MBAM Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 28.09.2015
Suchlaufzeit: 19:17
Protokolldatei: mban.txt
Administrator: Ja
Version: 2.1.8.1057
Malware-Datenbank: v2015.09.27.04
Rootkit-Datenbank: v2015.09.22.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: rires
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 414542
Abgelaufene Zeit: 11 Min., 1 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswerte: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 8
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\cfg, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\data, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\user, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
Dateien: 46
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\gcignore.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\preference.ini, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\softmgr.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico\21fdc51434973f19809ce15694b83c26.ico, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico\21fdc51434973f19809ce15694b83c26_48_48.png, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico\245ab0a11c7801f32ba3c8ac0f1bbac2_48_48.png, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico\6f68967bb99b4cb5099b8ac4a945375a.ico, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico\6f68967bb99b4cb5099b8ac4a945375a_48_48.png, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico\739b3077b5a5d7371bdfa2d8386dd6ce, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico\9740802c01387680bd825d1420d875c5.ico, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico\a2e289f9eec4013e1806b5a83e03b8db_48_48.png, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico\a332ceb077da92aa41b2d188954dc94d_48_48.png, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\ico\d312152b632b3e0c2253099cffda7b6e_48_48.png, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\log\install.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\log\isafedownloader.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\log\iSafeTray.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\log\iStart.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\log\logreport.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\log\uninstall.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\eDelayinfo.edb, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\cfg\ors.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\data\nlu.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\data\sta.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\bugreport.ini, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\bugreport.zip, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\ipcdl.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\ipcproxy.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\iSafe.LOG, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\iSafeBS.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\iSafeKrnlCall.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\iSafeKrnlMonCall.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\iSafeList.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\iSafeSvc.LOG, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\iSafeSvc2.LOG, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\iSafeTaskHelper.LOG, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\iSafeTHlp64.LOG, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\log\iSafeVirusScanner.log, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\user\cbss.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\user\eui.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\user\ruo.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\user\safe.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\user\sie.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\user\softcache2.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\user\srd.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\user\svc2.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
FraudTool.YAC, C:\Users\rires\AppData\Roaming\Elex-tech\YAC\userbk\user\svc2_com.dat, In Quarantäne, [d709f440612a59dd2e2a5faae1222cd4],
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) AdwCleaner Code:
# AdwCleaner v5.009 - Bericht erstellt am 28/09/2015 um 19:34:04
# Aktualisiert am 27/09/2015 von Xplode
# Datenbank : 2015-09-27.1 [Server]
# Betriebssystem : Windows 10 Home (x64)
# Benutzername : rires - RIRES-PC
# Gestartet von : C:\Users\rires\Downloads\AdwCleaner_5.009.exe
# Option : Löschen
# Unterstützung : hxxp://toolslib.net/forum
***** [ Dienste ] *****
***** [ Ordner ] *****
[-] Ordner Gelöscht : C:\Users\rires\AppData\Roaming\Elex-tech
***** [ Dateien ] *****
[-] Datei Gelöscht : C:\WINDOWS\Sysnative\log\iSafeKrnlCall.log
***** [ Verknüpfungen ] *****
***** [ Geplante Tasks ] *****
***** [ Registrierungsdatenbank ] *****
***** [ Internetbrowser ] *****
*************************
:: Proxy Einstellungen zurückgesetzt
:: Winsock Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [904 Bytes] ########## Neues FRST Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:27-09-2015
durchgeführt von rires (Administrator) auf RIRES-PC (28-09-2015 20:08:24)
Gestartet von C:\Users\rires\Desktop
Geladene Profile: rires (Verfügbare Profile: rires & DefaultAppPool)
Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [395928 2012-05-10] (Acronis)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6134544 2015-09-27] (AVAST Software)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [2673640 2012-05-10] ()
HKU\S-1-5-21-674476110-731502866-56260914-1000\...\Run: [Akamai NetSession Interface] => C:\Users\rires\AppData\Local\Akamai\netsession_win.exe [4691384 2015-09-10] (Akamai Technologies, Inc.)
