Gandalf14 | 06.12.2013 16:10 | OK! Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-12-2013
Ran by user (ATTENTION: The logged in user is not administrator) on GANDALF-PC on 02-12-2013 13:26:41
Running from C:\Users\user\Downloads
Windows 7 Ultimate (X64) OS Language: German Standard
Internet Explorer Version 8
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(CJSC Returnil Software) C:\Program Files (x86)\Returnil\RVS\rvsgui.exe
(Creative Technology Ltd) C:\Windows\SysWOW64\CtHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(Acronis) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_117.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [AsioReg] - REGSVR32.EXE /S CTASIO.DLL
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-10-18] (NVIDIA Corporation)
HKLM\...\Run: [Acronis Scheduler2 Service] - C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [519408 2013-07-18] (Acronis)
HKLM-x32\...\Winlogon: [Userinit] C:\Windows\sysWOW64\userinit.exe [26112 2009-07-14] (Microsoft Corporation)
HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1820584 2013-10-30] (Valve Corporation)
HKCU\...\Run: [SandboxieControl] - C:\Program Files\Sandboxie\SbieCtrl.exe [759496 2013-10-16] (Sandboxie Holdings, LLC)
HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6604568 2013-11-05] (SUPERAntiSpyware)
HKLM-x32\...\Run: [AsioThk32Reg] - REGSVR32.EXE /S CTASIO.DLL
HKLM-x32\...\Run: [CTHelper] - C:\Windows\\SysWOW64\CTHELPER.EXE [19456 2007-04-09] (Creative Technology Ltd)
HKLM-x32\...\Run: [CTxfiHlp] - C:\Windows\\SysWOW64\CTXFIHLP.EXE [19968 2007-04-09] (Creative Technology Ltd)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4956176 2013-11-07] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [TrueImageMonitor.exe] - C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [7818392 2013-08-22] (Acronis)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] - C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [1105848 2013-01-10] (Acronis)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x7119ECB2C5E6CE01
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll ()
Toolbar: HKLM-x32 - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll ()
FireFox:
========
FF ProfilePath: C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\holb5gjn.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: DownloadHelper - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\holb5gjn.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
FF Extension: aios - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\holb5gjn.default\Extensions\{097d3191-e6fa-4728-9826-b533d755359d}.xpi
FF Extension: noscript - C:\Users\user\AppData\Roaming\Mozilla\Firefox\Profiles\holb5gjn.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
==================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [144152 2013-10-10] (SUPERAntiSpyware.com)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3478544 2013-11-11] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.)
R2 CGVPNCliService; C:\Program Files\CyberGhost VPN\Service.exe [26600 2013-10-08] (CyberGhost S.R.L)
R2 lmhosts; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 NlaSvc; C:\Windows\System32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 nsi; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15122208 2013-10-18] (NVIDIA Corporation)
R2 RVSMONBL; C:\Program Files (x86)\Returnil\RVS\rvsmon.exe [1801504 2011-07-01] (CJSC Returnil Software)
R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [186056 2013-10-16] (Sandboxie Holdings, LLC)
==================== Drivers (Whitelisted) ====================
R3 AtcL001; C:\Windows\System32\DRIVERS\l160x64.sys [58368 2009-06-25] (Atheros Communications, Inc.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-05] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [240920 2013-11-04] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [194872 2013-10-24] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-10] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [251192 2013-08-01] (AVG Technologies CZ, s.r.o.)
R3 COMMONFX.DLL; C:\Windows\System32\COMMONFX.DLL [151296 2007-04-12] (Creative Technology Ltd)
S3 CT20XUT.DLL; C:\Windows\System32\CT20XUT.DLL [252712 2007-04-10] (Creative Technology Ltd.)
R3 CTAUDFX.DLL; C:\Windows\System32\CTAUDFX.DLL [700200 2007-04-10] (Creative Technology Ltd)
S3 CTEAPSFX.DLL; C:\Windows\System32\CTEAPSFX.DLL [219432 2007-04-10] (Creative Technology Ltd)
S3 CTEDSPFX.DLL; C:\Windows\System32\CTEDSPFX.DLL [321832 2007-04-10] (Creative Technology Ltd)
S3 CTEDSPIO.DLL; C:\Windows\System32\CTEDSPIO.DLL [190248 2007-04-10] (Creative Technology Ltd)
S3 CTEDSPSY.DLL; C:\Windows\System32\CTEDSPSY.DLL [363304 2007-04-10] (Creative Technology Ltd)
S3 CTERFXFX.DLL; C:\Windows\System32\CTERFXFX.DLL [142120 2007-04-10] (Creative Technology Ltd)
S3 CTEXFIFX.DLL; C:\Windows\System32\CTEXFIFX.DLL [1571112 2007-04-10] (Creative Technology Ltd.)
S3 CTHWIUT.DLL; C:\Windows\System32\CTHWIUT.DLL [123688 2007-04-10] (Creative Technology Ltd.)
R3 CTSBLFX.DLL; C:\Windows\System32\CTSBLFX.DLL [681256 2007-04-10] (Creative Technology Ltd)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [254528 2013-11-10] (DT Soft Ltd)
S3 MEMSWEEP2; C:\Windows\system32\CBF7.tmp [6144 2009-06-18] (Sophos Plc)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [8192 2005-03-29] ()
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation)
S1 prodrv06; C:\Windows\SysWow64\drivers\prodrv06.sys [54272 2004-04-08] (Protection Technology)
S0 prohlp02; C:\Windows\SysWow64\drivers\prohlp02.sys [70400 2004-04-08] (Protection Technology)
S0 prosync1; C:\Windows\SysWow64\drivers\prosync1.sys [6944 2003-09-06] (Protection Technology)
R1 rvsmon; C:\Windows\System32\drivers\rvsmon.sys [170584 2011-06-24] (CJSC Returnil Software)
R1 rvsmonf; C:\Windows\System32\drivers\rvsmonf.sys [55200 2011-06-24] (CJSC Returnil Software)
R2 rvsmonn; C:\Windows\System32\drivers\rvsmonn2.sys [23744 2011-06-24] (CJSC Returnil Software)
R0 rvsystem; C:\Windows\System32\drivers\rvsystem.sys [65992 2011-07-01] (CJSC Returnil Software)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [200552 2013-10-16] (Sandboxie Holdings, LLC)
S0 sfhlp01; C:\Windows\SysWow64\drivers\sfhlp01.sys [4832 2003-12-01] (Protection Technology)
R0 tib; C:\Windows\System32\DRIVERS\tib.sys [1120032 2013-11-16] (Acronis International GmbH)
R0 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [183224 2013-11-16] (Acronis)
R0 vidsflt; C:\Windows\System32\DRIVERS\vidsflt.sys [117024 2013-11-16] (Acronis International GmbH)
S3 GPU-Z; \??\C:\Users\Gandalf\AppData\Local\Temp\GPU-Z.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-02 13:26 - 2013-12-02 13:26 - 00011376 _____ C:\Users\user\Downloads\FRST.txt
2013-12-02 13:26 - 2013-12-02 13:26 - 00000546 _____ C:\Users\user\Downloads\defogger_disable.log
2013-12-02 13:26 - 2013-12-02 13:26 - 00000168 _____ C:\Users\Gandalf\defogger_reenable
2013-12-02 13:26 - 2013-12-02 13:26 - 00000000 ____D C:\FRST
2013-12-02 13:25 - 2013-12-02 13:25 - 00377856 _____ C:\Users\user\Downloads\04lwrj2g.exe
