 19:58 - 2014-10-29 02:56 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtfwd.dll
2015-02-22 19:58 - 2014-10-29 02:56 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\djoin.exe
2015-02-22 19:58 - 2014-10-29 02:56 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll
2015-02-22 19:58 - 2014-10-29 02:56 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2015-02-22 19:58 - 2014-10-29 02:56 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dimsroam.dll
2015-02-22 19:58 - 2014-10-29 02:56 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksetup.exe
2015-02-22 19:58 - 2014-10-29 02:56 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\linkinfo.dll
2015-02-22 19:58 - 2014-10-29 02:56 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\icmui.dll
2015-02-22 19:58 - 2014-10-29 02:56 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\easconsent.dll
2015-02-22 19:58 - 2014-10-29 02:55 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2015-02-22 19:58 - 2014-10-29 02:55 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll
2015-02-22 19:58 - 2014-10-29 02:55 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\pid.dll
2015-02-22 19:58 - 2014-10-29 02:55 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2015-02-22 19:58 - 2014-10-29 02:54 - 00244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpsapi.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcshext.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfp.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapistub.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapi32.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\avicap32.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\drtprov.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsidsc.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsiCofire.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdiasqmmodule.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsauth.dll
2015-02-22 19:58 - 2014-10-29 02:54 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\extrac32.exe
2015-02-22 19:58 - 2014-10-29 02:54 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcPing.exe
2015-02-22 19:58 - 2014-10-29 02:54 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2015-02-22 19:58 - 2014-10-29 02:54 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\LldpNotify.dll
2015-02-22 19:58 - 2014-10-29 02:53 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2015-02-22 19:58 - 2014-10-29 02:53 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsutil.exe
2015-02-22 19:58 - 2014-10-29 02:53 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlaySndSrv.dll
2015-02-22 19:58 - 2014-10-29 02:53 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnification.dll
2015-02-22 19:58 - 2014-10-29 02:53 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\traffic.dll
2015-02-22 19:58 - 2014-10-29 02:53 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcnsh.dll
2015-02-22 19:58 - 2014-10-29 02:53 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsium.dll
2015-02-22 19:58 - 2014-10-29 02:53 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzSqlExt.dll
2015-02-22 19:58 - 2014-10-29 02:53 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bridgeunattend.exe
2015-02-22 19:58 - 2014-10-29 02:53 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe
2015-02-22 19:58 - 2014-10-29 02:52 - 00289280 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\fms.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc_ssp_isv.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc_ssp.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertPolEng.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-02-22 19:58 - 2014-10-29 02:52 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3dlg.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdhui.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmutil.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsigd.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToStatusProvider.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmib.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\cofiredm.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ias.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll
2015-02-22 19:58 - 2014-10-29 02:52 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\compact.exe
2015-02-22 19:58 - 2014-10-29 02:51 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsdmo.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2015-02-22 19:58 - 2014-10-29 02:51 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvfw32.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbceip.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\olecli32.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\KMSVC.DLL
2015-02-22 19:58 - 2014-10-29 02:51 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasdatastore.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dxof.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprovisionsp.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\takeown.exe
2015-02-22 19:58 - 2014-10-29 02:51 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmdCoinstall.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetVscCoinstall.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasphone.exe
2015-02-22 19:58 - 2014-10-29 02:51 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msports.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmloader.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UI0Detect.exe
2015-02-22 19:58 - 2014-10-29 02:51 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdrleakdiag.exe
2015-02-22 19:58 - 2014-10-29 02:51 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistAD.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmband.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\where.exe
2015-02-22 19:58 - 2014-10-29 02:51 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialer.exe
2015-02-22 19:58 - 2014-10-29 02:51 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\olesvr32.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\timeout.exe
2015-02-22 19:58 - 2014-10-29 02:51 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthpanapi.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\clip.exe
2015-02-22 19:58 - 2014-10-29 02:51 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dswave.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshcon.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernelceip.dll
2015-02-22 19:58 - 2014-10-29 02:51 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetmon.dll
2015-02-22 19:58 - 2014-10-29 02:50 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmsynth.dll
2015-02-22 19:58 - 2014-10-29 02:50 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhevents.dll
2015-02-22 19:58 - 2014-10-29 02:50 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\g711codc.ax
2015-02-22 19:58 - 2014-10-29 02:50 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsRdpWebAccess.dll
2015-02-22 19:58 - 2014-10-29 02:50 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdiagschd.dll
2015-02-22 19:58 - 2014-10-29 02:50 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cttunesvr.exe
2015-02-22 19:58 - 2014-10-29 02:50 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MemoryDiagnostic.dll
2015-02-22 19:58 - 2014-10-29 02:50 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxsstore.dll
2015-02-22 19:58 - 2014-10-29 02:50 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsldr.exe
2015-02-22 19:58 - 2014-10-29 02:49 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\PkgMgr.exe
2015-02-22 19:58 - 2014-10-29 02:49 - 00113664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmview.ocx
2015-02-22 19:58 - 2014-10-29 02:49 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsrchph.dll
2015-02-22 19:58 - 2014-10-29 02:49 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsutilext.dll
2015-02-22 19:58 - 2014-10-29 02:49 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcleanup.dll
2015-02-22 19:58 - 2014-10-29 02:49 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\gacinstall.dll
2015-02-22 19:58 - 2014-10-29 02:49 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\certenc.dll
2015-02-22 19:58 - 2014-10-29 02:49 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciqtz32.dll
2015-02-22 19:58 - 2014-10-29 02:49 - 00036672 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2015-02-22 19:58 - 2014-10-29 02:49 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDisplayStatusManager.dll
2015-02-22 19:58 - 2014-10-29 02:49 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdeui.dll
2015-02-22 19:58 - 2014-10-29 02:48 - 01497600 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskcopy.dll
2015-02-22 19:58 - 2014-10-29 02:48 - 00466944 _____ (Microsoft Corporation) C:\WINDOWS\system32\main.cpl
2015-02-22 19:58 - 2014-10-29 02:48 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveprompt.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsicli.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\verifier.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaatext.dll
2015-02-22 19:58 - 2014-10-29 02:48 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\sigverif.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Syncreg.dll
2015-02-22 19:58 - 2014-10-29 02:48 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\whoami.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuditPolicyGPInterop.dll
2015-02-22 19:58 - 2014-10-29 02:48 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwanRadioManager.dll
2015-02-22 19:58 - 2014-10-29 02:48 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdl32.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2015-02-22 19:58 - 2014-10-29 02:48 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdchange.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\forfiles.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\RotMgr.dll
2015-02-22 19:58 - 2014-10-29 02:48 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfdts.dll
2015-02-22 19:58 - 2014-10-29 02:48 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\eventcreate.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\waitfor.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\choice.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapilua.dll
2015-02-22 19:58 - 2014-10-29 02:48 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\setspn.exe
2015-02-22 19:58 - 2014-10-29 02:48 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsCtfMonitor.dll
2015-02-22 19:58 - 2014-10-29 02:47 - 00186368 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\l3codecp.acm
2015-02-22 19:58 - 2014-10-29 02:47 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\charmap.exe
2015-02-22 19:58 - 2014-10-29 02:47 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\gcdef.dll
2015-02-22 19:58 - 2014-10-29 02:47 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvc.dll
2015-02-22 19:58 - 2014-10-29 02:47 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootcfg.exe
2015-02-22 19:58 - 2014-10-29 02:47 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\console.dll
2015-02-22 19:58 - 2014-10-29 02:47 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsrchapi.dll
2015-02-22 19:58 - 2014-10-29 02:47 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\openfiles.exe
2015-02-22 19:58 - 2014-10-29 02:47 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanHC.dll
2015-02-22 19:58 - 2014-10-29 02:47 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\iaspolcy.dll
2015-02-22 19:58 - 2014-10-29 02:47 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSTheme.exe
2015-02-22 19:58 - 2014-10-29 02:47 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddodiag.exe
2015-02-22 19:58 - 2014-10-29 02:47 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSMON.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\discan.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvscmgr.exe
2015-02-22 19:58 - 2014-10-29 02:46 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbccp32.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupugc.exe
2015-02-22 19:58 - 2014-10-29 02:46 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmjpegdec.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompMgmtLauncher.exe
2015-02-22 19:58 - 2014-10-29 02:46 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasacct.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\loghours.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabbtnEx.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardDlg.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmci.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasads.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\vfwwdm32.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsvd.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssec.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dtsh.dll
2015-02-22 19:58 - 2014-10-29 02:46 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dot3Conn.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiexe.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsutil.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NdisImPlatform.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\iashlpr.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\QUTIL.DLL
2015-02-22 19:58 - 2014-10-29 02:45 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\synceng.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbui.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlahc.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksxbar.ax
2015-02-22 19:58 - 2014-10-29 02:45 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbisurf.ax
2015-02-22 19:58 - 2014-10-29 02:45 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\bidispl.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cipher.exe
2015-02-22 19:58 - 2014-10-29 02:45 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\napipsec.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfg.exe
2015-02-22 19:58 - 2014-10-29 02:45 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmiprop.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthSQM.dll
2015-02-22 19:58 - 2014-10-29 02:45 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\chkwudrv.dll
2015-02-22 19:58 - 2014-10-29 02:44 - 00778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Bubbles.scr
2015-02-22 19:58 - 2014-10-29 02:44 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvenotify.exe
2015-02-22 19:58 - 2014-10-29 02:44 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RelPost.exe
2015-02-22 19:58 - 2014-10-29 02:44 - 00126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfg.exe
2015-02-22 19:58 - 2014-10-29 02:44 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Mystify.scr
2015-02-22 19:58 - 2014-10-29 02:44 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Ribbons.scr
2015-02-22 19:58 - 2014-10-29 02:44 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontview.exe
2015-02-22 19:58 - 2014-10-29 02:44 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\QCLIPROV.DLL
2015-02-22 19:58 - 2014-10-29 02:44 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3cfg.dll
2015-02-22 19:58 - 2014-10-29 02:44 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmcfg32.dll
2015-02-22 19:58 - 2014-10-29 02:44 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwlauncher.exe
2015-02-22 19:58 - 2014-10-29 02:43 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3mm.dll
2015-02-22 19:58 - 2014-10-29 02:43 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2015-02-22 19:58 - 2014-10-29 02:43 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fphc.dll
2015-02-22 19:58 - 2014-10-29 02:43 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2015-02-22 19:58 - 2014-10-29 02:43 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdaplgin.ax
2015-02-22 19:58 - 2014-10-29 02:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\scripto.dll
2015-02-22 19:58 - 2014-10-29 02:43 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\xwizard.exe
2015-02-22 19:58 - 2014-10-29 02:43 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngprovider.dll
2015-02-22 19:58 - 2014-10-29 02:43 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\capiprovider.dll
2015-02-22 19:58 - 2014-10-29 02:43 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2015-02-22 19:58 - 2014-10-29 02:43 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\dispci.dll
2015-02-22 19:58 - 2014-10-29 02:43 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\adprovider.dll
2015-02-22 19:58 - 2014-10-29 02:43 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AtBroker.exe
2015-02-22 19:58 - 2014-10-29 02:43 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredprovider.dll
2015-02-22 19:58 - 2014-10-29 02:42 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2015-02-22 19:58 - 2014-10-29 02:42 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2015-02-22 19:58 - 2014-10-29 02:42 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppnp.dll
2015-02-22 19:58 - 2014-10-29 02:42 - 00101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2015-02-22 19:58 - 2014-10-29 02:42 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2015-02-22 19:58 - 2014-10-29 02:42 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\igdDiag.dll
2015-02-22 19:58 - 2014-10-29 02:42 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\radarrs.dll
2015-02-22 19:58 - 2014-10-29 02:42 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Storprop.dll
2015-02-22 19:58 - 2014-10-29 02:42 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapiprovider.dll
2015-02-22 19:58 - 2014-10-29 02:42 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFCoinstaller.dll
2015-02-22 19:58 - 2014-10-29 02:41 - 01068032 _____ (Microsoft Corporation) C:\WINDOWS\system32\onexui.dll
2015-02-22 19:58 - 2014-10-29 02:41 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\modemui.dll
2015-02-22 19:58 - 2014-10-29 02:41 - 00126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll
2015-02-22 19:58 - 2014-10-29 02:41 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\kstvtune.ax
2015-02-22 19:58 - 2014-10-29 02:41 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmictimeprovider.dll
2015-02-22 19:58 - 2014-10-29 02:40 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2015-02-22 19:58 - 2014-10-29 02:40 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\desk.cpl
2015-02-22 19:58 - 2014-10-29 02:40 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\joy.cpl
2015-02-22 19:58 - 2014-10-29 02:40 - 00125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2015-02-22 19:58 - 2014-10-29 02:40 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinMsoIrmProtector.dll
2015-02-22 19:58 - 2014-10-29 02:40 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinOpcIrmProtector.dll
2015-02-22 19:58 - 2014-10-29 02:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintIsolationHost.exe
2015-02-22 19:58 - 2014-10-29 02:40 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe
2015-02-22 19:58 - 2014-10-29 02:40 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
2015-02-22 19:58 - 2014-10-29 02:40 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\deskadp.dll
2015-02-22 19:58 - 2014-10-29 02:40 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhsetup.dll
2015-02-22 19:58 - 2014-10-29 02:40 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\docprop.dll
2015-02-22 19:58 - 2014-10-29 02:40 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdmlog.dll
2015-02-22 19:58 - 2014-10-29 02:40 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdown.exe
2015-02-22 19:58 - 2014-10-29 02:40 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\proquota.exe
2015-02-22 19:58 - 2014-10-29 02:39 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthFWGP.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuditNativeSnapIn.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsigd.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\auditcse.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mydocs.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe
2015-02-22 19:58 - 2014-10-29 02:39 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAMM.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\isoburn.exe
2015-02-22 19:58 - 2014-10-29 02:39 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tabcal.exe