HKU\S-1-5-21-674476110-731502866-56260914-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-09-27] (AVAST Software)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{a49b7e5c-75b2-4ca4-b34a-5530ec7ece91}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{f4a6fe46-6f79-4612-822f-debe13ce046b}: [DhcpNameServer] 192.168.2.1
Internet Explorer:
==================
SearchScopes: HKLM-x32 -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM-x32 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-674476110-731502866-56260914-1000 -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-674476110-731502866-56260914-1000 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-09-27] (AVAST Software)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-09-27] (AVAST Software)
Toolbar: HKU\S-1-5-21-674476110-731502866-56260914-1000 -> Kein Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Keine Datei
Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - Keine Datei
FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2015-09-26] (Nexon)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-15] (Google Inc.)
FF Plugin HKU\S-1-5-21-674476110-731502866-56260914-1000: @my.com/Games -> C:\Users\rires\AppData\Local\MyComGames\NPMyComDetector.dll [2015-09-26] (My.com, Inc)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-09-27]
Chrome:
=======
CHR DefaultSearchURL: Profile 1 -> hxxp://www.google.com/search?q={searchTerms}
CHR DefaultSearchKeyword: Profile 1 -> google
CHR Profile: C:\Users\rires\AppData\Local\Google\Chrome\User Data\Default
CHR Profile: C:\Users\rires\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Google Drive) - C:\Users\rires\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-09-15]
CHR Extension: (YouTube) - C:\Users\rires\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-15]
CHR Extension: (Google-Suche) - C:\Users\rires\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-09-15]
CHR Extension: (VTchromizer) - C:\Users\rires\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efbjojhplkelaegfbieplglfidafgoka [2015-09-28]
CHR Extension: (Adblock Super) - C:\Users\rires\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\knebimhcckndhiglamoabbnifdkijidd [2015-09-15]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\rires\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-09-15]
CHR Extension: (Google Mail-Checker) - C:\Users\rires\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2015-09-15]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\rires\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-15]
CHR Extension: (Google Mail) - C:\Users\rires\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-15]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-09-27]
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-09-27] (AVAST Software)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 MSMQ; C:\Windows\system32\mqsvc.exe [26112 2015-09-14] (Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2057736 2015-09-16] (Electronic Arts)
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] ()
S3 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1363160 2014-11-28] (Secunia)
S2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [765144 2014-11-28] (Secunia)
S3 Sound Blaster MB Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\SBMBLicensing.exe [79360 2015-07-17] (Creative Labs) [Datei ist nicht signiert]
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [84480 2015-09-14] (Microsoft Corporation)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [578560 2015-09-14] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-09-27] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-09-27] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-09-27] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-09-27] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1049880 2015-09-27] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [448968 2015-09-27] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [153744 2015-09-27] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-09-27] (AVAST Software)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Advanced Micro Devices)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-09-28] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MQAC; C:\Windows\System32\drivers\mqac.sys [175104 2015-09-14] (Microsoft Corporation)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2014-11-28] (Secunia)
R3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [3772632 2015-07-10] (Realtek Semiconductor Corporation )
R3 rzp1endpt; C:\Windows\System32\drivers\rzp1endpt.sys [40104 2014-12-30] (Razer Inc)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129600 2015-03-03] (Razer, Inc.)