2013-12-02 13:24 - 2013-12-02 13:25 - 01959184 _____ (Farbar) C:\Users\user\Downloads\FRST64.exe
2013-12-02 13:24 - 2013-12-02 13:24 - 00050477 _____ C:\Users\user\Downloads\Defogger.exe
2013-12-02 12:53 - 2013-12-02 12:53 - 00304416 _____ C:\Users\user\Downloads\Vermögen Wie das Geld von Superreichen verwaltet wird - Nachrichten Geld - Verbraucher - DIE WELT.htm
2013-12-02 12:53 - 2013-12-02 12:53 - 00000000 ____D C:\Users\user\Downloads\Vermögen Wie das Geld von Superreichen verwaltet wird - Nachrichten Geld - Verbraucher - DIE WELT-Dateien
2013-12-01 14:20 - 2013-12-01 14:20 - 00000000 ____D C:\Users\user\AppData\Roaming\vlc
2013-11-30 23:37 - 2013-11-30 23:37 - 00000333 _____ C:\Users\user\Documents\briefRA.txt
2013-11-30 23:35 - 2013-11-30 23:39 - 272631648 _____ C:\Users\user\Downloads\atih_installer_160wd_s_e.exe
2013-11-30 22:34 - 2013-11-30 22:34 - 00642632 _____ (EFD Software ) C:\Users\user\Downloads\hdtune_255.exe
2013-11-30 22:25 - 2013-11-30 22:25 - 08646656 _____ C:\Users\user\Downloads\HDDlifePro_4.0.194.msi
2013-11-30 22:15 - 2013-11-30 22:16 - 14536560 _____ (Abelssoft ) C:\Users\user\Downloads\checkdrive2014.exe
2013-11-30 20:38 - 2013-11-30 20:38 - 00001949 _____ C:\Users\Public\Desktop\CDBurnerXP.lnk
2013-11-30 20:38 - 2013-11-30 20:38 - 00000000 ____D C:\Users\user\AppData\Roaming\Canneverbe Limited
2013-11-30 20:38 - 2013-11-30 20:38 - 00000000 ____D C:\Users\Gandalf\AppData\Roaming\Canneverbe Limited
2013-11-30 20:38 - 2013-11-30 20:38 - 00000000 ____D C:\ProgramData\Canneverbe Limited
2013-11-30 20:38 - 2013-11-30 20:38 - 00000000 ____D C:\Program Files (x86)\CDBurnerXP
2013-11-30 20:37 - 2013-11-30 20:37 - 04985608 _____ (Canneverbe Limited ) C:\Users\user\Downloads\cdbxp_setup_4.5.2.4291_minimal.exe
2013-11-30 19:59 - 2013-11-30 19:59 - 00015896 _____ C:\Users\user\Windows XP - Wiederherstellungspunkt setzen.htm
2013-11-30 19:59 - 2013-11-30 19:59 - 00000000 ____D C:\Users\user\Windows XP - Wiederherstellungspunkt setzen-Dateien
2013-11-30 19:58 - 2013-11-30 20:01 - 185533351 _____ C:\Users\user\cs-200412-pfw_video.mp4
2013-11-30 19:58 - 2013-11-30 19:58 - 00076593 _____ C:\Users\user\Zonealarm (zaSetup_92_058_000_de.exe) - Seite 2 - Trojaner-Board.htm
2013-11-30 19:58 - 2013-11-30 19:58 - 00051923 _____ C:\Users\user\Zonealarm (zaSetup_92_058_000_de.exe) - Seite 3 - Trojaner-Board.htm
2013-11-30 19:58 - 2013-11-30 19:58 - 00000000 ____D C:\Users\user\Zonealarm (zaSetup_92_058_000_de.exe) - Seite 3 - Trojaner-Board-Dateien
2013-11-30 19:58 - 2013-11-30 19:58 - 00000000 ____D C:\Users\user\Zonealarm (zaSetup_92_058_000_de.exe) - Seite 2 - Trojaner-Board-Dateien
2013-11-30 19:57 - 2013-11-30 19:57 - 00092999 _____ C:\Users\user\Zonealarm (zaSetup_92_058_000_de.exe) - Trojaner-Board.htm
2013-11-30 19:57 - 2013-11-30 19:57 - 00000000 ____D C:\Users\user\Zonealarm (zaSetup_92_058_000_de.exe) - Trojaner-Board-Dateien
2013-11-30 19:56 - 2013-11-30 19:56 - 00080844 _____ C:\Users\user\ZoneAlarm deinstallieren - Trojaner-Board.htm
2013-11-30 19:56 - 2013-11-30 19:56 - 00074314 _____ C:\Users\user\ZoneAlarm deinstallieren - Seite 2 - Trojaner-Board.htm
2013-11-30 19:56 - 2013-11-30 19:56 - 00038866 _____ C:\Users\user\Ich verzweifel langsam (Zone Alarm Problem) - Seite 2 - Trojaner-Board.htm
2013-11-30 19:56 - 2013-11-30 19:56 - 00038412 _____ C:\Users\user\ZoneAlarm deinstallieren - Seite 3 - Trojaner-Board.htm
2013-11-30 19:56 - 2013-11-30 19:56 - 00000000 ____D C:\Users\user\ZoneAlarm deinstallieren - Trojaner-Board-Dateien
2013-11-30 19:56 - 2013-11-30 19:56 - 00000000 ____D C:\Users\user\ZoneAlarm deinstallieren - Seite 3 - Trojaner-Board-Dateien
2013-11-30 19:56 - 2013-11-30 19:56 - 00000000 ____D C:\Users\user\ZoneAlarm deinstallieren - Seite 2 - Trojaner-Board-Dateien
2013-11-30 19:56 - 2013-11-30 19:56 - 00000000 ____D C:\Users\user\Ich verzweifel langsam (Zone Alarm Problem) - Seite 2 - Trojaner-Board-Dateien
2013-11-30 19:55 - 2013-11-30 19:55 - 00069864 _____ C:\Users\user\Ich verzweifel langsam (Zone Alarm Problem) - Trojaner-Board.htm
2013-11-30 19:55 - 2013-11-30 19:55 - 00000000 ____D C:\Users\user\Ich verzweifel langsam (Zone Alarm Problem) - Trojaner-Board-Dateien
2013-11-30 00:35 - 2013-11-30 00:36 - 00000000 ____D C:\c2
2013-11-30 00:00 - 2013-11-30 00:00 - 01339675 _____ C:\Users\user\Downloads\http _hilfe.o2online.de_o2de_attachments_o2de_18032013_5_1_
2013-11-29 18:15 - 2013-11-29 18:15 - 00073600 _____ C:\Users\user\Downloads\Anlegen mit den Profis Social Trading auf dem Vormarsch - teleboerse.de.htm
2013-11-29 18:15 - 2013-11-29 18:15 - 00000000 ____D C:\Users\user\Downloads\Anlegen mit den Profis Social Trading auf dem Vormarsch - teleboerse.de-Dateien
2013-11-29 00:23 - 2013-11-29 00:23 - 00134958 _____ C:\Users\user\Downloads\HP Compaq 6710b 15,4``TFT Core2 Duo 1,8 GHz 2GB RAM 80Gb DVD-Brenner WLAN + _ eBay.htm
2013-11-29 00:23 - 2013-11-29 00:23 - 00000000 ____D C:\Users\user\Downloads\HP Compaq 6710b 15,4``TFT Core2 Duo 1,8 GHz 2GB RAM 80Gb DVD-Brenner WLAN + _ eBay-Dateien
2013-11-27 20:04 - 2013-11-27 20:04 - 00006460 _____ C:\Users\Gandalf\Documents\Install STAR WARS The Old Republic.log
2013-11-27 20:04 - 2013-11-27 20:04 - 00000000 ____D C:\Users\hedev
2013-11-27 20:01 - 2013-11-27 20:02 - 39777624 _____ C:\Users\user\Downloads\SWTOR_setup.exe
2013-11-27 19:56 - 2013-11-27 19:57 - 00000317 _____ C:\Users\user\Downloads\RootkitRemover20131127195657.txt
2013-11-27 19:55 - 2013-11-27 19:56 - 00000201 _____ C:\Users\user\Downloads\RootkitRemover20131127195557.txt
2013-11-27 19:21 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\CBF7.tmp
2013-11-27 19:20 - 2013-11-27 19:20 - 00551408 _____ (McAfee, Inc.) C:\Users\user\Downloads\rootkitremover.exe
2013-11-27 19:20 - 2013-11-27 19:20 - 00000000 ____D C:\Program Files (x86)\Sophos
2013-11-27 19:20 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\D845.tmp
2013-11-27 19:19 - 2013-11-27 19:19 - 04121952 _____ (Kaspersky Lab ZAO) C:\Users\user\Downloads\TDSSKiller19.exe
2013-11-27 19:19 - 2013-11-27 19:19 - 00377856 _____ C:\Users\user\Downloads\gmer_2.1.19163.exe
2013-11-27 19:18 - 2013-11-27 19:18 - 01339288 _____ C:\Users\user\Downloads\sar_15_sfx.exe
2013-11-27 18:17 - 2013-11-30 02:17 - 00000508 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 74b5d90e-dfc4-42a5-a763-ba904c139b1a.job
2013-11-27 18:17 - 2013-11-30 02:00 - 00000508 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 9b3ee746-07a1-4bfe-bf59-558f25dfc6f5.job
2013-11-27 18:17 - 2013-11-27 18:17 - 00001808 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
2013-11-27 18:17 - 2013-11-27 18:17 - 00000000 ____D C:\Users\user\AppData\Roaming\SUPERAntiSpyware.com
2013-11-27 18:17 - 2013-11-27 18:17 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com
2013-11-27 18:17 - 2013-11-27 18:17 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-11-27 12:35 - 2013-11-27 12:35 - 00228565 _____ C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 6 - ComputerBase Forum.htm
2013-11-27 12:35 - 2013-11-27 12:35 - 00214742 _____ C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 7 - ComputerBase Forum.htm