2015-02-22 19:58 - 2014-10-29 02:39 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\napdsnap.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhautoplay.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\TapiMigPlugin.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ustprov.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\deskmon.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\RegCtrl.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncHost.exe
2015-02-22 19:58 - 2014-10-29 02:39 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2015-02-22 19:58 - 2014-10-29 02:39 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ThumbnailExtractionHost.exe
2015-02-22 19:58 - 2014-10-29 02:39 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthMtpContextHandler.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\dvdupgrd.exe
2015-02-22 19:58 - 2014-10-29 02:39 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcdProp.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DefaultPrinterProvider.dll
2015-02-22 19:58 - 2014-10-29 02:39 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\prevhost.exe
2015-02-22 19:58 - 2014-10-29 02:38 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\hdwwiz.cpl
2015-02-22 19:58 - 2014-10-29 02:38 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SNTSearch.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00212480 _____ (Microsoft Corporation) C:\WINDOWS\system32\cleanmgr.exe
2015-02-22 19:58 - 2014-10-29 02:38 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhmanagew.exe
2015-02-22 19:58 - 2014-10-29 02:38 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2015-02-22 19:58 - 2014-10-29 02:38 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdart.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\CscMig.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndfhcdiscovery.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\logman.exe
2015-02-22 19:58 - 2014-10-29 02:38 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmstp.exe
2015-02-22 19:58 - 2014-10-29 02:38 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\XPSSHHDR.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbccr32.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\correngine.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfsShlEx.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2nacp.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3hc.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msident.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersGPExt.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\playlistfolder.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhtask.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucmhc.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmlua.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\runonce.exe
2015-02-22 19:58 - 2014-10-29 02:38 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\hcproviders.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcsPlugInService.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\aecache.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00032768 _____ (Twain Working Group) C:\WINDOWS\twunk_32.exe
2015-02-22 19:58 - 2014-10-29 02:38 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tvratings.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndfetw.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\witnesswmiv2provider.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsepno.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsDeviceAccessRevocation.dll
2015-02-22 19:58 - 2014-10-29 02:38 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\shpafact.dll
2015-02-22 19:58 - 2014-10-29 02:37 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrpUxNativeSnapIn.dll
2015-02-22 19:58 - 2014-10-29 02:37 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\cabview.dll
2015-02-22 19:58 - 2014-10-29 02:37 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbccu32.dll
2015-02-22 19:58 - 2014-10-29 02:37 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprnext.dll
2015-02-22 19:58 - 2014-10-29 02:37 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2015-02-22 19:58 - 2014-10-29 02:37 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwsso.dll
2015-02-22 19:58 - 2014-10-29 02:37 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2015-02-22 19:58 - 2014-10-29 02:36 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll
2015-02-22 19:58 - 2014-10-29 02:36 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWNet.dll
2015-02-22 19:58 - 2014-10-29 02:35 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationSettings.exe
2015-02-22 19:58 - 2014-10-29 02:35 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfmon.exe
2015-02-22 19:58 - 2014-10-29 02:35 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\xwreg.dll
2015-02-22 19:58 - 2014-10-29 02:35 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2015-02-22 19:58 - 2014-10-29 02:35 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\PNPXAssoc.dll
2015-02-22 19:58 - 2014-10-29 02:35 - 00075264 _____ () C:\WINDOWS\system32\BthpanContextHandler.dll
2015-02-22 19:58 - 2014-10-29 02:35 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Query.dll
2015-02-22 19:58 - 2014-10-29 02:35 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WABSyncProvider.dll
2015-02-22 19:58 - 2014-10-29 02:35 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2015-02-22 19:58 - 2014-10-29 02:35 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConnectedAccountState.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00644608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dccw.exe
2015-02-22 19:58 - 2014-10-29 02:34 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceStatus.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\shrpubw.exe
2015-02-22 19:58 - 2014-10-29 02:34 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdminst.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddpchunk.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\McxDriv.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\EhStorAPI.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddptrace.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\profprov.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthci.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmi.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptext.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00054272 _____ (Twain Working Group) C:\WINDOWS\twain_32.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00046080 _____ () C:\WINDOWS\system32\BWContextHandler.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwrshplugin.dll
2015-02-22 19:58 - 2014-10-29 02:34 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\FdDevQuery.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RASMM.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddputils.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\uireng.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpclean.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\scavengeui.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\remotesp.tsp
2015-02-22 19:58 - 2014-10-29 02:33 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshext.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsockhc.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountControlSettings.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\btpanui.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\frprov.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpmonui.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistHttpTrans.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentHost.dll
2015-02-22 19:58 - 2014-10-29 02:33 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\srwmi.dll
2015-02-22 19:58 - 2014-10-29 02:32 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfrgui.exe
2015-02-22 19:58 - 2014-10-29 02:32 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cttune.exe
2015-02-22 19:58 - 2014-10-29 02:32 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskbarcpl.dll
2015-02-22 19:58 - 2014-10-29 02:32 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\RstrtMgr.dll
2015-02-22 19:58 - 2014-10-29 02:32 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll
2015-02-22 19:58 - 2014-10-29 02:32 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\hotplug.dll
2015-02-22 19:58 - 2014-10-29 02:32 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll
2015-02-22 19:58 - 2014-10-29 02:32 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeXmlParser.dll
2015-02-22 19:58 - 2014-10-29 02:32 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoveDeviceContextHandler.dll
2015-02-22 19:58 - 2014-10-29 02:31 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll
2015-02-22 19:58 - 2014-10-29 02:31 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\EhStorPwdMgr.dll
2015-02-22 19:58 - 2014-10-29 02:31 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DFDWiz.exe
2015-02-22 19:58 - 2014-10-29 02:31 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MaintenanceUI.dll
2015-02-22 19:58 - 2014-10-29 02:31 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mimefilt.dll
2015-02-22 19:58 - 2014-10-29 02:31 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\credwiz.exe
2015-02-22 19:58 - 2014-10-29 02:31 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDriverRetrievalClient.dll
2015-02-22 19:58 - 2014-10-29 02:30 - 00605696 _____ (Microsoft Corporation) C:\WINDOWS\system32\colorui.dll
2015-02-22 19:58 - 2014-10-29 02:30 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\EhStorShell.dll
2015-02-22 19:58 - 2014-10-29 02:30 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\manage-bde.exe
2015-02-22 19:58 - 2014-10-29 02:30 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2015-02-22 19:58 - 2014-10-29 02:30 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoplay.dll
2015-02-22 19:58 - 2014-10-29 02:30 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssadmin.exe
2015-02-22 19:58 - 2014-10-29 02:30 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiascanprofiles.dll
2015-02-22 19:58 - 2014-10-29 02:30 - 00085504 _____ (Microsoft) C:\WINDOWS\system32\SMBHelperClass.dll
2015-02-22 19:58 - 2014-10-29 02:30 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndishc.dll
2015-02-22 19:58 - 2014-10-29 02:30 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MuiUnattend.exe
2015-02-22 19:58 - 2014-10-29 02:30 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhlisten.dll
2015-02-22 19:58 - 2014-10-29 02:30 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAConn.dll
2015-02-22 19:58 - 2014-10-29 02:29 - 00528896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenterCPL.dll
2015-02-22 19:58 - 2014-10-29 02:29 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\srrstr.dll
2015-02-22 19:58 - 2014-10-29 02:29 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingFolder.dll
2015-02-22 19:58 - 2014-10-29 02:29 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\keymgr.dll
2015-02-22 19:58 - 2014-10-29 02:29 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\credui.dll
2015-02-22 19:58 - 2014-10-29 02:29 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dsui.dll
2015-02-22 19:58 - 2014-10-29 02:29 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaacmgr.exe
2015-02-22 19:58 - 2014-10-29 02:29 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\systeminfo.exe
2015-02-22 19:58 - 2014-10-29 02:29 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe
2015-02-22 19:58 - 2014-10-29 02:29 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\driverquery.exe
2015-02-22 19:58 - 2014-10-29 02:29 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\getmac.exe
2015-02-22 19:58 - 2014-10-29 02:29 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDScanProxy.dll
2015-02-22 19:58 - 2014-10-29 02:29 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SrTasks.exe
2015-02-22 19:58 - 2014-10-29 02:28 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2015-02-22 19:58 - 2014-10-29 02:28 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\remotepg.dll
2015-02-22 19:58 - 2014-10-29 02:28 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SoundRecorder.exe
2015-02-22 19:58 - 2014-10-29 02:28 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\tasklist.exe
2015-02-22 19:58 - 2014-10-29 02:28 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskkill.exe
2015-02-22 19:58 - 2014-10-29 02:28 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\srhelper.dll
2015-02-22 19:58 - 2014-10-29 02:28 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2015-02-22 19:58 - 2014-10-29 02:28 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2015-02-22 19:58 - 2014-10-29 02:28 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2015-02-22 19:58 - 2014-10-29 02:28 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSa.exe
2015-02-22 19:58 - 2014-10-29 02:28 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetProxyCredential.dll
2015-02-22 19:58 - 2014-10-29 02:28 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinFax.dll
2015-02-22 19:58 - 2014-10-29 02:27 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\irprops.cpl
2015-02-22 19:58 - 2014-10-29 02:27 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2015-02-22 19:58 - 2014-10-29 02:27 - 00277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2015-02-22 19:58 - 2014-10-29 02:27 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXST30.dll
2015-02-22 19:58 - 2014-10-29 02:27 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\irftp.exe
2015-02-22 19:58 - 2014-10-29 02:27 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOM.dll
2015-02-22 19:58 - 2014-10-29 02:27 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\HelpPaneProxy.dll
2015-02-22 19:58 - 2014-10-29 02:27 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\signdrv.dll
2015-02-22 19:58 - 2014-10-29 02:26 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\EhStorAuthn.exe
2015-02-22 19:58 - 2014-10-29 02:26 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\racpldlg.dll
2015-02-22 19:58 - 2014-10-29 02:26 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnshc.dll
2015-02-22 19:58 - 2014-10-29 02:26 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSEXT32.dll
2015-02-22 19:58 - 2014-10-29 02:26 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\uicom.dll
2015-02-22 19:58 - 2014-10-29 02:26 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2015-02-22 19:58 - 2014-10-29 02:26 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll
2015-02-22 19:58 - 2014-10-29 02:26 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfp.exe
2015-02-22 19:58 - 2014-10-29 02:26 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimgvw.dll
2015-02-22 19:58 - 2014-10-29 02:25 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSST.dll
2015-02-22 19:58 - 2014-10-29 02:25 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleprn.dll
2015-02-22 19:58 - 2014-10-29 02:25 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe
2015-02-22 19:58 - 2014-10-29 02:25 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\PnPUnattend.exe
2015-02-22 19:58 - 2014-10-29 02:25 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmlfilter.dll
2015-02-22 19:58 - 2014-10-29 02:25 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\networkitemfactory.dll
2015-02-22 19:58 - 2014-10-29 02:25 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\rrinstaller.exe
2015-02-22 19:58 - 2014-10-29 02:25 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpui.dll
2015-02-22 19:58 - 2014-10-29 02:25 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtffilt.dll
2015-02-22 19:58 - 2014-10-29 02:25 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPDShextAutoplay.exe
2015-02-22 19:58 - 2014-10-29 02:24 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiashext.dll
2015-02-22 19:58 - 2014-10-29 02:24 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdechangepin.exe
2015-02-22 19:58 - 2014-10-29 02:24 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwlauncher.dll
2015-02-22 19:58 - 2014-10-29 02:24 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2015-02-22 19:58 - 2014-10-29 02:24 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpdMtpUS.dll
2015-02-22 19:58 - 2014-10-29 02:24 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\raserver.exe
2015-02-22 19:58 - 2014-10-29 02:24 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\recovery.dll
2015-02-22 19:58 - 2014-10-29 02:23 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSTIFF.dll
2015-02-22 19:58 - 2014-10-29 02:23 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlandlg.dll
2015-02-22 19:58 - 2014-10-29 02:23 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netid.dll
2015-02-22 19:58 - 2014-10-29 02:23 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcwutl.dll
2015-02-22 19:58 - 2014-10-29 02:23 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkspbrokerAx.dll
2015-02-22 19:58 - 2014-10-29 02:22 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSUTILITY.dll
2015-02-22 19:58 - 2014-10-29 02:22 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2015-02-22 19:58 - 2014-10-29 02:22 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmInit.exe
2015-02-22 19:58 - 2014-10-29 02:21 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2015-02-22 19:58 - 2014-10-29 02:21 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanHC.dll
2015-02-22 19:58 - 2014-10-29 02:21 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpaceAgent.exe
2015-02-22 19:58 - 2014-10-29 02:21 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintBrmUi.exe
2015-02-22 19:58 - 2014-10-29 02:20 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\L2SecHC.dll
2015-02-22 19:58 - 2014-10-29 02:20 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitagent.exe
2015-02-22 19:58 - 2014-10-29 02:20 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSXP32.dll
2015-02-22 19:58 - 2014-10-29 02:20 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrahc.dll
2015-02-22 19:58 - 2014-10-29 02:20 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winethc.dll
2015-02-22 19:58 - 2014-10-29 02:20 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSROUTE.dll
2015-02-22 19:58 - 2014-10-29 02:20 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthExt.dll
2015-02-22 19:58 - 2014-10-29 02:19 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\logagent.exe
2015-02-22 19:58 - 2014-10-29 02:18 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpd_ci.dll
2015-02-22 19:58 - 2014-10-29 02:18 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2015-02-22 19:58 - 2014-10-29 02:18 - 00105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\immersivetpmvscmgrsvr.exe
2015-02-22 19:58 - 2014-10-29 02:18 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvscmgrsvr.exe
2015-02-22 19:58 - 2014-10-29 02:18 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmttpmvscmgrsvr.exe
2015-02-22 19:58 - 2014-10-29 02:17 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysdm.cpl
2015-02-22 19:58 - 2014-10-29 02:17 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaSvc.dll
2015-02-22 19:58 - 2014-10-29 02:17 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2015-02-22 19:58 - 2014-10-29 02:17 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-02-22 19:58 - 2014-10-29 02:16 - 01669632 _____ (Microsoft Corporation) C:\WINDOWS\system32\networkexplorer.dll
2015-02-22 19:58 - 2014-10-29 02:15 - 01129984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2015-02-22 19:58 - 2014-10-29 02:15 - 00671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsuiext.dll
2015-02-22 19:58 - 2014-10-29 02:14 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2015-02-22 19:58 - 2014-10-29 02:14 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Groupinghc.dll
2015-02-22 19:58 - 2014-10-29 02:11 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsadu.dll
2015-02-22 19:58 - 2014-10-29 02:07 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\unregmp2.exe
2015-02-22 19:58 - 2014-10-29 02:06 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2015-02-22 19:58 - 2014-10-29 02:06 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2015-02-22 19:58 - 2014-10-29 02:06 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmiclnt.dll
2015-02-22 19:58 - 2014-10-29 02:06 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpapi.dll
2015-02-22 19:58 - 2014-10-29 02:06 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\secur32.dll
2015-02-22 19:58 - 2014-10-29 02:06 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
2015-02-22 19:58 - 2014-10-29 02:06 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FileAppxStreamingDataSource.dll