R3 rzvmouse; C:\Windows\System32\drivers\rzvmouse.sys [31912 2014-12-30] (Razer Inc)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
R0 vidsflt53; C:\Windows\System32\DRIVERS\vsflt53.sys [141920 2015-09-28] (Acronis)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
U3 idsvc; kein ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
U3 wpcsvc; kein ImagePath
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-09-28 20:06 - 2015-09-28 20:06 - 00001052 _____ C:\Users\rires\Desktop\JRT.txt
2015-09-28 20:01 - 2015-09-28 20:01 - 00008571 _____ C:\Users\rires\Desktop\mban.txt
2015-09-28 19:53 - 2015-09-28 19:53 - 00016148 _____ C:\WINDOWS\system32\RIRES-PC_rires_HistoryPrediction.bin
2015-09-28 15:34 - 2015-09-28 15:34 - 00000982 _____ C:\Users\rires\Desktop\AdwCleaner[C1].txt
2015-09-28 15:29 - 2015-09-28 20:03 - 00000000 ____D C:\AdwCleaner
2015-09-28 15:19 - 2015-09-28 15:28 - 01670656 _____ C:\Users\rires\Downloads\AdwCleaner_5.009.exe
2015-09-28 15:02 - 2015-09-28 15:02 - 00000000 ____D C:\Users\rires\Documents\MeineBackups
2015-09-28 15:01 - 2015-09-28 15:01 - 00000000 ____D C:\Users\rires\AppData\Roaming\Acronis
2015-09-28 14:46 - 2015-09-28 15:19 - 00000000 ____D C:\ProgramData\Acronis
2015-09-28 14:45 - 2015-09-28 14:45 - 00971360 _____ (Acronis) C:\WINDOWS\system32\Drivers\timntr.sys
2015-09-28 14:45 - 2015-09-28 14:45 - 00275552 _____ (Acronis) C:\WINDOWS\system32\Drivers\snapman.sys
2015-09-28 14:45 - 2015-09-28 14:45 - 00210016 _____ (Acronis) C:\WINDOWS\system32\Drivers\vididr.sys
2015-09-28 14:45 - 2015-09-28 14:45 - 00141920 _____ (Acronis) C:\WINDOWS\system32\Drivers\vsflt53.sys
2015-09-28 14:45 - 2015-09-28 14:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
2015-09-28 14:45 - 2015-09-28 14:45 - 00000000 ____D C:\Program Files (x86)\Acronis
2015-09-28 14:40 - 2015-09-28 14:43 - 156004120 _____ C:\Users\rires\Downloads\tih_s_g_14192.exe
2015-09-28 14:37 - 2015-09-28 14:37 - 00643406 _____ C:\Users\rires\Downloads\Destroy-Windows-10-Spying.zip
2015-09-27 18:38 - 2015-09-27 18:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2015-09-27 18:38 - 2015-09-27 18:38 - 00000000 ____D C:\Program Files\7-Zip
2015-09-27 18:33 - 2015-09-27 18:33 - 00033959 _____ C:\Users\rires\Desktop\Addition.txt
2015-09-27 18:31 - 2015-09-28 20:08 - 00011518 _____ C:\Users\rires\Desktop\FRST.txt
2015-09-27 18:25 - 2015-09-27 18:25 - 00448968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-09-27 18:25 - 2015-09-27 18:25 - 00378880 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-09-27 18:25 - 2015-09-27 18:25 - 00274808 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-09-27 18:25 - 2015-09-27 18:25 - 00153744 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-09-27 18:25 - 2015-09-27 18:25 - 00093528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-09-27 18:25 - 2015-09-27 18:25 - 00090968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-09-27 18:25 - 2015-09-27 18:25 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-09-27 18:25 - 2015-09-27 18:25 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-09-27 18:25 - 2015-09-27 18:25 - 00004006 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-09-27 18:25 - 2015-09-27 18:25 - 00001967 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-09-27 18:25 - 2015-09-27 18:25 - 00000000 ____D C:\Users\rires\AppData\Roaming\AVAST Software
2015-09-27 18:25 - 2015-09-27 18:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-09-27 18:25 - 2015-09-27 18:24 - 01049880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-09-27 18:24 - 2015-09-27 18:24 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2015-09-27 18:23 - 2015-09-27 18:23 - 00000000 ____D C:\Program Files\AVAST Software
2015-09-27 18:17 - 2015-09-27 18:22 - 05481344 _____ (Avast Software s.r.o.) C:\Users\rires\Downloads\avast_free_antivirus_setup.exe
2015-09-27 17:14 - 2015-09-28 19:56 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-09-27 17:14 - 2015-09-27 17:14 - 00001167 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-09-27 17:14 - 2015-09-27 17:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-09-27 17:14 - 2015-09-27 17:14 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-09-27 17:14 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-09-27 17:14 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-09-27 17:14 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-09-27 17:09 - 2015-09-27 17:09 - 00280200 _____ C:\WINDOWS\Minidump\092715-49031-01.dmp
2015-09-27 17:06 - 2015-09-27 17:06 - 00000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2015-09-27 16:58 - 2015-09-27 16:58 - 00279904 _____ C:\WINDOWS\Minidump\092715-55625-01.dmp
2015-09-27 16:52 - 2015-09-27 17:09 - 444830349 _____ C:\WINDOWS\MEMORY.DMP
2015-09-27 16:52 - 2015-09-27 17:09 - 00000000 ____D C:\WINDOWS\Minidump
2015-09-27 16:52 - 2015-09-27 16:52 - 00279904 _____ C:\WINDOWS\Minidump\092715-54203-01.dmp
2015-09-27 16:44 - 2015-09-28 20:08 - 00000000 ____D C:\FRST
2015-09-27 16:41 - 2015-09-27 16:41 - 00000000 _____ C:\Users\rires\defogger_reenable
2015-09-27 16:27 - 2015-09-27 18:28 - 00511220 _____ C:\WINDOWS\PFRO.log
2015-09-27 16:24 - 2015-09-27 16:49 - 00380416 _____ C:\Users\rires\Desktop\b81hi9jm.exe
2015-09-27 16:23 - 2015-09-27 16:44 - 02192384 _____ (Farbar) C:\Users\rires\Desktop\FRST64.exe
2015-09-27 16:23 - 2015-09-27 16:39 - 00050477 _____ C:\Users\rires\Desktop\Defogger.exe
2015-09-27 16:15 - 2015-09-28 20:03 - 01798976 _____ (Malwarebytes) C:\Users\rires\Desktop\JRT.exe
2015-09-27 16:14 - 2015-09-27 16:14 - 01662976 _____ C:\Users\rires\Downloads\AdwCleaner_5.008.exe