2013-11-27 12:35 - 2013-11-27 12:35 - 00203250 _____ C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 8 - ComputerBase Forum.htm
2013-11-27 12:35 - 2013-11-27 12:35 - 00201135 _____ C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 9 - ComputerBase Forum.htm
2013-11-27 12:35 - 2013-11-27 12:35 - 00195588 _____ C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 4 - ComputerBase Forum.htm
2013-11-27 12:35 - 2013-11-27 12:35 - 00188663 _____ C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 5 - ComputerBase Forum.htm
2013-11-27 12:35 - 2013-11-27 12:35 - 00121530 _____ C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 10 - ComputerBase Forum.htm
2013-11-27 12:35 - 2013-11-27 12:35 - 00000000 ____D C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 9 - ComputerBase Forum-Dateien
2013-11-27 12:35 - 2013-11-27 12:35 - 00000000 ____D C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 8 - ComputerBase Forum-Dateien
2013-11-27 12:35 - 2013-11-27 12:35 - 00000000 ____D C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 7 - ComputerBase Forum-Dateien
2013-11-27 12:35 - 2013-11-27 12:35 - 00000000 ____D C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 6 - ComputerBase Forum-Dateien
2013-11-27 12:35 - 2013-11-27 12:35 - 00000000 ____D C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 5 - ComputerBase Forum-Dateien
2013-11-27 12:35 - 2013-11-27 12:35 - 00000000 ____D C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 4 - ComputerBase Forum-Dateien
2013-11-27 12:35 - 2013-11-27 12:35 - 00000000 ____D C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 10 - ComputerBase Forum-Dateien
2013-11-27 12:34 - 2013-11-27 12:34 - 00239149 _____ C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 2 - ComputerBase Forum.htm
2013-11-27 12:34 - 2013-11-27 12:34 - 00188249 _____ C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 3 - ComputerBase Forum.htm
2013-11-27 12:34 - 2013-11-27 12:34 - 00000000 ____D C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 3 - ComputerBase Forum-Dateien
2013-11-27 12:34 - 2013-11-27 12:34 - 00000000 ____D C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - Seite 2 - ComputerBase Forum-Dateien
2013-11-27 12:00 - 2013-11-27 12:00 - 00267742 _____ C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - ComputerBase Forum.htm
2013-11-27 12:00 - 2013-11-27 12:00 - 00000000 ____D C:\Users\user\Downloads\[HowTo]Firewall im Whitelist-Modus --) Ungewollten Traffic automatisch blockieren - ComputerBase Forum-Dateien
2013-11-27 09:50 - 2013-11-27 09:50 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software
2013-11-27 09:50 - 2013-11-27 09:50 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software
2013-11-26 09:43 - 2009-07-14 05:54 - 00000000 ___RD C:\Users\TEMP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-11-26 09:43 - 2009-07-14 05:49 - 00000000 ___RD C:\Users\TEMP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-11-25 03:23 - 2013-11-25 03:23 - 00000000 ____D C:\Users\user\AppData\Roaming\WinRAR
2013-11-25 03:12 - 2013-11-25 03:16 - 05708747 _____ C:\Users\user\Downloads\LPIC_1.7z
2013-11-25 02:38 - 2013-11-25 02:43 - 00000000 ____D C:\Users\user\AppData\Local\CyberGhost
2013-11-25 02:35 - 2013-11-25 02:35 - 00000000 ____D C:\Users\Gandalf\AppData\Local\CyberGhost
2013-11-25 02:28 - 2013-11-25 02:28 - 01038208 _____ (CyberGhost SRL ) C:\Users\user\Downloads\driver-hotfix(2).exe
2013-11-25 01:59 - 2013-11-25 01:59 - 01038208 _____ (CyberGhost SRL ) C:\Users\user\Downloads\driver-hotfix(1).exe
2013-11-25 01:58 - 2013-11-25 01:58 - 01038208 _____ (CyberGhost SRL ) C:\Users\user\Downloads\driver-hotfix.exe
2013-11-25 01:23 - 2013-11-25 02:36 - 00000000 ____D C:\Program Files\CyberGhost VPN
2013-11-25 01:23 - 2013-11-25 01:24 - 00000000 ____D C:\Program Files\TAP-Windows
2013-11-25 01:23 - 2013-11-25 01:23 - 00001746 _____ C:\Users\Gandalf\Desktop\CyberGhost VPN.lnk
2013-11-24 22:40 - 2013-11-24 22:40 - 00000036 _____ C:\Users\user\Documents\bgapotheke.txt
2013-11-24 20:54 - 2013-11-24 20:54 - 00205255 _____ C:\Users\user\Downloads\Amazon.de Kundenrezensionen Regel Nummer 1 Einfach erfolgreich anlegen!.htm
2013-11-24 20:54 - 2013-11-24 20:54 - 00000000 ____D C:\Users\user\Downloads\Amazon.de Kundenrezensionen Regel Nummer 1 Einfach erfolgreich anlegen!-Dateien
2013-11-24 20:23 - 2013-11-24 20:23 - 00297561 _____ C:\Users\user\Downloads\Carsten Maschmeyer 'Irgendjemand hat immer ein größeres Boot' - Nachrichten Wirtschaft - DIE WELT.htm
2013-11-24 20:23 - 2013-11-24 20:23 - 00265701 _____ C:\Users\user\Downloads\Investments So werden Sie innerhalb von 17 Jahren Millionär - Nachrichten Geld - Geldanlage - DIE WELT.htm
2013-11-24 20:23 - 2013-11-24 20:23 - 00000000 ____D C:\Users\user\Downloads\Investments So werden Sie innerhalb von 17 Jahren Millionär - Nachrichten Geld - Geldanlage - DIE WELT-Dateien
2013-11-24 20:23 - 2013-11-24 20:23 - 00000000 ____D C:\Users\user\Downloads\Carsten Maschmeyer 'Irgendjemand hat immer ein größeres Boot' - Nachrichten Wirtschaft - DIE WELT-Dateien
2013-11-24 20:16 - 2013-11-24 20:16 - 00328899 _____ C:\Users\user\Downloads\20 Jahre Demokratie Die Regenbogen-Nation Südafrika wird erwachsen - Nachrichten Sonderthemen - Weinland Südafrika - DIE WELT.htm
2013-11-24 20:16 - 2013-11-24 20:16 - 00000000 ____D C:\Users\user\Downloads\20 Jahre Demokratie Die Regenbogen-Nation Südafrika wird erwachsen - Nachrichten Sonderthemen - Weinland Südafrika - DIE WELT-Dateien
2013-11-24 20:05 - 2013-11-24 20:05 - 28323928 _____ (SUPERAntiSpyware) C:\Users\user\Downloads\SUPERAntiSpyware.exe
2013-11-24 20:05 - 2013-11-24 20:05 - 00937232 _____ (Crawler.com ) C:\Users\user\Downloads\SpywareTerminatorSetup.exe
2013-11-24 20:00 - 2013-11-24 20:00 - 00323013 _____ C:\Users\user\Downloads\Versicherungen Bei Berufsunfähigkeit wird Zahlung oft verweigert - Nachrichten Geld - Verbraucher - DIE WELT.htm
2013-11-24 20:00 - 2013-11-24 20:00 - 00000000 ____D C:\Users\user\Downloads\Versicherungen Bei Berufsunfähigkeit wird Zahlung oft verweigert - Nachrichten Geld - Verbraucher - DIE WELT-Dateien
2013-11-24 00:00 - 2013-11-24 00:00 - 02089325 _____ C:\VS_EXPBSLN_x64_deu.CAB
2013-11-24 00:00 - 2013-11-24 00:00 - 00556032 _____ C:\VS_EXPBSLN_x64_deu.MSI
2013-11-23 23:54 - 2013-11-23 23:54 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs
2013-11-23 23:49 - 2013-11-23 23:49 - 03349320 _____ (Microsoft Corporation) C:\Users\user\Downloads\vc_web(1).exe
2013-11-23 23:13 - 2013-11-23 23:33 - 1320222720 _____ C:\Users\user\Downloads\linuxmint-16-mate-dvd-64bit-rc.iso
2013-11-23 22:56 - 2013-11-23 22:59 - 226568192 _____ C:\Users\user\Downloads\slax-English-US-7.0.8-i486.iso
2013-11-23 22:51 - 2013-11-23 22:51 - 00000000 ____D C:\Users\user\VirtualBox VMs
2013-11-23 22:40 - 2013-11-27 09:35 - 00000000 ____D C:\Users\user\.VirtualBox
2013-11-23 22:39 - 2013-11-23 22:39 - 00001076 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk
2013-11-23 22:39 - 2013-11-23 22:39 - 00000000 ____D C:\Program Files\Oracle