RonnysPC 23.02.2015 18:51

FRST.txt Teil 3-3
Code:

2015-02-22 19:58 - 2014-10-29 02:05 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\elslad.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\regsvc.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\KdsCli.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\hbaapi.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspatchc.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\samcli.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe
2015-02-22 19:58 - 2014-10-29 02:05 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\sc.exe
2015-02-22 19:58 - 2014-10-29 02:05 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcEpMap.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ftp.exe
2015-02-22 19:58 - 2014-10-29 02:05 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mskeyprotect.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lodctr.exe
2015-02-22 19:58 - 2014-10-29 02:05 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfscli.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtutils.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\scext.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspatcha.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfos.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Websocket.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfdisk.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vidcap.ax
2015-02-22 19:58 - 2014-10-29 02:05 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\icacls.exe
2015-02-22 19:58 - 2014-10-29 02:05 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32topl.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcsubs.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmpapi.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\hid.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbs.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\more.com
2015-02-22 19:58 - 2014-10-29 02:05 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\userinit.exe
2015-02-22 19:58 - 2014-10-29 02:05 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsparse.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecerts.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysntfy.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.TimeBroker.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsperf.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\attrib.exe
2015-02-22 19:58 - 2014-10-29 02:05 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshqos.dll
2015-02-22 19:58 - 2014-10-29 02:05 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mi.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdsapi.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\netsh.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nslookup.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallButtons.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\uexfat.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpnsp.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentprf.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanman.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncobjapi.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\auditpol.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\setx.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\net.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\xcopy.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscapi.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\format.com
2015-02-22 19:58 - 2014-10-29 02:04 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\typeperf.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\relog.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecEdit.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumapi.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscore.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetEvtFwdr.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpscript.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\findstr.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cacls.exe
2015-02-22 19:58 - 2014-10-29 02:04 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll
2015-02-22 19:58 - 2014-10-29 02:04 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\EventAggregation.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\icm32.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mimofcodec.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe
2015-02-22 19:58 - 2014-10-29 02:03 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.exe
2015-02-22 19:58 - 2014-10-29 02:03 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wecapi.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidnsp.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\fmifs.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.Fontgroups.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeservice.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MirrorDrvCompat.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypttpmeksvc.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInput1_4.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll
2015-02-22 19:58 - 2014-10-29 02:03 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\chkdsk.exe
2015-02-22 19:58 - 2014-10-29 02:02 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll
2015-02-22 19:58 - 2014-10-29 02:02 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2015-02-22 19:58 - 2014-10-29 02:02 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll
2015-02-22 19:58 - 2014-10-29 02:02 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevDispItemProvider.dll
2015-02-22 19:58 - 2014-10-29 02:02 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wecutil.exe
2015-02-22 19:58 - 2014-10-29 02:02 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanext.exe
2015-02-22 19:58 - 2014-10-29 02:02 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2015-02-22 19:58 - 2014-10-29 02:02 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2015-02-22 19:58 - 2014-10-29 02:02 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2015-02-22 19:58 - 2014-10-29 02:02 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\procinst.dll
2015-02-22 19:58 - 2014-10-29 02:01 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2015-02-22 19:58 - 2014-10-29 02:01 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2015-02-22 19:58 - 2014-10-29 02:01 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlgpclnt.dll
2015-02-22 19:58 - 2014-10-29 02:01 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcss.dll
2015-02-22 19:58 - 2014-10-29 02:01 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-02-22 19:58 - 2014-10-29 02:01 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2015-02-22 19:58 - 2014-10-29 02:01 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msauserext.dll
2015-02-22 19:58 - 2014-10-29 02:01 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\keyiso.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Winlangdb.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\korwbrkr.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.HostName.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngcredui.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\trkwks.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinRtTracing.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdi.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdsrv.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\alg.exe
2015-02-22 19:58 - 2014-10-29 02:00 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmtrace.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ELSCore.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Sens.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanRadioManager.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\nduprov.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Background.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\threadpoolwinrt.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\luainstall.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddrawex.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfctrs.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpscript.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Printers.Extensions.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Portable.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\NETSTAT.EXE
2015-02-22 19:58 - 2014-10-29 02:00 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipconfig.exe
2015-02-22 19:58 - 2014-10-29 02:00 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\dimsjob.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxlegih.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfmifs.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxdm.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\elsTrans.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Display.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.SystemManufacturers.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnsruprov.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\encapi.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\delegatorprovider.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi_passthru.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.RemoteDesktop.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentTask.dll
2015-02-22 19:58 - 2014-10-29 02:00 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeSyncTask.dll
2015-02-22 19:58 - 2014-10-29 01:59 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll
2015-02-22 19:58 - 2014-10-29 01:59 - 00076800 _____ (Microsoft) C:\WINDOWS\system32\VaultRoaming.dll
2015-02-22 19:58 - 2014-10-29 01:59 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\colbact.dll
2015-02-22 19:58 - 2014-10-29 01:59 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dasHost.exe
2015-02-22 19:58 - 2014-10-29 01:59 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\prvdmofcomp.dll
2015-02-22 19:58 - 2014-10-29 01:59 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2015-02-22 19:58 - 2014-10-29 01:59 - 00054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\pautoenr.dll
2015-02-22 19:58 - 2014-10-29 01:59 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\stclient.dll
2015-02-22 19:58 - 2014-10-29 01:59 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmbmgr.dll
2015-02-22 19:58 - 2014-10-29 01:59 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2015-02-22 19:58 - 2014-10-29 01:59 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpauto.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00178688 _____ (Microsoft Corp.) C:\WINDOWS\system32\Defrag.exe
2015-02-22 19:58 - 2014-10-29 01:58 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\smbwmiv2.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\EAPQEC.DLL
2015-02-22 19:58 - 2014-10-29 01:58 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbussdapi.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpowmi.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdsdwmdr.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimtf.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\RoamingSecurity.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofTasks.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2015-02-22 19:58 - 2014-10-29 01:58 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2015-02-22 19:58 - 2014-10-29 01:57 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\onex.dll
2015-02-22 19:58 - 2014-10-29 01:57 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2015-02-22 19:58 - 2014-10-29 01:57 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManagerAPI.dll
2015-02-22 19:58 - 2014-10-29 01:57 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2015-02-22 19:58 - 2014-10-29 01:57 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2015-02-22 19:58 - 2014-10-29 01:57 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmifw.dll
2015-02-22 19:58 - 2014-10-29 01:57 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Pnrphc.dll
2015-02-22 19:58 - 2014-10-29 01:57 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetmib1.dll
2015-02-22 19:58 - 2014-10-29 01:57 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll
2015-02-22 19:58 - 2014-10-29 01:57 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrshost.exe
2015-02-22 19:58 - 2014-10-29 01:56 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\certCredProvider.dll
2015-02-22 19:58 - 2014-10-29 01:56 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapsvc.dll
2015-02-22 19:58 - 2014-10-29 01:56 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwcfg.dll
2015-02-22 19:58 - 2014-10-29 01:56 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe
2015-02-22 19:58 - 2014-10-29 01:56 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\xolehlp.dll
2015-02-22 19:58 - 2014-10-29 01:56 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityServicePal.dll
2015-02-22 19:58 - 2014-10-29 01:56 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FDResPub.dll
2015-02-22 19:58 - 2014-10-29 01:55 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2015-02-22 19:58 - 2014-10-29 01:55 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtc.exe
2015-02-22 19:58 - 2014-10-29 01:55 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\umb.dll
2015-02-22 19:58 - 2014-10-29 01:55 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdPnp.dll
2015-02-22 19:58 - 2014-10-29 01:54 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2015-02-22 19:58 - 2014-10-29 01:54 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHCPQEC.DLL
2015-02-22 19:58 - 2014-10-29 01:54 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceConnectApi.dll
2015-02-22 19:58 - 2014-10-29 01:54 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpoext.dll
2015-02-22 19:58 - 2014-10-29 01:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafupnp.dll
2015-02-22 19:58 - 2014-10-29 01:53 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBth.dll
2015-02-22 19:58 - 2014-10-29 01:53 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2015-02-22 19:58 - 2014-10-29 01:53 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2015-02-22 19:58 - 2014-10-29 01:53 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifmon.dll
2015-02-22 19:58 - 2014-10-29 01:52 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrs.exe
2015-02-22 19:58 - 2014-10-29 01:51 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrscmd.dll
2015-02-22 19:58 - 2014-10-29 01:51 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndiscapCfg.dll
2015-02-22 19:58 - 2014-10-29 01:50 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll
2015-02-22 19:58 - 2014-10-29 01:50 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\eqossnap.dll
2015-02-22 19:58 - 2014-10-29 01:49 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpkinstall.exe
2015-02-22 19:58 - 2014-10-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2015-02-22 19:58 - 2014-10-29 01:48 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowslivelogin.dll
2015-02-22 19:58 - 2014-10-29 01:48 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2015-02-22 19:58 - 2014-10-29 01:48 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2015-02-22 19:58 - 2014-10-29 01:47 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3gpclnt.dll
2015-02-22 19:58 - 2014-10-29 01:46 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmshell.dll
2015-02-22 19:58 - 2014-10-29 01:46 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidfdp.dll
2015-02-22 19:58 - 2014-10-29 01:46 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2015-02-22 19:58 - 2014-10-29 01:46 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingHost.exe
2015-02-22 19:58 - 2014-10-29 01:46 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConfigureExpandedStorage.dll
2015-02-22 19:58 - 2014-10-29 01:46 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\PSModuleDiscoveryProvider.dll
2015-02-22 19:58 - 2014-10-29 01:46 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\datusage.dll
2015-02-22 19:58 - 2014-10-29 01:46 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2015-02-22 19:58 - 2014-10-29 01:46 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\energytask.dll
2015-02-22 19:58 - 2014-10-29 01:45 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSAppXHelper.dll
2015-02-22 19:58 - 2014-10-29 01:45 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcdAutoSetup.dll
2015-02-22 19:58 - 2014-10-29 01:45 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AepRoam.dll
2015-02-22 19:58 - 2014-10-29 01:45 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintIsolationProxy.dll
2015-02-22 19:58 - 2014-10-29 01:45 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2015-02-22 19:58 - 2014-10-29 01:44 - 00400384 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistCleaner.dll
2015-02-22 19:58 - 2014-10-29 01:44 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2015-02-22 19:58 - 2014-10-29 01:44 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2015-02-22 19:58 - 2014-10-29 01:44 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\adrclient.dll
2015-02-22 19:58 - 2014-10-29 01:44 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsentUX.dll
2015-02-22 19:58 - 2014-10-29 01:44 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\CheckNetIsolation.exe
2015-02-22 19:58 - 2014-10-29 01:44 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaProxy.exe
2015-02-22 19:58 - 2014-10-29 01:43 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\PortableDeviceClassExtension.dll
2015-02-22 19:58 - 2014-10-29 01:43 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-02-22 19:58 - 2014-10-29 01:43 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2015-02-22 19:58 - 2014-10-29 01:43 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDPrintProxy.DLL
2015-02-22 19:58 - 2014-10-29 01:43 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WfHC.dll
2015-02-22 19:58 - 2014-10-29 01:43 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2015-02-22 19:58 - 2014-10-29 01:42 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceElementSource.dll
2015-02-22 19:58 - 2014-10-29 01:41 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Renewal.dll
2015-02-22 19:58 - 2014-10-29 01:37 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2015-02-22 19:58 - 2014-10-29 01:35 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2015-02-22 19:58 - 2014-10-29 01:34 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2015-02-22 19:58 - 2014-10-29 01:30 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2015-02-22 19:58 - 2014-10-29 01:29 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2015-02-22 19:58 - 2014-10-15 09:37 - 00068416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2015-02-22 19:58 - 2014-10-15 09:37 - 00052544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fsdepends.sys
2015-02-22 19:58 - 2014-10-12 09:58 - 00047424 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdusb.dll
2015-02-22 19:58 - 2014-10-07 05:13 - 00259392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-02-22 19:58 - 2014-10-07 05:13 - 00163136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UCX01000.SYS
2015-02-22 19:58 - 2014-10-07 04:34 - 00082752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-02-22 19:58 - 2014-08-08 16:35 - 00142656 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_8086.dll
2015-02-22 19:58 - 2014-08-08 16:35 - 00083776 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll
2015-02-22 19:57 - 2014-10-29 04:07 - 05120000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthFWSnapin.dll
2015-02-22 19:57 - 2014-10-29 04:07 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthFWWizFwk.dll
2015-02-22 19:57 - 2014-10-29 03:05 - 02628608 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2015-02-22 19:57 - 2014-10-29 03:04 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2015-02-22 19:57 - 2014-10-29 03:04 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUxRes.dll
2015-02-22 19:57 - 2014-10-29 03:04 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2015-02-22 19:57 - 2014-10-29 03:04 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Firewall.cpl
2015-02-22 19:57 - 2014-10-29 03:04 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2help.dll
2015-02-22 19:57 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2015-02-22 19:57 - 2014-10-29 03:04 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rnr20.dll
2015-02-22 19:57 - 2014-10-29 03:03 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2015-02-22 19:57 - 2014-10-29 03:03 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ktmw32.dll
2015-02-22 19:57 - 2014-10-29 03:03 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bi.dll
2015-02-22 19:57 - 2014-10-29 03:03 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\workerdd.dll
2015-02-22 19:57 - 2014-10-29 03:03 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\txfw32.dll
2015-02-22 19:57 - 2014-10-29 03:03 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wship6.dll
2015-02-22 19:57 - 2014-10-29 03:03 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSHTCPIP.DLL
2015-02-22 19:57 - 2014-10-29 03:03 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Locator.exe
2015-02-22 19:57 - 2014-10-29 03:03 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rootmdm.sys
2015-02-22 19:57 - 2014-10-29 03:03 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmi.dll
2015-02-22 19:57 - 2014-10-29 03:02 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbios.sys
2015-02-22 19:57 - 2014-10-29 03:02 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\qwavedrv.sys
2015-02-22 19:57 - 2014-10-29 03:02 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasacd.sys
2015-02-22 19:57 - 2014-10-29 03:02 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpials.sys
2015-02-22 19:57 - 2014-10-29 03:01 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2015-02-22 19:57 - 2014-10-29 03:01 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbcir.sys
2015-02-22 19:57 - 2014-10-29 03:01 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc63.sys