2015-09-26 19:59 - 2015-09-26 20:03 - 00000000 ____D C:\Users\rires\AppData\Local\NXEPassportClient
2015-09-26 19:41 - 2015-09-26 19:41 - 00000937 _____ C:\Users\Public\Desktop\WarRock.lnk
2015-09-26 19:41 - 2015-09-26 19:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon
2015-09-26 19:36 - 2015-09-26 19:36 - 00000000 ____D C:\ProgramData\NexonEU
2015-09-26 15:42 - 2015-09-26 15:42 - 00000000 ____D C:\Users\rires\AppData\Local\Akamai
2015-09-26 15:41 - 2015-09-26 15:42 - 10464784 _____ (Akamai Technologies, Inc.) C:\Users\rires\Downloads\NexonEU_Installer.exe
2015-09-25 21:22 - 2015-09-25 21:38 - 00000000 ____D C:\Users\rires\AppData\Roaming\AVG
2015-09-25 21:22 - 2015-09-25 21:22 - 00000000 ____D C:\Users\rires\AppData\Roaming\TuneUp Software
2015-09-25 21:20 - 2015-09-27 18:28 - 00000000 ____D C:\ProgramData\Avg
2015-09-25 21:20 - 2015-09-27 18:28 - 00000000 ____D C:\Program Files (x86)\AVG
2015-09-25 21:18 - 2015-09-27 18:28 - 00000000 ____D C:\Users\rires\AppData\Local\Avg
2015-09-25 21:18 - 2015-09-27 18:18 - 00000000 ____D C:\Users\rires\AppData\Local\AvgSetupLog
2015-09-25 21:17 - 2015-09-27 18:28 - 00000000 ____D C:\ProgramData\MFAData
2015-09-25 21:17 - 2015-09-25 21:17 - 00000000 ____D C:\Users\rires\AppData\Local\MFAData
2015-09-25 21:17 - 2015-09-25 21:17 - 00000000 ____D C:\Users\rires\AppData\Local\Avg2015
2015-09-25 21:12 - 2015-09-25 21:12 - 00000000 ____D C:\ProgramData\Grisoft
2015-09-25 21:12 - 2015-09-25 21:12 - 00000000 ____D C:\Program Files (x86)\Grisoft
2015-09-23 19:08 - 2015-09-23 19:08 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\Vorlagen
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\Startmenü
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\Netzwerkumgebung
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\Lokale Einstellungen
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\Eigene Dateien
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\Druckumgebung
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Musik
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Bilder
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Verlauf
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Anwendungsdaten
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 _SHDL C:\Users\DefaultAppPool\Anwendungsdaten
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 ____D C:\Users\rires\AppData\Roaming\Macromedia
2015-09-23 19:08 - 2015-09-23 19:08 - 00000000 ____D C:\Users\DefaultAppPool
2015-09-23 19:08 - 2015-09-14 16:40 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-23 19:08 - 2015-07-10 13:04 - 00000000 __RSD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-09-23 19:08 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-09-23 19:08 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-09-23 19:08 - 2015-07-10 13:04 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-09-16 15:51 - 2015-09-16 15:51 - 00000000 ___RD C:\Users\rires\3D Objects
2015-09-16 14:47 - 2015-09-16 14:47 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-09-15 19:17 - 2015-09-28 15:34 - 00000000 ____D C:\WINDOWS\system32\log
2015-09-15 17:48 - 2015-09-15 17:50 - 00000000 ____D C:\Users\rires\AppData\Local\Comms
2015-09-14 23:11 - 2015-09-14 23:11 - 00000000 ____D C:\Users\rires\AppData\Local\NetworkTiles
2015-09-14 22:58 - 2015-09-14 22:58 - 00002388 _____ C:\Users\rires\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-09-14 22:58 - 2015-09-14 22:58 - 00000000 ___RD C:\Users\rires\OneDrive
2015-09-14 22:55 - 2015-09-14 22:55 - 00000000 ____D C:\Users\rires\AppData\Local\Publishers
2015-09-14 22:55 - 2015-07-09 20:39 - 04847104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2015-09-14 22:55 - 2015-07-09 20:36 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll
2015-09-14 22:55 - 2015-07-09 20:28 - 06358016 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2015-09-14 22:55 - 2015-07-09 20:25 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2015-09-14 22:55 - 2015-07-09 20:25 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2015-09-14 22:54 - 2015-09-14 22:54 - 00001043 _____ C:\Users\rires\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk
2015-09-14 22:54 - 2015-09-14 22:54 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-09-14 22:21 - 2015-09-14 22:21 - 01730328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01009.dll
2015-09-14 22:18 - 2015-09-16 14:36 - 00000000 ____D C:\Users\rires\AppData\Local\Packages
2015-09-14 22:18 - 2015-09-14 22:18 - 00000020 ___SH C:\Users\rires\ntuser.ini
2015-09-14 22:18 - 2015-09-14 22:18 - 00000000 ____D C:\Users\rires\AppData\Local\TileDataLayer
2015-09-14 17:26 - 2015-09-14 16:36 - 00000000 __SHD C:\Recovery
2015-09-14 17:24 - 2015-09-14 17:24 - 00000000 ____D C:\Windows.old
2015-09-14 17:23 - 2015-09-14 17:23 - 24594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 21874688 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 19324416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 14241792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 12503552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 04791296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 02462648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 02116448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-09-14 17:23 - 2015-09-14 17:23 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01562968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01561872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01411072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01200400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-09-14 