2013-11-23 22:39 - 2013-11-01 15:13 - 00252688 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2013-11-23 22:39 - 2013-11-01 15:10 - 00126736 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2013-11-23 22:31 - 2013-11-23 22:38 - 236482560 _____ C:\Users\user\Downloads\slax-English-US-7.0.8-x86_64.iso
2013-11-23 22:31 - 2013-11-23 22:38 - 236066115 _____ C:\Users\user\Downloads\slax-English-US-7.0.8-x86_64.zip
2013-11-23 22:30 - 2013-11-23 22:32 - 106230544 _____ (Oracle Corporation) C:\Users\user\Downloads\VirtualBox-4.3.2-90405-Win.exe
2013-11-23 21:54 - 2013-11-23 21:54 - 00054859 _____ C:\Users\user\Documents\Expression list iterators incompatible - Seite 2 - C, C++, C#, Java und andere Sprachen - spieleprogrammierer.de.htm
2013-11-23 21:54 - 2013-11-23 21:54 - 00000000 ____D C:\Users\user\Documents\Expression list iterators incompatible - Seite 2 - C, C++, C#, Java und andere Sprachen - spieleprogrammierer.de-Dateien
2013-11-23 21:53 - 2013-11-23 21:53 - 00089554 _____ C:\Users\user\Documents\Expression list iterators incompatible - C, C++, C#, Java und andere Sprachen - spieleprogrammierer.de.htm
2013-11-23 21:53 - 2013-11-23 21:53 - 00000000 ____D C:\Users\user\Documents\Expression list iterators incompatible - C, C++, C#, Java und andere Sprachen - spieleprogrammierer.de-Dateien
2013-11-23 12:55 - 2013-11-23 12:55 - 00000000 ____D C:\Users\user\AppData\Roaming\Media Player Classic
2013-11-23 12:55 - 2013-11-23 12:55 - 00000000 ____D C:\Users\user\AppData\Roaming\DivX
2013-11-23 11:34 - 2013-11-23 11:34 - 12419072 _____ C:\Users\user\Downloads\epson376742eu.exe
2013-11-23 11:33 - 2013-11-23 11:36 - 14896640 _____ C:\Users\user\Downloads\epson374991eu.exe
2013-11-23 11:33 - 2013-11-23 11:34 - 12314112 _____ C:\Users\user\Downloads\epson324855eu.exe
2013-11-23 11:33 - 2013-11-23 11:33 - 14530048 _____ C:\Users\user\Downloads\epson323996eu.exe
2013-11-22 00:46 - 2013-11-22 00:46 - 00000000 ____D C:\MSCPP
2013-11-22 00:45 - 2013-11-22 00:45 - 00000000 ____D C:\Users\user\AppData\Roaming\DAEMON Tools Lite
2013-11-21 23:16 - 2013-11-21 23:27 - 847288320 _____ C:\Users\user\Downloads\VS2013_RTM_DskExp_DEU.iso
2013-11-21 22:54 - 2013-11-24 00:28 - 00000000 ____D C:\Users\user\Documents\Visual Studio 2010
2013-11-21 22:51 - 2013-11-24 00:46 - 00000000 ____D C:\Users\Gandalf\Documents\Visual Studio 2010
2013-11-21 22:51 - 2013-11-21 22:51 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2013-11-21 22:51 - 2013-11-21 22:51 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2013-11-21 22:51 - 2013-11-21 22:51 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2013-11-21 22:51 - 2013-11-21 22:51 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2013-11-21 22:50 - 2013-11-24 00:44 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 10.0
2013-11-21 22:49 - 2013-11-21 22:49 - 00000000 ____D C:\Windows\symbols
2013-11-21 22:49 - 2013-11-21 22:49 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 10.0
2013-11-21 22:49 - 2013-11-21 22:49 - 00000000 ____D C:\Program Files\Microsoft Help Viewer
2013-11-21 22:47 - 2013-11-21 22:47 - 02073703 _____ C:\VS_EXPBSLN_x64_enu.CAB
2013-11-21 22:47 - 2013-11-21 22:47 - 00551424 _____ C:\VS_EXPBSLN_x64_enu.MSI
2013-11-21 22:46 - 2013-11-21 22:46 - 03324232 _____ (Microsoft Corporation) C:\Users\user\Downloads\vc_web.exe
2013-11-21 22:44 - 2013-11-21 22:44 - 01128064 _____ (Microsoft Corporation) C:\Users\user\Downloads\vs_ultimate.exe
2013-11-21 19:45 - 2013-11-21 19:45 - 40918306 _____ C:\Users\user\Downloads\Hurrican.zip
2013-11-21 19:44 - 2013-11-21 19:44 - 00000000 ___RD C:\Sandbox
2013-11-21 19:42 - 2013-12-01 13:45 - 00001494 _____ C:\Windows\Sandboxie.ini
2013-11-21 19:42 - 2013-11-21 19:42 - 00000896 _____ C:\Users\user\Desktop\Sandboxed Web Browser.lnk
2013-11-21 19:42 - 2013-11-21 19:42 - 00000000 ____D C:\Program Files\Sandboxie
2013-11-21 19:41 - 2013-11-21 19:41 - 02600648 _____ (Sandboxie Holdings, LLC) C:\Users\user\Downloads\SandboxieInstall_4.06.exe
2013-11-21 18:21 - 2013-11-21 18:23 - 00000000 ____D C:\Users\user\Documents\Hard Reset Extended
2013-11-21 17:12 - 2013-11-21 17:12 - 00000221 _____ C:\Users\user\Desktop\Hard Reset.url
2013-11-21 14:56 - 2013-11-21 14:56 - 35095200 _____ (Skype Technologies S.A.) C:\Users\user\Downloads\Skype611SetupFull.exe
2013-11-21 14:09 - 2013-11-21 14:09 - 00000000 ____D C:\Users\user\AppData\Roaming\vlc-BackupByVLCPortable
2013-11-21 01:03 - 2013-11-21 01:03 - 00000013 _____ C:\hm3
2013-11-21 00:31 - 2013-11-21 00:31 - 00001111 _____ C:\ste.txt
2013-11-20 13:39 - 2013-11-20 13:39 - 00001035 _____ C:\Users\user\Desktop\VLCPortable - Verknüpfung.lnk
2013-11-20 13:38 - 2013-11-20 13:39 - 00000000 ____D C:\Users\user\Desktop\VLCPortable
2013-11-20 13:38 - 2013-11-20 13:38 - 25034360 _____ (PortableApps.com) C:\Users\user\Desktop\VLCPortable_2.1.1.paf.exe
2013-11-20 13:17 - 2013-11-21 01:04 - 00000000 ____D C:\a
2013-11-20 13:11 - 2013-11-20 13:12 - 00292152 _____ (Gravity Interactive, Inc.) C:\Users\user\Downloads\Requiem-Installer-08.01.2013.exe
2013-11-20 13:02 - 2013-11-20 11:17 - 206159758 _____ C:\Cyber-Krieg - Wenn das Web zur Waffe wird.mp4
2013-11-20 13:02 - 2013-11-20 11:13 - 158117123 _____ C:\Dokumentation - Cyber War - Viren.mp4
2013-11-20 13:02 - 2013-11-20 11:05 - 27346887 _____ C:\8641438.flv
2013-11-20 13:02 - 2013-11-20 11:04 - 227456595 _____ C:\Fehler im System - Hackerangriff-1.mp4
2013-11-20 13:02 - 2013-11-20 11:02 - 03534793 _____ C:\Goodgame Mafia Bandenkrieg 1 (Lvl. 179) und 2 (Lvl. 189) der.mp4
2013-11-20 13:02 - 2013-11-20 10:48 - 227456595 _____ C:\Fehler im System - Hackerangriff.mp4
2013-11-20 12:00 - 2013-11-20 12:00 - 00050477 _____ C:\Defogger.exe
2013-11-20 11:58 - 2013-11-20 11:58 - 01957964 _____ (Farbar) C:\FRST64.exe
2013-11-20 11:57 - 2013-11-20 11:58 - 01090881 _____ (Farbar) C:\FRST.exe
2013-11-20 11:10 - 2013-11-20 11:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-20 10:44 - 2013-11-22 23:59 - 00000000 ____D C:\Users\user\dwhelper
2013-11-19 21:35 - 2013-11-19 21:35 - 00000014 _____ C:\npw2
2013-11-19 20:13 - 2013-11-19 20:13 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\user\Desktop\gpu-z.0.7.4(1).exe
2013-11-19 20:05 - 2013-11-19 20:05 - 00000000 ____D C:\Users\user\AppData\Roaming\Day 1 Studios
2013-11-19 19:09 - 2013-11-19 19:09 - 00000221 _____ C:\Users\user\Desktop\F.E.A.R. 3.url
2013-11-19 00:40 - 2013-11-19 00:40 - 02347384 _____ (ESET) C:\Users\user\Downloads\esetsmartinstaller_deu.exe
2013-11-19 00:40 - 2013-11-19 00:40 - 00000000 ____D C:\Program Files (x86)\ESET
2013-11-18 22:22 - 2013-11-18 22:22 - 00000222 _____ C:\Users\user\Desktop\Duke Nukem 3D Megaton Edition.url
2013-11-18 21:55 - 2013-11-18 21:55 - 00542040 _____ C:\Users\user\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-18 21:34 - 2013-11-26 09:42 - 00000000 ____D C:\backupAcronis
2013-11-18 17:32 - 2013-11-18 17:40 - 00000000 ____D C:\1c4804752b647e313b195dfc00
2013-11-18 17:28 - 2013-11-18 17:28 - 00000000 ____D C:\Windows\system32\SPReview
2013-11-18 17:27 - 2013-11-18 17:27 - 00000000 ____D C:\Windows\system32\EventProviders
2013-11-18 17:17 - 2013-11-18 17:17 - 00000000 ____D C:\Users\user\AppData\Roaming\NVIDIA