2015-02-22 19:57 - 2014-10-29 03:01 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2015-02-22 19:57 - 2014-10-29 03:01 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-02-22 19:57 - 2014-10-29 03:01 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scfilter.sys
2015-02-22 19:57 - 2014-10-29 03:01 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiscap.sys
2015-02-22 19:57 - 2014-10-29 03:01 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2015-02-22 19:57 - 2014-10-29 03:01 - 00026240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\TsUsbGD.sys
2015-02-22 19:57 - 2014-10-29 03:00 - 00629248 _____ (Microsoft Corporation) C:\WINDOWS\system32\OobeFldr.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dramp.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\srm.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\miguiresource.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys
2015-02-22 19:57 - 2014-10-29 03:00 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rassstp.sys
2015-02-22 19:57 - 2014-10-29 03:00 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mslldp.sys
2015-02-22 19:57 - 2014-10-29 03:00 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SortWindows61.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\idndl.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Nlsdl.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciwave.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciseq.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscdll.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davhlpr.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\shunimpl.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofUtil.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscpxl32.dLL
2015-02-22 19:57 - 2014-10-29 03:00 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbios.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscat32.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\browseui.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensApi.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\softpub.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\nddeapi.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiwer.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcfgex.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssip32.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ir50_32.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ir41_32.ax
2015-02-22 19:57 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\OskSupport.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ir50_qcx.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ir50_qc.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ir41_qcx.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ir41_qc.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ir32_32.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\getuname.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AutoWorkplaceN.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\osuninst.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx
2015-02-22 19:57 - 2014-10-29 03:00 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\normaliz.dll
2015-02-22 19:57 - 2014-10-29 03:00 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprop.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSchedExe.exe
2015-02-22 19:57 - 2014-10-29 02:59 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\blb_ps.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrnr.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsmproxy.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mgmtapi.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdmdbg.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsock32.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\clb.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\subst.exe
2015-02-22 19:57 - 2014-10-29 02:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\print.exe
2015-02-22 19:57 - 2014-10-29 02:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msidcrl40.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\help.exe
2015-02-22 19:57 - 2014-10-29 02:59 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlS0WndH.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\sas.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInput9_1_0.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spmpm.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\comcat.dll
2015-02-22 19:57 - 2014-10-29 02:59 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxex.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\telephon.cpl
2015-02-22 19:57 - 2014-10-29 02:58 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\colorcpl.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntprint.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\iyuv_32.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzutil.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\klist.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\cliconfg.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\qprocess.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msyuv.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msg.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\drprov.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sort.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\osbaseln.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\chgport.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tskill.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsdiscon.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscon.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoff.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\chgusr.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\umdmxfrm.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rwinsta.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\midimap.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WINSRPC.DLL
2015-02-22 19:57 - 2014-10-29 02:58 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskperf.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasctrs.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\hh.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskcomp.com
2015-02-22 19:57 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\reset.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\label.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdkey.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\change.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\query.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfts.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrle32.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmptrap.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsbyuv.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\TapiUnattend.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwinsat.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\recover.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com
2015-02-22 19:57 - 2014-10-29 02:58 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshnetbs.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpts.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonUI.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskcopy.com
2015-02-22 19:57 - 2014-10-29 02:58 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dvdplay.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsied.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomcnfg.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapiperf.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeDateMUICallback.dll
2015-02-22 19:57 - 2014-10-29 02:58 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\plasrv.exe
2015-02-22 19:57 - 2014-10-29 02:58 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\acledit.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysclass.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\syskey.exe
2015-02-22 19:57 - 2014-10-29 02:57 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmintf.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wephostsvc.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\quser.exe
2015-02-22 19:57 - 2014-10-29 02:57 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\qappsrv.exe
2015-02-22 19:57 - 2014-10-29 02:57 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcacli.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnpinst.exe
2015-02-22 19:57 - 2014-10-29 02:57 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpupdate.exe
2015-02-22 19:57 - 2014-10-29 02:57 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe
2015-02-22 19:57 - 2014-10-29 02:57 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe
2015-02-22 19:57 - 2014-10-29 02:57 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcmsetup.exe
2015-02-22 19:57 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\syssetup.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\muifontsetup.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDOIProxy.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\panmap.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutilx.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbperf.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshirda.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaPs.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcico.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\IconCodecService.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrnsave.scr
2015-02-22 19:57 - 2014-10-29 02:57 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spnet.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcNs4.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\CIRCoInst.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\shfolder.dll
2015-02-22 19:57 - 2014-10-29 02:57 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\sccls.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddp_ps.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx5.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxpps.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\chglogon.exe
2015-02-22 19:57 - 2014-10-29 02:56 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\capisp.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncInfrastructureps.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\srm_ps.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\irclass.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dispex.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\pstorec.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSChannel.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx6.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx7.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx3.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncHostps.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx4.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmcodecdspps.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcji32.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.proxystub.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\odtext32.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\odpdx32.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\odfox32.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\oddbse32.dll
2015-02-22 19:57 - 2014-10-29 02:56 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\odexl32.dll
2015-02-22 19:57 - 2014-10-29 02:55 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\nbtstat.exe
2015-02-22 19:57 - 2014-10-29 02:55 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfime.ime
2015-02-22 19:57 - 2014-10-29 02:54 - 15784448 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDORes.dll
2015-02-22 19:57 - 2014-10-29 02:54 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\secinit.exe
2015-02-22 19:57 - 2014-10-29 02:54 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\VscMgrPS.dll
2015-02-22 19:57 - 2014-10-29 02:54 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ctfmon.exe
2015-02-22 19:57 - 2014-10-29 02:53 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgrprxy.dll
2015-02-22 19:57 - 2014-10-29 02:53 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ktmutil.exe
2015-02-22 19:57 - 2014-10-29 02:53 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx2.dll
2015-02-22 19:57 - 2014-10-29 02:53 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\verclsid.exe
2015-02-22 19:57 - 2014-10-29 02:53 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\acproxy.dll
2015-02-22 19:57 - 2014-10-29 02:53 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\winhlp32.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ocsetapi.dll
2015-02-22 19:57 - 2014-10-29 02:52 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsicpl.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\eventvwr.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\hdwwiz.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winver.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\PnPutil.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll
2015-02-22 19:57 - 2014-10-29 02:52 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\regsvr32.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\regedt32.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdext.dll
2015-02-22 19:57 - 2014-10-29 02:52 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\write.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\write.exe
2015-02-22 19:57 - 2014-10-29 02:52 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\TapiSysprep.dll
2015-02-22 19:57 - 2014-10-29 02:51 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSCollect.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndadmin.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEject.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\at.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cofire.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winusb.dll
2015-02-22 19:57 - 2014-10-29 02:51 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\runas.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\uniplat.dll
2015-02-22 19:57 - 2014-10-29 02:51 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdial.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsavailux.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pstask.dll
2015-02-22 19:57 - 2014-10-29 02:51 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcmonitor.dll
2015-02-22 19:57 - 2014-10-29 02:51 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\svsvc.dll
2015-02-22 19:57 - 2014-10-29 02:51 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\LAPRXY.DLL
2015-02-22 19:57 - 2014-10-29 02:51 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InfDefaultInstall.exe
2015-02-22 19:57 - 2014-10-29 02:51 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\systray.exe
2015-02-22 19:57 - 2014-10-29 02:50 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Apphlpdm.dll
2015-02-22 19:57 - 2014-10-29 02:50 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdiagnhost.exe
2015-02-22 19:57 - 2014-10-29 02:50 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetppui.dll
2015-02-22 19:57 - 2014-10-29 02:49 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingProxy.dll
2015-02-22 19:57 - 2014-10-29 02:49 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlaninst.dll
2015-02-22 19:57 - 2014-10-29 02:49 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprtPS.dll
2015-02-22 19:57 - 2014-10-29 02:49 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\fixmapi.exe
2015-02-22 19:57 - 2014-10-29 02:49 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\CHxReadingStringIME.dll
2015-02-22 19:57 - 2014-10-29 02:48 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvcctl.dll
2015-02-22 19:57 - 2014-10-29 02:48 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshelper.dll
2015-02-22 19:57 - 2014-10-29 02:48 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\RmClient.exe
2015-02-22 19:57 - 2014-10-29 02:46 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcad32.exe
2015-02-22 19:57 - 2014-10-29 02:46 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\serialui.dll
2015-02-22 19:57 - 2014-10-29 02:45 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\resmon.exe
2015-02-22 19:57 - 2014-10-29 02:44 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountControlSettings.exe
2015-02-22 19:57 - 2014-10-29 02:44 - 00180736 _____ (Microsoft Corporation) C:\WINDOWS\system32\hwrreg.exe
2015-02-22 19:57 - 2014-10-29 02:44 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2015-02-22 19:57 - 2014-10-29 02:44 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationNotifications.exe
2015-02-22 19:57 - 2014-10-29 02:44 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcwrun.exe
2015-02-22 19:57 - 2014-10-29 02:43 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\baaupdate.exe
2015-02-22 19:57 - 2014-10-29 02:43 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerWizardElev.exe
2015-02-22 19:57 - 2014-10-29 02:43 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerWizard.exe
2015-02-22 19:57 - 2014-10-29 02:43 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaApi.dll
2015-02-22 19:57 - 2014-10-29 02:43 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\montr_ci.dll
2015-02-22 19:57 - 2014-10-29 02:43 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdmcpl.dll
2015-02-22 19:57 - 2014-10-29 02:42 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.exe
2015-02-22 19:57 - 2014-10-29 02:42 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PNPXAssocPrx.dll
2015-02-22 19:57 - 2014-10-29 02:42 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdmps.dll
2015-02-22 19:57 - 2014-10-29 02:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgwdi.dll
2015-02-22 19:57 - 2014-10-29 02:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndproxystub.dll
2015-02-22 19:57 - 2014-10-29 02:40 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2015-02-22 19:57 - 2014-10-29 02:40 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingWizard.exe
2015-02-22 19:57 - 2014-10-29 02:40 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Netplwiz.exe
2015-02-22 19:57 - 2014-10-29 02:40 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Eap3Host.exe
2015-02-22 19:57 - 2014-10-29 02:40 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DefaultDeviceManager.dll
2015-02-22 19:57 - 2014-10-29 02:40 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WallpaperHost.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartScreenSettings.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\control.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Fondue.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\OptionalFeatures.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceProperties.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdRes.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesRemote.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesProtection.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesPerformance.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesHardware.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesDataExecutionPrevention.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesComputerName.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesAdvanced.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DpiScaling.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\RunLegacyCPLElevated.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\MultiDigiMon.exe
2015-02-22 19:57 - 2014-10-29 02:39 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe
2015-02-22 19:57 - 2014-10-29 02:38 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbctrac.dll
2015-02-22 19:57 - 2014-10-29 02:38 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdSched.exe
2015-02-22 19:57 - 2014-10-29 02:38 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mobsync.exe
2015-02-22 19:57 - 2014-10-29 02:38 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbGDCoInstaller.dll
2015-02-22 19:57 - 2014-10-29 02:38 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\grpconv.exe
2015-02-22 19:57 - 2014-10-29 02:38 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSUNATD.exe
2015-02-22 19:57 - 2014-10-29 02:38 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmstplua.dll
2015-02-22 19:57 - 2014-10-29 02:38 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDACLSys.dll
2015-02-22 19:57 - 2014-10-29 02:38 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoveDeviceElevated.dll
2015-02-22 19:57 - 2014-10-29 02:38 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32gt.dll
2015-02-22 19:57 - 2014-10-29 02:38 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ds32gt.dll
2015-02-22 19:57 - 2014-10-29 02:34 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsui.exe
2015-02-22 19:57 - 2014-10-29 02:32 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthudtask.exe
2015-02-22 19:57 - 2014-10-29 02:32 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntlanui2.dll
2015-02-22 19:57 - 2014-10-29 02:32 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll
2015-02-22 19:57 - 2014-10-29 02:29 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\gptext.dll
2015-02-22 19:57 - 2014-10-29 02:25 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmcompc.dll
2015-02-22 19:57 - 2014-10-29 02:20 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapimig.exe
2015-02-22 19:57 - 2014-10-29 02:15 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2015-02-22 19:57 - 2014-10-29 02:06 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapi.dll
2015-02-22 19:57 - 2014-10-29 02:06 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprext.dll
2015-02-22 19:57 - 2014-10-29 02:06 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_ISCII.DLL
2015-02-22 19:57 - 2014-10-29 02:06 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dabapi.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_G18030.DLL
2015-02-22 19:57 - 2014-10-29 02:05 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprmsg.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\unlodctr.exe