2013-11-18 17:16 - 2013-11-18 17:16 - 00001122 _____ C:\Users\Gandalf\Desktop\EVEREST Ultimate Edition.lnk
2013-11-18 17:16 - 2013-11-18 17:16 - 00000000 ____D C:\Program Files (x86)\Lavalys
2013-11-18 17:15 - 2013-11-18 17:15 - 10255080 _____ (Lavalys, Inc. ) C:\Users\user\Downloads\everestultimate550.exe
2013-11-18 17:14 - 2013-11-18 17:14 - 16364384 _____ (FinalWire Ltd. ) C:\Users\user\Downloads\aida64extreme320.exe
2013-11-18 17:06 - 2013-10-02 01:37 - 13815808 _____ C:\Users\user\AppData\Roaming\Sandra.mdb
2013-11-18 17:04 - 2013-11-18 17:04 - 01350232 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Gandalf\Desktop\gpu-z.0.7.4.exe
2013-11-18 17:04 - 2013-11-18 17:04 - 00000000 ____D C:\Users\Gandalf\AppData\Roaming\NVIDIA
2013-11-18 17:03 - 2013-11-18 17:04 - 61678208 _____ (SiSoftware ) C:\Users\user\Downloads\san1966.exe
2013-11-18 07:57 - 2013-11-18 08:05 - 00000000 ____D C:\18f692245ba24be841
2013-11-18 07:38 - 2013-11-18 07:38 - 00000521 _____ C:\Users\user\Desktop\Netzwerk- und Freigabecenter - Verknüpfung.lnk
2013-11-17 15:24 - 2010-09-14 07:45 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2013-11-17 15:24 - 2010-09-14 07:07 - 00276992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcncsvc.dll
2013-11-17 15:07 - 2012-07-26 05:55 - 00785512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-11-17 15:07 - 2012-07-26 05:55 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2013-11-17 15:07 - 2012-07-26 03:36 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2013-11-17 15:07 - 2012-06-02 15:35 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2013-11-17 15:03 - 2010-02-23 09:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe
2013-11-17 14:51 - 2012-12-16 17:52 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-11-17 14:51 - 2012-12-16 15:40 - 00367616 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-11-17 14:51 - 2012-12-16 15:25 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-11-17 14:51 - 2012-12-16 15:25 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-11-17 14:51 - 2012-07-26 04:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2013-11-17 14:51 - 2012-07-26 04:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2013-11-17 14:51 - 2012-07-26 04:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2013-11-17 14:51 - 2012-07-26 04:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2013-11-17 14:51 - 2012-07-26 04:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2013-11-17 14:51 - 2012-07-26 03:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2013-11-17 14:51 - 2012-07-26 03:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2013-11-17 14:51 - 2012-06-02 15:57 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2013-11-17 14:12 - 2012-03-01 07:54 - 00022896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2013-11-17 14:12 - 2012-03-01 07:40 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2013-11-17 14:12 - 2012-03-01 07:35 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2013-11-17 14:12 - 2012-03-01 06:45 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2013-11-17 14:12 - 2012-03-01 06:40 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2013-11-17 03:03 - 2010-03-04 05:32 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2013-11-17 00:17 - 2013-11-17 00:17 - 00000000 ____D C:\Users\user\AppData\Roaming\Malwarebytes
2013-11-16 23:49 - 2013-11-19 21:58 - 00000000 ____D C:\Meine Backups
2013-11-16 23:40 - 2013-11-16 23:48 - 00000000 ____D C:\ProgramData\Acronis
2013-11-16 23:40 - 2013-11-16 23:40 - 01464096 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\tdrpman.sys
2013-11-16 23:40 - 2013-11-16 23:40 - 01120032 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\tib.sys
2013-11-16 23:40 - 2013-11-16 23:40 - 00367200 _____ (Acronis) C:\Windows\system32\Drivers\afcdp.sys
2013-11-16 23:40 - 2013-11-16 23:40 - 00183224 _____ (Acronis) C:\Windows\system32\Drivers\tib_mounter.sys
2013-11-16 23:40 - 2013-11-16 23:40 - 00000000 ____D C:\Users\Gandalf\AppData\Roaming\Acronis
2013-11-16 23:39 - 2013-11-16 23:39 - 00269600 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\snapman.sys
2013-11-16 23:39 - 2013-11-16 23:39 - 00161568 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\vididr.sys
2013-11-16 23:39 - 2013-11-16 23:39 - 00117024 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\vidsflt.sys
2013-11-16 23:39 - 2013-11-16 23:39 - 00116000 _____ (Acronis International GmbH) C:\Windows\system32\Drivers\fltsrv.sys
2013-11-16 23:39 - 2013-11-16 23:39 - 00001205 _____ C:\Users\Public\Desktop\Acronis True Image 2014.lnk
2013-11-16 23:39 - 2013-11-16 23:39 - 00000000 ____D C:\Program Files (x86)\Acronis
2013-11-16 23:33 - 2012-11-09 06:34 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2013-11-16 23:33 - 2012-11-09 05:49 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2013-11-16 23:33 - 2011-06-16 06:31 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2013-11-16 23:33 - 2011-06-16 05:35 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2013-11-16 23:33 - 2011-06-15 10:58 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2013-11-16 23:33 - 2011-06-15 10:58 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2013-11-16 23:33 - 2011-06-15 10:58 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2013-11-16 23:33 - 2011-06-15 10:58 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2013-11-16 23:33 - 2011-06-15 10:04 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2013-11-16 23:33 - 2011-06-15 10:04 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2013-11-16 23:33 - 2011-06-15 10:04 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2013-11-16 23:33 - 2011-06-15 10:04 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2013-11-16 23:33 - 2011-06-15 10:04 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2013-11-16 23:33 - 2011-02-19 07:37 - 01135104 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2013-11-16 23:32 - 2013-11-16 23:36 - 286870568 _____ (Acronis) C:\Users\user\Downloads\ATIH2014_trial_de-DE.exe
2013-11-16 23:32 - 2013-02-12 16:42 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2013-11-16 23:32 - 2013-02-12 16:37 - 03138048 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2013-11-16 23:32 - 2013-02-12 16:31 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2013-11-16 23:32 - 2013-02-12 16:13 - 02691072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2013-11-16 23:32 - 2013-02-12 16:07 - 00131072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2013-11-16 23:32 - 2013-02-12 14:59 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2013-11-16 23:32 - 2012-11-09 06:34 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-11-16 23:32 - 2012-11-09 05:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-11-16 23:32 - 2012-03-03 07:29 - 01837568 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2013-11-16 23:32 - 2012-03-03 07:29 - 01541120 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-11-16 23:32 - 2012-03-03 07:29 - 00902656 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-11-16 23:32 - 2012-03-03 07:29 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2013-11-16 23:32 - 2012-03-03 07:29 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2013-11-16 23:32 - 2012-03-03 06:40 - 01170944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2013-11-16 23:32 - 2012-03-03 06:40 - 01074176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-11-16 23:32 - 2012-03-03 06:40 - 00739840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2013-11-16 23:32 - 2012-03-03 06:40 - 00218624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2013-11-16 23:32 - 2012-03-03 06:40 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2013-11-16 23:32 - 2011-04-27 03:57 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2013-11-16 23:32 - 2010-12-23 07:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2013-11-16 23:32 - 2010-12-23 07:07 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2013-11-16 23:32 - 2010-12-23 07:02 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2013-11-16 23:32 - 2010-12-23 06:28 - 00850432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2013-11-16 23:32 - 2010-12-23 06:28 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2013-11-16 23:32 - 2010-12-23 06:24 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2013-11-16 23:32 - 2010-08-26 06:27 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2013-11-16 23:32 - 2010-08-26 05:39 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2013-11-16 23:31 - 2013-11-30 00:17 - 00000000 ____D C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2013-11-16 23:31 - 2013-03-01 04:32 - 03150848 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-11-16 23:31 - 2012-01-04 10:58 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2013-11-16 23:31 - 2012-01-04 10:03 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2013-11-16 23:31 - 2011-11-17 08:12 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2013-11-16 23:31 - 2011-11-17 06:39 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2013-11-16 23:31 - 2011-10-26 06:22 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2013-11-16 23:31 - 2011-10-26 06:22 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2013-11-16 23:31 - 2011-10-26 05:28 - 01328640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2013-11-16 23:31 - 2011-10-26 05:28 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2013-11-16 23:31 - 2011-07-09 03:44 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2013-11-16 23:31 - 2011-05-04 06:30 - 02326016 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2013-11-16 23:31 - 2011-05-04 06:28 - 02228224 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2013-11-16 23:31 - 2011-05-04 06:28 - 00779264 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2013-11-16 23:31 - 2011-05-04 06:28 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2013-11-16 23:31 - 2011-05-04 06:28 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2013-11-16 23:31 - 2011-05-04 06:28 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2013-11-16 23:31 - 2011-05-04 06:24 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2013-11-16 23:31 - 2011-05-04 06:24 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2013-11-16 23:31 - 2011-05-04 06:24 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2013-11-16 23:31 - 2011-05-04 05:53 - 01553920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2013-11-16 23:31 - 2011-05-04 05:52 - 01401856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2013-11-16 23:31 - 2011-05-04 05:52 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2013-11-16 23:31 - 2011-05-04 05:52 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2013-11-16 23:31 - 2011-05-04 05:52 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2013-11-16 23:31 - 2011-05-04 05:52 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2013-11-16 23:31 - 2011-05-04 05:52 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2013-11-16 23:31 - 2011-05-04 05:52 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2013-11-16 23:31 - 2011-05-04 05:52 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2013-11-16 23:31 - 2011-05-04 03:51 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2013-11-16 23:31 - 2011-05-04 03:51 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2013-11-16 23:31 - 2010-11-02 06:18 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2013-11-16 23:31 - 2010-11-02 06:17 - 01169408 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2013-11-16 23:31 - 2010-11-02 06:17 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2013-11-16 23:31 - 2010-11-02 06:16 - 01114624 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2013-11-16 23:31 - 2010-11-02 06:10 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2013-11-16 23:31 - 2010-11-02 06:10 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2013-11-16 23:31 - 2010-11-02 05:40 - 00496128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2013-11-16 23:31 - 2010-11-02 05:40 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2013-11-16 23:31 - 2010-11-02 05:34 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe
2013-11-16 23:31 - 2010-11-02 05:34 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe
2013-11-16 23:31 - 2010-06-29 06:39 - 02085376 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2013-11-16 23:31 - 2010-06-29 06:02 - 01413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2013-11-16 23:31 - 2010-05-05 08:37 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2013-11-16 23:31 - 2010-05-05 07:46 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2013-11-16 23:30 - 2013-04-12 15:36 - 01653096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2013-11-16 23:30 - 2010-01-19 10:05 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2013-11-16 23:30 - 2010-01-19 10:05 - 00422912 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2013-11-16 23:30 - 2010-01-19 10:05 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2013-11-16 23:30 - 2010-01-19 10:05 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2013-11-16 23:30 - 2010-01-19 10:00 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2013-11-16 23:30 - 2010-01-19 10:00 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2013-11-16 23:30 - 2010-01-19 10:00 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2013-11-16 23:30 - 2010-01-19 10:00 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2013-11-16 23:30 - 2010-01-19 00:29 - 00369152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2013-11-16 23:30 - 2010-01-19 00:29 - 00365568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2013-11-16 23:30 - 2010-01-19 00:29 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2013-11-16 23:30 - 2010-01-19 00:29 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2013-11-16 23:30 - 2010-01-19 00:28 - 00324608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2013-11-16 23:30 - 2010-01-19 00:28 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2013-11-16 23:30 - 2010-01-19 00:28 - 00280064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2013-11-16 23:30 - 2010-01-19 00:28 - 