2015-02-22 19:57 - 2014-10-29 02:05 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdhcinst.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\virtdisk.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnikeapi.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfnet.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedcli.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\PING.EXE
2015-02-22 19:57 - 2014-10-29 02:05 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhapi.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mskeyprotcli.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltLib.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\PATHPING.EXE
2015-02-22 19:57 - 2014-10-29 02:05 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mountvol.exe
2015-02-22 19:57 - 2014-10-29 02:05 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\TRACERT.EXE
2015-02-22 19:57 - 2014-10-29 02:05 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerClient.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\finger.exe
2015-02-22 19:57 - 2014-10-29 02:05 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\nrpsrv.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\whhelper.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_IS2022.DLL
2015-02-22 19:57 - 2014-10-29 02:05 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrssrv.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBthProxy.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\TCPSVCS.EXE
2015-02-22 19:57 - 2014-10-29 02:05 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\msidle.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\backgroundTaskHost.exe
2015-02-22 19:57 - 2014-10-29 02:05 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\TcpipSetup.dll
2015-02-22 19:57 - 2014-10-29 02:05 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2015-02-22 19:57 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2015-02-22 19:57 - 2014-10-29 02:04 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2015-02-22 19:57 - 2014-10-29 02:04 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\VaultCmd.exe
2015-02-22 19:57 - 2014-10-29 02:04 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\pots.dll
2015-02-22 19:57 - 2014-10-29 02:04 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmapi.dll
2015-02-22 19:57 - 2014-10-29 02:04 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltMC.exe
2015-02-22 19:57 - 2014-10-29 02:04 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ARP.EXE
2015-02-22 19:57 - 2014-10-29 02:04 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2015-02-22 19:57 - 2014-10-29 02:04 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\userinitext.dll
2015-02-22 19:57 - 2014-10-29 02:04 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2015-02-22 19:57 - 2014-10-29 02:04 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Register-CimProvider.exe
2015-02-22 19:57 - 2014-10-29 02:04 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll
2015-02-22 19:57 - 2014-10-29 02:04 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\HOSTNAME.EXE
2015-02-22 19:57 - 2014-10-29 02:04 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpcsvc.dll
2015-02-22 19:57 - 2014-10-29 02:04 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringIeProvider.dll
2015-02-22 19:57 - 2014-10-29 02:03 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnEapPeerProxy.dll
2015-02-22 19:57 - 2014-10-29 02:03 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnEapAuthProxy.dll
2015-02-22 19:57 - 2014-10-29 02:03 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRINFO.EXE
2015-02-22 19:57 - 2014-10-29 02:03 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityRtapiPal.dll
2015-02-22 19:57 - 2014-10-29 02:03 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeSysprep.dll
2015-02-22 19:57 - 2014-10-29 02:02 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipsec.dll
2015-02-22 19:57 - 2014-10-29 02:02 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogonext.dll
2015-02-22 19:57 - 2014-10-29 02:02 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncuprov.dll
2015-02-22 19:57 - 2014-10-29 02:02 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll
2015-02-22 19:57 - 2014-10-29 02:02 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2015-02-22 19:57 - 2014-10-29 02:02 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsext.dll
2015-02-22 19:57 - 2014-10-29 02:01 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskSchdPS.dll
2015-02-22 19:57 - 2014-10-29 02:01 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2015-02-22 19:57 - 2014-10-29 02:01 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2015-02-22 19:57 - 2014-10-29 02:01 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.ps.dll
2015-02-22 19:57 - 2014-10-29 02:01 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll
2015-02-22 19:57 - 2014-10-29 02:01 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Background.ps.dll
2015-02-22 19:57 - 2014-10-29 02:01 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguageProfileCallback.dll
2015-02-22 19:57 - 2014-10-29 02:01 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxStreamingDataSourcePS.dll
2015-02-22 19:57 - 2014-10-29 02:00 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundTransferHost.exe
2015-02-22 19:57 - 2014-10-29 02:00 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvps.dll
2015-02-22 19:57 - 2014-10-29 02:00 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\ROUTE.EXE
2015-02-22 19:57 - 2014-10-29 02:00 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2015-02-22 19:57 - 2014-10-29 02:00 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsExt.dll
2015-02-22 19:57 - 2014-10-29 02:00 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommonPal.dll
2015-02-22 19:57 - 2014-10-29 02:00 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragproxy.dll
2015-02-22 19:57 - 2014-10-29 02:00 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallButtons.ProxyStub.dll
2015-02-22 19:57 - 2014-10-29 02:00 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2015-02-22 19:57 - 2014-10-29 02:00 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfmifsproxy.dll
2015-02-22 19:57 - 2014-10-29 02:00 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHostProxy.dll
2015-02-22 19:57 - 2014-10-29 01:59 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschapext.dll
2015-02-22 19:57 - 2014-10-29 01:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2015-02-22 19:57 - 2014-10-29 01:58 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxshared.dll
2015-02-22 19:57 - 2014-10-29 01:56 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\nci.dll
2015-02-22 19:57 - 2014-10-29 01:55 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwaninst.dll
2015-02-22 19:57 - 2014-10-29 01:55 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DsmUserTask.exe
2015-02-22 19:57 - 2014-10-29 01:50 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe
2015-02-22 19:57 - 2014-10-29 01:50 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2015-02-22 19:57 - 2014-10-29 01:48 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\slpts.dll
2015-02-22 19:57 - 2014-10-29 01:46 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2015-02-22 19:57 - 2014-10-29 01:46 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdPHost.dll
2015-02-22 19:57 - 2014-10-29 01:46 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Startupscan.dll
2015-02-22 19:57 - 2014-10-29 01:46 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootim.exe
2015-02-22 19:57 - 2014-10-29 01:45 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msshooks.dll
2015-02-22 19:57 - 2014-10-29 01:44 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaUacHelper.exe
2015-02-22 19:57 - 2014-10-29 00:15 - 00002540 _____ () C:\WINDOWS\system32\KeyboardFilterShim.sdb
2015-02-22 19:54 - 2014-11-15 20:05 - 00801584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-02-22 19:54 - 2014-11-14 19:11 - 00048504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-02-22 19:54 - 2014-11-14 06:05 - 02947584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-02-22 19:54 - 2014-11-14 06:04 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-02-22 19:54 - 2014-11-14 06:03 - 00885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-02-22 19:54 - 2014-11-14 06:03 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-02-22 19:54 - 2014-11-14 06:01 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-02-22 19:54 - 2014-11-14 06:01 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-02-22 19:54 - 2014-11-14 06:01 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-02-22 19:54 - 2014-11-14 05:57 - 01653248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-02-22 19:54 - 2014-11-11 01:17 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-02-22 19:54 - 2014-11-10 18:47 - 01856320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-02-22 19:54 - 2014-11-10 18:47 - 00335168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2015-02-22 19:54 - 2014-11-10 18:47 - 00286528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2015-02-22 19:54 - 2014-11-10 18:47 - 00069440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2015-02-22 19:54 - 2014-11-10 03:14 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2015-02-22 19:54 - 2014-11-10 02:15 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2015-02-22 19:54 - 2014-11-10 02:10 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-02-22 19:54 - 2014-11-10 02:09 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2015-02-22 19:54 - 2014-11-10 02:04 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2015-02-22 19:54 - 2014-11-10 01:57 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2015-02-22 19:54 - 2014-11-10 01:57 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2015-02-22 19:54 - 2014-11-08 11:23 - 01127976 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-02-22 19:54 - 2014-11-08 04:17 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2015-02-22 19:54 - 2014-11-08 04:15 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2015-02-22 19:54 - 2014-11-08 04:15 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2015-02-22 19:54 - 2014-11-08 04:13 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\kmddsp.tsp
2015-02-22 19:54 - 2014-11-08 04:13 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmxs.dll
2015-02-22 19:54 - 2014-11-08 04:13 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasser.dll
2015-02-22 19:54 - 2014-11-08 03:48 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdiag.dll
2015-02-22 19:54 - 2014-11-08 03:17 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-02-22 19:54 - 2014-11-08 02:59 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascfg.dll
2015-02-22 19:54 - 2014-11-08 02:56 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-02-22 19:54 - 2014-11-08 02:52 - 03999232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2015-02-22 19:54 - 2014-11-08 02:45 - 00897536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2015-02-22 19:54 - 2014-11-07 04:20 - 00786120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-02-22 19:54 - 2014-11-05 02:39 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\QSHVHOST.DLL
2015-02-22 19:54 - 2014-11-05 02:39 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\QSVRMGMT.DLL
2015-02-22 19:54 - 2014-11-05 02:33 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2015-02-22 19:54 - 2014-11-05 02:20 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2015-02-22 19:54 - 2014-11-05 02:20 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2015-02-22 19:54 - 2014-11-05 02:18 - 00507392 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2015-02-22 19:54 - 2014-11-05 02:06 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2015-02-22 19:54 - 2014-11-05 02:02 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
2015-02-22 19:54 - 2014-11-04 20:28 - 00051520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-02-22 19:54 - 2014-11-04 20:22 - 00045888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdclass.sys
2015-02-22 19:54 - 2014-11-04 20:22 - 00041792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouclass.sys
2015-02-22 19:54 - 2014-11-04 06:03 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\i8042prt.sys
2015-02-22 19:54 - 2014-11-04 06:03 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
2015-02-22 19:54 - 2014-11-04 06:03 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys
2015-02-22 19:54 - 2014-11-04 06:03 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sermouse.sys
2015-02-22 19:54 - 2014-11-04 05:41 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2015-02-22 19:54 - 2014-11-04 04:44 - 00559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2015-02-22 19:54 - 2014-10-31 01:10 - 15158784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-02-22 19:54 - 2014-10-29 03:22 - 00410944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2015-02-22 19:54 - 2014-10-29 02:13 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2015-02-22 19:54 - 2014-10-21 02:19 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\eventcls.dll
2015-02-22 19:54 - 2014-10-21 01:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2015-02-22 19:54 - 2014-10-21 01:20 - 01142272 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2015-02-22 19:54 - 2014-10-21 01:19 - 00987136 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2015-02-22 19:54 - 2014-10-17 04:15 - 00199488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2015-02-22 19:54 - 2014-10-17 04:15 - 00131392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2015-02-22 19:54 - 2014-10-17 04:15 - 00036160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2015-02-22 19:54 - 2014-10-17 04:01 - 00076096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2015-02-22 19:53 - 2014-11-17 21:23 - 00529352 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2015-02-22 19:53 - 2014-11-17 21:23 - 00224168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-02-22 19:53 - 2014-11-14 06:04 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-02-22 19:53 - 2014-11-14 06:01 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-02-22 19:53 - 2014-11-14 05:55 - 01619968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-02-22 19:53 - 2014-11-14 05:53 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-02-22 19:53 - 2014-11-14 05:51 - 02241024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-02-22 19:53 - 2014-10-31 04:11 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe
2015-02-22 19:53 - 2014-10-31 03:18 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2015-02-22 19:53 - 2014-10-31 03:12 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2015-02-22 19:08 - 2014-04-16 00:35 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2015-02-22 18:54 - 2015-02-22 18:54 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Ronny\Desktop\revosetup95.exe
2015-02-22 18:54 - 2015-02-22 18:54 - 00001244 _____ () C:\Users\Ronny\Desktop\Revo Uninstaller.lnk
2015-02-22 16:43 - 2015-02-22 16:43 - 00000079 _____ () C:\WINDOWS\wininit.ini
2015-02-22 11:26 - 2015-02-22 11:26 - 01761992 _____ (ESET) C:\Users\Ronny\Downloads\eset_nod32_antivirus_live_installer_.exe
2015-02-21 17:57 - 2015-02-21 17:57 - 00029051 _____ () C:\Users\Ronny\Downloads\FRST_20150221_1757.txt
2015-02-21 17:51 - 2015-02-21 17:51 - 00000833 _____ () C:\Users\Ronny\Desktop\JRT.txt
2015-02-21 17:49 - 2015-02-21 17:49 - 01388274 _____ (Thisisu) C:\Users\Ronny\Downloads\JRT (1).exe
2015-02-21 17:31 - 2015-02-21 17:31 - 02126848 _____ () C:\Users\Ronny\Downloads\AdwCleaner_4.111.exe
2015-02-21 14:31 - 2015-02-22 18:54 - 00000000 ____D () C:\Program Files\VS Revo Group
2015-02-21 14:31 - 2015-02-21 14:31 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Ronny\Downloads\revosetup95.exe
2015-02-21 13:46 - 2015-02-22 19:33 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2015-02-21 13:46 - 2015-02-22 16:43 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2015-02-21 13:44 - 2015-02-21 13:45 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Ronny\Downloads\spybot-2.4.exe
2015-02-21 12:06 - 2015-02-23 18:07 - 00025936 _____ () C:\WINDOWS\PFRO.log
2015-02-21 12:06 - 2015-02-21 12:06 - 00381752 _____ () C:\WINDOWS\Minidump\022115-40031-01.dmp
2015-02-21 11:15 - 2015-02-21 11:15 - 00032616 _____ () C:\ProgramData\1424513664.bdinstall.bin
2015-02-20 22:53 - 2015-02-20 22:54 - 00026860 _____ () C:\Users\Ronny\Downloads\Addition.txt
2015-02-20 22:52 - 2015-02-22 11:04 - 00030198 _____ () C:\Users\Ronny\Downloads\FRST.txt
2015-02-20 22:51 - 2015-02-23 18:17 - 00000000 ____D () C:\FRST
2015-02-20 22:51 - 2015-02-20 22:51 - 01126400 _____ (Farbar) C:\Users\Ronny\Downloads\FRST.exe
2015-02-20 18:13 - 2015-02-20 18:13 - 00310897 _____ () C:\ProgramData\1424451964.bdinstall.bin
2015-02-20 18:10 - 2015-02-20 18:10 - 00050051 _____ () C:\ProgramData\1424452189.bdinstall.bin
2015-02-20 17:54 - 2015-02-23 18:08 - 00114904 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-02-20 17:54 - 2015-02-20 17:54 - 00001078 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-02-20 17:54 - 2015-02-20 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-02-20 17:54 - 2015-02-20 17:54 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2015-02-20 17:54 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-02-20 17:54 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-02-20 17:54 - 2014-11-21 06:14 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-02-20 17:53 - 2015-02-20 17:53 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Ronny\Downloads\mbam-setup-2.0.4.1028.exe
2015-02-20 17:32 - 2015-02-20 17:32 - 00000385 _____ () C:\WINDOWS\system32\user_gensett.xml
2015-02-20 17:31 - 2015-02-23 18:07 - 00002524 _____ () C:\WINDOWS\setupact.log
2015-02-20 17:31 - 2015-02-20 17:31 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2015-02-20 17:31 - 2015-02-20 17:31 - 00000000 ____D () C:\ProgramData\BDLogging
2015-02-20 17:31 - 2015-02-20 17:31 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-02-20 17:31 - 2014-12-02 16:37 - 00074000 _____ (BitDefender SRL) C:\WINDOWS\system32\bdsandboxuiskin.dll
2015-02-20 17:31 - 2014-12-02 13:37 - 00026624 _____ (BitDefender SRL) C:\WINDOWS\system32\bdsandboxuh.dll
2015-02-20 17:31 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\capicom.dll
2015-02-20 17:28 - 2015-02-21 12:06 - 00000000 ____D () C:\Program Files\Bitdefender
2015-02-20 17:28 - 2015-02-20 18:10 - 00000000 ____D () C:\ProgramData\Bitdefender
2015-02-20 17:27 - 2015-02-20 17:27 - 00000000 ____D () C:\Users\Ronny\AppData\Roaming\QuickScan
2015-02-20 17:26 - 2015-02-20 18:09 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2015-02-20 17:25 - 2015-02-20 17:25 - 02867648 _____ () C:\Users\Ronny\Downloads\bitdefender_antivirus.exe
2015-02-13 15:13 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-02-11 17:20 - 2015-01-19 19:36 - 01192552 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2015-02-11 17:20 - 2015-01-13 23:04 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-02-11 17:20 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-02-11 17:20 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-02-11 17:20 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-02-11 17:20 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-02-11 17:20 - 2015-01-12 02:55 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-02-11 17:20 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-02-11 17:20 - 2015-01-12 02:34 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-02-11 17:20 - 2015-01-12 02:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-02-11 17:20 - 2015-01-12 02:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-02-11 17:20 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-02-11 17:20 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-02-11 17:20 - 2015-01-12 02:23 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-02-11 17:20 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-02-11 17:20 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-02-11 17:20 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-02-11 17:20 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-02-11 17:20 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-02-11 17:20 - 2015-01-10 07:38 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-02-11 17:19 - 2015-02-04 00:43 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-02-11 17:19 - 2015-02-04 00:08 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-02-11 17:19 - 2015-02-04 00:08 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-02-11 17:19 - 2015-02-03 00:11 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-02-11 17:19 - 2015-02-03 00:11 - 00766976 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-02-11 17:19 - 2015-02-03 00:11 - 00482304 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-02-11 17:19 - 2015-01-10 08:38 - 03550720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-02-11 17:19 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2015-02-11 17:18 - 2015-01-10 09:28 - 05769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-02-11 17:18 - 2015-01-10 09:28 - 01468408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-02-11 17:17 - 2015-01-15 23:37 - 00478776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-02-11 17:17 - 2015-01-15 23:37 - 00148288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-02-11 17:17 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
2015-02-11 17:17 - 2014-12-09 00:11 - 00391526 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-02-11 17:17 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2015-02-11 17:17 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2015-02-11 17:17 - 2014-10-29 02:03 - 01117696 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-02-11 00:06 - 2015-02-11 00:06 - 00030208 _____ () C:\Users\Ronny\Downloads\pcwTreeBuilder.z.exe
2015-02-09 17:51 - 2015-02-23 18:06 - 01625123 _____ () C:\WINDOWS\WindowsUpdate.log
2015-02-08 22:54 - 2015-02-08 22:54 - 00000000 ____D () C:\Program Files\Common Files\Java
2015-01-27 20:58 - 2015-01-27 20:58 - 00001140 _____ () C:\Users\Ronny\Desktop\WinMD5.exe - Verknüpfung.lnk