00277504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2013-11-16 23:30 - 2009-09-03 08:36 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2013-11-16 23:30 - 2009-09-03 08:04 - 01320960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2013-11-16 23:29 - 2012-01-03 07:24 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2013-11-16 23:29 - 2012-01-03 06:44 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2013-11-16 23:29 - 2011-02-24 07:30 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2013-11-16 23:29 - 2011-02-24 06:32 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2013-11-16 23:29 - 2010-12-21 07:16 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2013-11-16 23:29 - 2010-12-21 07:16 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-11-16 23:29 - 2010-12-21 07:16 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2013-11-16 23:29 - 2010-12-21 07:16 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2013-11-16 23:29 - 2010-12-21 07:15 - 00264192 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2013-11-16 23:29 - 2010-12-21 07:15 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2013-11-16 23:29 - 2010-12-21 07:10 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-11-16 23:29 - 2010-12-21 06:38 - 00350720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2013-11-16 23:29 - 2010-12-21 06:38 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-11-16 23:29 - 2010-12-21 06:38 - 00204288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnp.dll
2013-11-16 23:29 - 2010-12-21 06:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2013-11-16 23:29 - 2010-12-21 06:38 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slwga.dll
2013-11-16 23:29 - 2010-12-21 06:34 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-11-16 23:29 - 2010-08-21 07:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-11-16 23:29 - 2010-08-21 06:33 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-11-16 23:29 - 2010-08-04 08:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2013-11-16 23:28 - 2012-06-02 06:25 - 01462784 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-16 23:28 - 2012-06-02 06:25 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-11-16 23:28 - 2012-06-02 06:25 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-11-16 23:28 - 2012-06-02 05:45 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-11-16 23:28 - 2012-06-02 05:45 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-11-16 23:28 - 2012-06-02 05:45 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-11-16 23:28 - 2011-11-19 16:07 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2013-11-16 23:28 - 2011-11-19 15:06 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2013-11-16 23:28 - 2011-03-12 13:03 - 00662528 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2013-11-16 23:28 - 2011-03-12 12:31 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2013-11-16 23:28 - 2009-10-31 07:34 - 02870272 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2013-11-16 23:28 - 2009-10-31 06:45 - 02614272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2013-11-16 23:28 - 2009-10-28 07:24 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2013-11-16 23:24 - 2013-11-21 17:12 - 00000000 ____D C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2013-11-16 23:24 - 2013-11-16 23:24 - 00000222 _____ C:\Users\user\Desktop\System Shock 2.url
2013-11-16 23:18 - 2013-02-12 15:02 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2013-11-16 23:18 - 2012-08-02 18:55 - 00574464 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-11-16 23:18 - 2012-08-02 18:05 - 00490496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2013-11-16 23:18 - 2012-06-09 06:30 - 14165504 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-11-16 23:18 - 2012-06-09 05:46 - 12868608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2013-11-16 23:18 - 2012-06-02 06:38 - 00152432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2013-11-16 23:18 - 2012-06-02 06:38 - 00095088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2013-11-16 23:18 - 2012-06-02 06:37 - 00459216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2013-11-16 23:18 - 2012-06-02 06:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2013-11-16 23:18 - 2012-06-02 05:48 - 00225280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-11-16 23:18 - 2012-06-02 05:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2013-11-16 23:18 - 2012-06-02 05:42 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2013-11-16 23:18 - 2012-04-26 06:34 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2013-11-16 23:18 - 2012-04-26 06:34 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2013-11-16 23:18 - 2012-04-26 06:28 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2013-11-16 23:18 - 2011-11-17 08:11 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2013-11-16 23:18 - 2011-11-17 08:11 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2013-11-16 23:18 - 2011-11-17 08:11 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2013-11-16 23:18 - 2011-11-17 08:08 - 01446912 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2013-11-16 23:18 - 2011-11-17 08:05 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2013-11-16 23:18 - 2011-03-11 07:19 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2013-11-16 23:18 - 2011-03-11 07:19 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2013-11-16 23:18 - 2011-03-11 06:40 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2013-11-16 23:18 - 2011-03-11 06:40 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2013-11-16 23:18 - 2010-05-23 09:37 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-11-16 23:17 - 2013-01-04 06:37 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2013-11-16 23:17 - 2013-01-04 06:37 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-11-16 23:17 - 2013-01-04 06:36 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2013-11-16 23:17 - 2013-01-04 06:33 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2013-11-16 23:17 - 2013-01-04 06:30 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2013-11-16 23:17 - 2013-01-04 06:30 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2013-11-16 23:17 - 2013-01-04 06:26 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-11-16 23:17 - 2013-01-04 05:51 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2013-11-16 23:17 - 2013-01-04 05:51 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2013-11-16 23:17 - 2013-01-04 05:51 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-11-16 23:17 - 2013-01-04 05:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-11-16 23:17 - 2013-01-04 04:19 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2013-11-16 23:17 - 2013-01-04 03:48 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-11-16 23:17 - 2013-01-04 03:48 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-11-16 23:17 - 2013-01-04 03:48 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-11-16 23:17 - 2012-11-20 06:55 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2013-11-16 23:17 - 2012-11-20 06:10 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2013-11-16 23:17 - 2012-11-02 06:30 - 02001408 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2013-11-16 23:17 - 2012-11-02 06:30 - 01880064 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2013-11-16 23:17 - 2012-11-02 06:27 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2013-11-16 23:17 - 2012-11-02 05:50 - 01388544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2013-11-16 23:17 - 2012-11-02 05:50 - 01236992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2013-11-16 23:17 - 2012-11-02 05:48 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2013-11-16 23:17 - 2012-08-24 19:05 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-11-16 23:17 - 2012-08-24 18:10 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-11-16 23:17 - 2012-05-02 06:32 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2013-11-16 23:17 - 2011-04-22 21:18 - 00027008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2013-11-16 23:17 - 2011-03-03 07:17 - 00356352 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2013-11-16 23:17 - 2011-03-03 07:17 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2013-11-16 23:17 - 2011-03-03 07:14 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2013-11-16 23:17 - 2011-03-03 06:29 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2013-11-16 23:17 - 2011-03-03 06:27 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe
2013-11-16 23:17 - 2011-01-26 07:53 - 00982912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-11-16 23:17 - 2011-01-26 07:53 - 00265088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2013-11-16 23:17 - 2011-01-26 07:31 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2013-11-16 23:17 - 2010-11-02 06:18 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2013-11-16 23:17 - 2010-11-02 05:41 - 00135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll
2013-11-16 23:17 - 2010-08-21 07:38 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2013-11-16 23:17 - 2010-08-21 06:36 - 00738816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll
2013-11-16 23:17 - 2010-06-26 06:31 - 01863680 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2013-11-16 23:17 - 2010-06-26 06:14 - 01495040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2013-11-16 23:17 - 2010-05-23 11:15 - 01619456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-11-16 23:17 - 2010-05-23 11:11 - 03181568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2013-11-16 23:17 - 2010-05-23 11:11 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2013-11-16 23:17 - 2010-05-23 09:35 - 04068864 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2013-11-16 23:17 - 2010-05-23 09:35 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2013-11-16 23:17 - 2010-05-23 09:35 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2013-11-16 23:16 - 2013-01-04 06:41 - 01893224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-11-16 23:16 - 2013-01-04 06:40 - 00287576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2013-11-16 23:16 - 2013-01-04 06:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:27 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 06:26 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 03:48 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-11-16 23:16 - 2013-01-04 03:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 03:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 03:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-11-16 23:16 - 2013-01-04 03:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2013-11-16 23:16 - 2012-12-07 06:41 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2013-11-16 23:16 - 2012-12-07 06:35 - 02745856 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2013-11-16 23:16 - 2012-12-07 06:04 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2013-11-16 23:16 - 2012-12-07 05:57 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2013-11-16 23:16 - 2012-12-07 04:45 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2013-11-16 23:16 - 2012-12-07 04:45 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs
2013-11-16 23:16 - 2012-12-07 04:21 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs
2013-11-16 23:16 - 2012-11-22 11:32 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2013-11-16 23:16 - 2012-11-22 10:33 - 00627712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2013-11-16 23:16 - 2012-09-06 18:38 - 00295792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2013-11-16 23:16 - 2012-04-28 04:50 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2013-11-16 23:16 - 2011-08-17 06:32 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2013-11-16 23:16 - 2011-08-17 06:27 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2013-11-16 23:16 - 2011-08-17 06:27 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2013-11-16 23:16 - 2011-08-17 06:27 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2013-11-16 23:16 - 2011-08-17 06:27 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2013-11-16 23:16 - 2011-08-17 05:26 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll
2013-11-16 23:16 - 2011-08-17 05:22 - 00204288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSNP.ax
2013-11-16 23:16 - 2011-08-17 05:22 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2013-11-16 23:16 - 2011-08-17 05:22 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mpeg2Data.ax
2013-11-16 23:16 - 2011-08-17 05:22 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDvbNP.ax
2013-11-16 23:16 - 2011-04-29 04:13 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2013-11-16 23:16 - 2011-04-29 04:12 - 00399872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2013-11-16 23:16 - 2011-04-29 04:12 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2013-11-16 23:15 - 2012-11-30 00:21 - 00420032 _____ C:\Windows\SysWOW64\locale.nls
2013-11-16 23:15 - 2012-11-30 00:19 - 00420032 _____ C:\Windows\system32\locale.nls
2013-11-16 23:15 - 2012-08-11 01:53 - 00714752 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2013-11-16 23:15 - 2012-08-11 00:54 - 00541184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2013-11-16 23:15 - 2012-04-07 13:18 - 03213824 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2013-11-16 23:15 - 2012-04-07 12:34 - 02342400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2013-11-16 23:15 - 2012-03-17 08:55 - 00075632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2013-11-16 23:15 - 2011-12-28 04:59 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-11-16 23:14 - 2012-06-16 06:25 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-16 23:14 - 2012-06-16 06:25 - 00609792 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-16 23:14 - 2012-06-16 05:37 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-11-16 23:14 - 2012-06-16 05:36 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-11-16 23:13 - 2013-12-02 13:19 - 00000000 ____D C:\Program Files (x86)\Steam
2013-11-16 23:13 - 2013-11-16 23:13 - 00000917 _____ C:\Users\Public\Desktop\Steam.lnk |