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-02-23 18:18 - 2014-10-17 20:03 - 00001124 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-23 18:12 - 2013-09-30 05:08 - 01814802 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-23 18:08 - 2014-10-17 20:03 - 00001120 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-23 18:08 - 2013-08-14 19:01 - 00000000 ___DO () C:\Users\Ronny\SkyDrive
2015-02-23 18:07 - 2013-11-01 18:28 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-02-23 18:07 - 2013-08-22 08:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-02-23 18:06 - 2013-08-22 07:13 - 01310720 ___SH () C:\WINDOWS\system32\config\BBI
2015-02-23 18:02 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-02-22 21:50 - 2014-07-27 20:54 - 00000432 _____ () C:\WINDOWS\BRWMARK.INI
2015-02-22 21:50 - 2014-07-27 20:54 - 00000034 _____ () C:\WINDOWS\system32\BD5250DN.DAT
2015-02-22 20:46 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET
2015-02-22 20:34 - 2013-08-22 08:22 - 00473936 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-02-22 20:27 - 2013-09-30 04:50 - 00000000 __SHD () C:\WINDOWS\BitLockerDiscoveryVolumeContents
2015-02-22 20:27 - 2013-09-30 04:47 - 00000000 ____D () C:\WINDOWS\system32\Drivers\de-DE
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___SD () C:\WINDOWS\system32\dsc
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\WinStore
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\twain_32
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\system32\de-DE
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\system32\Com
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\MediaViewer
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\IME
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\FileManager
2015-02-22 20:27 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\Camera
2015-02-22 20:26 - 2013-09-30 04:50 - 00000000 ____D () C:\Program Files\Windows Journal
2015-02-22 20:26 - 2013-08-22 09:17 - 00000000 ____D () C:\Program Files\WindowsPowerShell
2015-02-22 20:26 - 2013-08-22 09:17 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2015-02-22 20:26 - 2013-08-22 09:17 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-02-22 20:26 - 2013-08-22 09:17 - 00000000 ____D () C:\Program Files\Windows Multimedia Platform
2015-02-22 20:26 - 2013-08-22 09:17 - 00000000 ____D () C:\Program Files\Common Files\System
2015-02-22 20:14 - 2013-08-22 09:05 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-02-22 20:05 - 2013-08-22 09:17 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2015-02-21 12:06 - 2014-02-13 18:43 - 00000000 ____D () C:\WINDOWS\Minidump
2015-02-21 12:06 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\ELAMBKUP
2015-02-21 11:16 - 2013-12-25 03:49 - 00000000 ____D () C:\Program Files\Image Grabber II
2015-02-21 09:01 - 2013-11-01 21:28 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2015-02-20 17:32 - 2013-08-22 07:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2015-02-19 19:13 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-02-19 00:25 - 2013-11-03 18:41 - 00117760 _____ () C:\Users\Ronny\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-02-15 17:19 - 2013-03-29 09:57 - 00001551 _____ () C:\Users\Ronny\Desktop\CUG_deu.pdf - Verknüpfung.lnk
2015-02-15 10:13 - 2013-08-22 09:17 - 00000000 ____D () C:\WINDOWS\rescache
2015-02-14 23:53 - 2013-11-02 09:53 - 00000000 ____D () C:\Users\Ronny\AppData\Roaming\vlc
2015-02-12 17:44 - 2013-11-15 17:20 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-02-12 17:41 - 2013-11-15 17:20 - 113756392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-02-12 17:39 - 2014-12-10 20:30 - 00000000 ____D () C:\WINDOWS\system32\appraiser
2015-02-12 17:39 - 2014-07-12 12:33 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2015-02-08 22:54 - 2014-10-25 09:09 - 00000000 ____D () C:\Program Files\Java
2015-02-08 22:54 - 2013-11-26 20:22 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-08 22:53 - 2014-10-25 09:09 - 00272296 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2015-02-08 22:53 - 2014-10-25 09:09 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2015-02-08 22:53 - 2014-10-25 09:09 - 00176552 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2015-02-08 22:53 - 2014-10-25 09:09 - 00096680 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2015-02-08 22:53 - 2014-10-25 09:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-03 20:31 - 2014-06-13 06:15 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-02-03 20:31 - 2014-06-13 06:15 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-01-29 04:21 - 2013-11-01 18:35 - 00000000 ____D () C:\Users\Ronny

==================== Files in the root of some directories =======

2013-11-03 18:41 - 2015-02-19 00:25 - 0117760 _____ () C:\Users\Ronny\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-04-18 22:20 - 2014-04-18 22:20 - 0007597 _____ () C:\Users\Ronny\AppData\Local\Resmon.ResmonCfg
2014-11-11 17:48 - 2014-11-11 17:53 - 0000000 _____ () C:\Users\Ronny\AppData\Local\{C4DE7E10-A4A8-4175-A632-7EFA7E16A862}
2015-02-20 18:13 - 2015-02-20 18:13 - 0310897 _____ () C:\ProgramData\1424451964.bdinstall.bin
2015-02-20 18:10 - 2015-02-20 18:10 - 0050051 _____ () C:\ProgramData\1424452189.bdinstall.bin
2015-02-21 11:15 - 2015-02-21 11:15 - 0032616 _____ () C:\ProgramData\1424513664.bdinstall.bin
2013-12-03 18:56 - 2013-12-03 18:56 - 0000486 _____ () C:\ProgramData\GRFolder.ini
2013-12-03 18:56 - 2013-12-03 18:56 - 0000028 _____ () C:\ProgramData\GRGames.ini

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-14 02:25

==================== End Of Log ============================


RonnysPC 23.02.2015 18:54

Liste der Anhänge anzeigen (Anzahl: 1)
Addition.txt
Code:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 22-02-2015
Ran by Ronny at 2015-02-23 18:19:54
Running from C:\Users\Ronny\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

2.0 (HKLM\...\Free Video to GIF Converter_is1) (Version: 2.0 - www.video-gif-converter.com)
3GX (HKLM\...\{D0783152-6826-4FA7-93C3-1F0D53FD5460}) (Version: 3.03.2101 - ALIGN)
7-Zip 9.20 (HKLM\...\7-Zip) (Version:  - )
Acala 3GP Movies Free 4.2.7 (HKLM\...\Acala 3GP Movies Free_is1) (Version:  - Acala Software)
Artisan (HKLM\...\Artisan) (Version: 0.6.0.0 - The Artisan Team)
Avidemux 2.5 (HKLM\...\Avidemux 2.5) (Version: 2.5.3.0 - )
CCleaner (HKLM\...\CCleaner) (Version: 5.01 - Piriform)
ClearView (HKLM\...\{A95AF23D-1875-41E7-B684-ECA583126755}) (Version: 5.3.4 - SVKSystems)
DataExplorer (HKLM\...\DataExplorer) (Version: 3.1.7 - )
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.1207.101.108 - ALPS ELECTRIC CO., LTD.)
Garmin City Navigator Europe NT 2008 (HKLM\...\{EEC8205A-E3DE-4C00-B60C-48E3B9B58B13}) (Version: 10.0.0.0 - Garmin Ltd or its subsidiaries)
Garmin Communicator Plugin (HKLM\...\{71DBFBF2-F7EB-4268-8485-9471D83C4E66}) (Version: 4.2.0 - Garmin Ltd or its subsidiaries)
GOM Player (HKLM\...\GOM Player) (Version: 2.2.64.5211 - Gretech Corporation)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
HELI-X 5.0 Demo (HKLM\...\B0C9899E-7D17-46E6-9496-8333A1F8C441_is1) (Version:  - Michael Schreiner)
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.36 - Irfan Skiljan)
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
JLC 7.0.0.6 (HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\b87250e759877692) (Version: 7.0.0.6 - R2Prototyping)
LogView V2 (HKLM\...\LogView V2) (Version: LogView V2 2 - LogView.info - D.Schmidt / H.Hemmecke)
LogView V2 2 (HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\LogView V2 2) (Version: 2 - LogView.info)
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Microsoft Office Professional 2013 - de-de (HKLM\...\ProfessionalRetail - de-de) (Version: 15.0.4693.1002 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\SkyDriveSetup.exe) (Version: 17.0.2003.1112 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x86) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
NVIDIA 3D Vision Treiber 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 327.02 - NVIDIA Corporation)
NVIDIA Grafiktreiber 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.02 - NVIDIA Corporation)
NVIDIA nTune (HKLM\...\InstallShield_{7C7F30F4-94E7-4AA8-8941-90C4A80C68BF}) (Version: 1.00.0000 - NVIDIA Corporation)
NVIDIA nView 140.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 140.62 - NVIDIA Corporation)
NVIDIA WMI 2.14.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI) (Version: 2.14.0 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (Version: 15.0.4693.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4693.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (Version: 15.0.4693.1002 - Microsoft Corporation) Hidden
Pazera Free MOV to AVI Converter 1.6 (HKLM\...\{770103E9-E1C3-48C9-812B-2982C7070575}_is1) (Version: 1.6 - Pazera Jacek)
pdfsam (HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\pdfsam) (Version: 1.1.1 - )
Recuva (HKLM\...\Recuva) (Version: 1.38 - Piriform)
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
SDFormatter (HKLM\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association)
Shape Collage (HKLM\...\ShapeCollage) (Version:  - Shape Collage Inc.)
Silicon Laboratories CP210x USB to UART Bridge (Driver Removal) (HKLM\...\SLABCOMM&10C4&EA60) (Version:  - )
Silicon Laboratories CP210x VCP Drivers for Windows 2000/XP/2003 Server/Vista (HKLM\...\{1F50FB31-0092-4D78-A85E-F22B2502C40E}) (Version: 5.10 - Silicon Laboratories, Inc.)
SM UniSens-E Tool (HKLM\...\{D35352AE-7C1E-470B-9AAE-A13BAA13841B}) (Version: 1.0.4.1 - SM-Modellbau)
TeamViewer 10 (HKLM\...\TeamViewer) (Version: 10.0.36897 - TeamViewer)
TrueCrypt (HKLM\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation)
TSDoctor (HKLM\...\{83CC8459-F239-4409-896C-17034A70EC5F}) (Version: 1.2.104 - Cypheros)
TsRemux 0.23.2 (HKLM\...\TsRemux_is1) (Version:  - )
VideoConverter (HKLM\...\VideoConverter) (Version: ${VERSION} - )
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
VStabi 5.3.4 (HKLM\...\VStabi 5.3_is1) (Version: 5.3.4 - VStabi Support Center)
WinRAR 5.10 Beta 4 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 5.10.4 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{7B37E4E2-C62F-4914-9620-8FB5062718CC}\localserver32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{AB807329-7324-431B-8B36-DBD581F56E0B}\localserver32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\SkyDriveShell.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2443804570-283508326-906284146-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Ronny\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\FileSyncApi.dll (Microsoft Corporation)

==================== Restore Points  =========================

06-02-2015 20:13:09 Windows Update
12-02-2015 17:39:02 Windows Update
21-02-2015 10:46:06 Geplanter Prüfpunkt
22-02-2015 18:56:43 Revo Uninstaller's restore point - FlashGet(Jetcar) 1.81

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 07:13 - 2013-08-22 07:13 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {224B4534-84B9-4CB6-AFCC-642754524CBE} - System32\Tasks\{41BC8576-3517-4942-8059-F0F1672D8C8C} => pcalua.exe -a C:\PROGRA~1\FlashGet\UNWISE.EXE -c C:\PROGRA~1\FlashGet\INSTALL.LOG
Task: {2E4589AF-E105-4D15-A50E-A73E04A79EA8} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX86\OfficeC2RClient.exe [2014-12-30] (Microsoft Corporation)
Task: {795113B6-01C3-45F2-9C08-367BD91BD9E8} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX86\OfficeC2RClient.exe [2014-12-30] (Microsoft Corporation)
Task: {8B14EB57-99F7-4A9C-9092-B0D6BF1A1C2F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-17] (Google Inc.)
Task: {B1EA2E5A-E1CB-410C-8589-1273E4203F3F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-12-12] (Piriform Ltd)
Task: {C3CB5B0B-1EF3-483B-8888-6CCAD53953CE} - System32\Tasks\Microsoft Office 15 Sync Maintenance for RONNY-PC-Ronny Ronny-PC => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-01-06] (Microsoft Corporation)
Task: {D3714F0E-F14E-4632-BBC0-D3ADBB2276AA} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-02-12] (Microsoft Corporation)
Task: {F96634F1-9301-49ED-B0F3-FBDF8DE3D92B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-17] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2014-03-21 07:29 - 2014-05-20 02:11 - 00080040 _____ () C:\Program Files\Microsoft Office 15\ClientX86\ApiClient.dll
2014-06-10 21:05 - 2014-11-15 10:49 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2014-06-10 20:57 - 2014-11-15 10:46 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\Office15\AppVIsvStream32.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:69E87FA2
AlternateDataStreams: C:\ProgramData\TEMP:862BDB1A
AlternateDataStreams: C:\Users\Ronny\SkyDrive:ms-properties
AlternateDataStreams: C:\Users\Ronny\Downloads\mbam-setup-2.0.4.1028.exe:BDU

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2443804570-283508326-906284146-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 192.168.178.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run: => "Apoint"
HKLM\...\StartupApproved\Run: => "SysTrayApp"
HKLM\...\StartupApproved\Run: => "InstallerLauncher"
HKLM\...\StartupApproved\Run: => "SDTray"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\StartupApproved\StartupFolder: => "Hardcopy.LNK"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\StartupApproved\Run: => "NVIDIA nTune"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-2443804570-283508326-906284146-1000\...\StartupApproved\Run: => "pdiface"

==================== Accounts: =============================

Administrator (S-1-5-21-2443804570-283508326-906284146-500 - Administrator - Disabled)
Gast (S-1-5-21-2443804570-283508326-906284146-501 - Limited - Disabled)
Ronny (S-1-5-21-2443804570-283508326-906284146-1000 - Administrator - Enabled) => C:\Users\Ronny

==================== Faulty Device Manager Devices =============

Name: Broadcom USH
Description: Broadcom USH
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (02/22/2015 06:56:41 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert
.
Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess.


Vorgang:
  Generatordaten werden gesammelt

Kontext:
  Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
  Generatorname: System Writer
  Generatorinstanz-ID: {bb22d735-884d-4605-a213-6f2a1a73462a}

Error: (02/22/2015 03:57:02 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/22/2015 03:57:02 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/22/2015 03:57:01 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/22/2015 02:51:31 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: RONNY-PC)
Description: Bei der Aktivierung der App „DefaultBrowser_NOPUBLISHERID!Microsoft.InternetExplorer.Default“ ist folgender Fehler aufgetreten: -2144927151. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (02/22/2015 02:00:38 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: RONNY-PC)
Description: Bei der Aktivierung der App „DefaultBrowser_NOPUBLISHERID!Microsoft.InternetExplorer.Default“ ist folgender Fehler aufgetreten: -2144927151. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.

Error: (02/21/2015 09:38:50 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT-AUTORITÄT)
Description: Die Namenszeichenfolgenwert für den Leistungsindikator in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "7558". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten.

Error: (02/21/2015 09:38:50 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT-AUTORITÄT)
Description: Die Namenszeichenfolgenwert für den Leistungsindikator in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "7558". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten.

Error: (02/21/2015 09:38:47 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.

Error: (02/21/2015 09:38:47 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT-AUTORITÄT)
Description: Die Namenszeichenfolgenwert für den Leistungsindikator in der Registrierung ist falsch formatiert. Die falsch formatierte Zeichenfolge ist "7558". Das erste DWORD im Datenbereich enthält den Indexwert für die falsch formatierte Zeichenfolge, während das zweite und dritte DWORD im Datenbereich die letzten gültigen Indexwerte enthalten.


System errors:
=============
Error: (02/23/2015 06:07:33 PM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0

Error: (02/23/2015 05:58:05 PM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0

Error: (02/22/2015 10:24:29 PM) (Source: disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden.

Error: (02/22/2015 09:12:29 PM) (Source: disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.

Error: (02/22/2015 08:34:18 PM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0

Error: (02/22/2015 07:33:28 PM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0

Error: (02/22/2015 06:30:25 PM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0

Error: (02/22/2015 04:39:00 PM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0

Error: (02/22/2015 11:28:11 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Der Dienst "ESET Service" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.

Error: (02/22/2015 09:17:39 AM) (Source: WudfUsbccidDriver) (EventID: 11) (User: NT-AUTORITÄT)
Description: 0x810x10x10xfb0x00x0


Microsoft Office Sessions:
=========================
Error: (02/22/2015 06:56:41 PM) (Source: VSS) (EventID: 8194) (User: )
Description: 0x80070005, Zugriff verweigert


Vorgang:
  Generatordaten werden gesammelt

Kontext:
  Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220}
  Generatorname: System Writer
  Generatorinstanz-ID: {bb22d735-884d-4605-a213-6f2a1a73462a}

Error: (02/22/2015 03:57:02 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvcplUIR.dll

Error: (02/22/2015 03:57:02 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvExpBar.dll

Error: (02/22/2015 03:57:01 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="&#x2a;",processorArchitecture="AMD64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\NVIDIA nTune Performance Application\Win64\nvCplUI.exe

Error: (02/22/2015 02:51:31 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: RONNY-PC)
Description: DefaultBrowser_NOPUBLISHERID!Microsoft.InternetExplorer.Default-2144927151

Error: (02/22/2015 02:00:38 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: RONNY-PC)
Description: DefaultBrowser_NOPUBLISHERID!Microsoft.InternetExplorer.Default-2144927151

Error: (02/21/2015 09:38:50 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT-AUTORITÄT)
Description: 755816861D0000841D0000851D000070010000

Error: (02/21/2015 09:38:50 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT-AUTORITÄT)
Description: 755816861D0000841D0000851D000070010000

Error: (02/21/2015 09:38:47 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: WmiApRplWmiApRpl8F2030000E5050000

Error: (02/21/2015 09:38:47 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3001) (User: NT-AUTORITÄT)
Description: 755816861D0000841D0000851D00002D010000


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU T9400 @ 2.53GHz
Percentage of memory in use: 29%
Total physical RAM: 3571.9 MB
Available physical RAM: 2529.72 MB
Total Pagefile: 7155.9 MB
Available Pagefile: 5950.11 MB
Total Virtual: 2047.88 MB
Available Virtual: 1893.38 MB

==================== Drives ================================

Drive c: (System) (Fixed) (Total:61.03 GB) (Free:11.01 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (Daten) (Fixed) (Total:87.89 GB) (Free:55.51 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 149.1 GB) (Disk ID: D8000000)
Partition 1: (Not Active) - (Size=133 MB) - (Type=DE)
Partition 2: (Active) - (Size=61 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=87.9 GB) - (Type=07 NTFS)

==================== End Of Log ============================

Es ist noch ein weiterer Windows 8.1 Rechner (engl. Sprache und Tastatur) als Gastzugang per WLAN im Netz. Auf diesem Rechner habe ich am Wochenende Malwarebytes installiert und folgenden Fund (siehe angehängte Grafik) gemacht sowie in die Quarantäne verschieben lassen. Daraufhin wurde an dem Notebook noch ein vollständiger MS Defender Virensuchlauf durchgeführt. Weitere Aktionen wurden an seinem Notebook nicht ausgeführt. Ich hatte gestern auf meinem Notebook mit Hilfe des Revo Uninstallers die Reste von folgender Programme versucht zu entfernen:
FlashGet (JetCar) 1.81
Snap.Do

felix1 23.02.2015 20:03

Zitat:

Zitat von RonnysPC (Beitrag 1431335)
Felix,
vielen Dank für deine hilfreichen Antworten. Natürlich hätte ich gerne noch gewusst, ob die von der Telekom beschriebene "Infektion mit einem Virus/ Trojaner" nunmehr erledigt ist.

Ich hatte Dir gepostet, um Hilfestellung bezüglich Netzwerk zu geben. Die Bereinigung und Analyse von Schadsoftware überlasse ich weiterhin dem Schrauber, da bin ich raus:)

GL und LG

schrauber 24.02.2015 07:15

Wir haben jetzt auch nur Adware gefunden. Die Funde auf dem andern Gerät sind auch nur PUP.

RonnysPC 24.02.2015 17:44

Schrauber,
vielen Dank für deine Hilfestellungen und deine Antwort bezüglich der Schadsoftware-Funde. Ich werde jetzt noch den Win 8.1 Gastrechner mit dem Onlinetool nach Viren durchsuchen lassen. Malwarebytes hat er auf mein Anraten hin ja in der Testversion installiert und laufen lassen. Dann sind da noch die Apple-Geräte, insbesondere das Macbook, da gehe ich davon aus, dass die Benutzerin (ebenfalls Gastzugang) bislang noch nichts unternommen hat. Ich werde hier mal im iOS-Bereich recherchieren und auch ihr mal eine Empfehlung geben und hoffen, dass sie ihren Rechner damit durchsucht.
felix1, auch dir ein dickes :dankeschoen:

felix1 24.02.2015 22:25

Danke für das Lob. Jetzt muss ich doch auch noch mal was loswerden.
Nach den Ergebnissen vom Schrauber war auf Deiner Hardware nix böses zu finden, was abuse hätte tätig werden lassen müssen.
Bischen PUP, blabla
Ich hatte Dir schon sehr zeitig gepostet, dass ich Deine Mitnutzer da irgendwie im Verdacht hatte.

RonnysPC 24.02.2015 22:32

felix1,
die Einstellungen in meiner Win 8.1 Firewall haben etwas Sorge in mir aufkommen lassen, 2...3 Einträge mit der Bezeichnung "VPN" im Namen, ich habe die komplette Firewall auf Ausgangswerte zurückgesetzt. Dem anderen Win 8.1 Nutzer (Lenovo Notebook) habe ich einen Suchlauf mit ESET Online nahegelegt, dann wäre da noch das MacBook. Jedenfalls große Klasse, hier bei Euch so schnell & kompetent Hilfe bekommen zu haben.
Gruß Ronny

felix1 25.02.2015 17:53

Zitat:

Zitat von RonnysPC (Beitrag 1432410)
felix1,
die Einstellungen in meiner Win 8.1 Firewall haben etwas Sorge in mir aufkommen lassen, 2...3 Einträge mit der Bezeichnung "VPN" im Namen, ich habe die komplette Firewall auf Ausgangswerte zurückgesetzt. Dem anderen Win 8.1 Nutzer (Lenovo Notebook) habe ich einen Suchlauf mit ESET Online nahegelegt, dann wäre da noch das MacBook. Jedenfalls große Klasse, hier bei Euch so schnell & kompetent Hilfe bekommen zu haben.
Gruß Ronny

Sry, dass verstehe ich jetzt mal überhaut nicht.
Mein Notebook, mein Desks und und meine zwei Tabs, eines davon mit 8.1 mit Tastatur, wovon ich gerade poste, sind personalisiert auf Felix.
Da hat kein User die Möglichkeit, irgendeinen VPN-Account anzulegen.
Meine Meinung zu Gästen habe ich ja schon früher gepostet.


Alle Zeitangaben in WEZ +1. Es ist jetzt 10:00 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55