17:23 - 2015-09-14 17:23 - 01087296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01043872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 01025840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-09-14 17:23 - 2015-09-14 17:23 - 00918320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00527952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2015-09-14 17:23 - 2015-09-14 17:23 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00404480 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00333168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2015-09-14 17:23 - 2015-09-14 17:23 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00243248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00102752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-09-14 17:23 - 2015-09-14 17:23 - 00097128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-09-14 17:23 - 2015-09-14 17:23 - 00052264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 22324656 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 16706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 13024768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 11557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 08613200 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 08019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 07051264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 06488312 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 06305792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 04760576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 04611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 04048808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 03527168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 03362816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02741760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02446336 _____ C:\WINDOWS\system32\InputService.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02415104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02350592 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02225664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02153472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02147080 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01983840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01888768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01774592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01771592 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01679360 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01612288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01591856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01521664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01365072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-09-14 17:22 - 2015-09-14 17:22 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01234944 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01212416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01201664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01178112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01169408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01135312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01101792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-09-14 17:22 - 2015-09-14 17:22 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00996352 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00993104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00966424 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00934752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00893440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00808856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00705520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00695136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00658568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00632168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00630160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00609592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00608936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00601344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efscore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00583128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00554744 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00541248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00521568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-09-14 17:22 - 2015-09-14 17:22 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00505344 _____ C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00454000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00442208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00425824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00413184 _____ C:\WINDOWS\system32\diagtrack_win.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00373072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-09-14 17:22 - 2015-09-14 17:22 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00335248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00325984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00293376 _____ C:\WINDOWS\system32\TextInputFramework.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00292856 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00290312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenter.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00252768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00247296 _____ C:\WINDOWS\system32\facecredentialprovider.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00243800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00237392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00208736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00200704 _____ C:\WINDOWS\SysWOW64\TextInputFramework.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00200528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdWCN.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00080720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00077400 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00061280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00046432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2015-09-14 17:22 - 2015-09-14 17:22 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tetheringclient.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoiceActivationManager.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00032768 _____ C:\WINDOWS\system32\LicenseManagerApi.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2015-09-14 17:22 - 2015-09-14 17:22 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-09-14 17:22 - 2015-09-14 17:22 - 00008847 _____ C:\WINDOWS\system32\ResPriHMImageList
2015-09-14 17:16 - 2015-09-14 17:16 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2015-09-14 17:14 - 2015-09-14 17:14 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2015-09-14 17:14 - 2015-09-14 17:14 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2015-09-14 17:14 - 2015-09-14 17:14 - 00000000 ____D C:\WINDOWS\system32\msmq
2015-09-14 17:14 - 2015-09-14 17:14 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2015-09-14 17:14 - 2015-09-14 17:14 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-09-14 17:14 - 2015-09-14 17:14 - 00000000 ____D C:\Program Files\MSBuild
2015-09-14 17:14 - 2015-09-14 17:14 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-09-14 17:14 - 2015-09-14 17:14 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-09-14 17:14 - 2015-09-14 17:14 - 00000000 ____D C:\inetpub
2015-09-14 17:13 - 2015-06-17 19:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-09-14 17:13 - 2015-06-17 19:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-09-14 17:13 - 2015-06-17 19:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-09-14 17:13 - 2015-05-29 22:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-09-14 17:13 - 2015-05-29 22:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-09-14 17:13 - 2015-05-29 22:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\Vorlagen
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\Startmenü
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2015-09-14 16:53 - 2015-09-14 16:53 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2015-09-14 16:51 - 2015-09-14 16:51 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-09-14 16:47 - 2015-07-10 12:59 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2015-09-14 16:40 - 2015-09-14 16:40 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-09-14 16:39 - 2015-09-14 16:39 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2015-09-14 16:38 - 2015-09-27 18:27 - 00000000 ____D C:\Users\rires
2015-09-14 16:38 - 2015-09-14 22:18 - 00000000 ___RD C:\Users\rires\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\Vorlagen
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\Startmenü
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\Netzwerkumgebung
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\Lokale Einstellungen
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\Eigene Dateien
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\Druckumgebung
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\Documents\Eigene Musik
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\Documents\Eigene Bilder
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\AppData\Local\Verlauf
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\AppData\Local\Anwendungsdaten
2015-09-14 16:38 - 2015-09-14 16:38 - 00000000 _SHDL C:\Users\rires\Anwendungsdaten
2015-09-14 16:38 - 2015-07-10 13:04 - 00000000 __RSD C:\Users\rires\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-09-14 16:38 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\rires\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-09-14 16:38 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\rires\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-09-14 16:38 - 2015-07-10 13:04 - 00000000 ____D C:\Users\rires\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-09-14 16:37 - 2015-09-28 19:33 - 02077062 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-14 16:36 - 2015-09-14 16:36 - 01980268 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2015-09-14 16:34 - 2015-09-14 16:39 - 00000000 ____D C:\ProgramData\Razer
2015-09-14 16:34 - 2015-09-14 16:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-09-14 16:34 - 2015-09-14 16:34 - 00000000 ____D C:\Program Files\ATI Technologies
2015-09-14 16:34 - 2015-09-14 16:34 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2015-09-14 16:33 - 2015-09-16 16:07 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-14 16:33 - 2015-09-15 14:43 - 00000000 ____D C:\Program Files (x86)\Razer
2015-09-14 16:33 - 2015-09-14 16:39 - 00000000 ____D C:\Program Files\AMD
2015-09-14 16:33 - 2015-09-14 16:33 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-09-14 16:33 - 2015-09-14 16:33 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2015-09-14 16:29 - 2015-09-14 16:30 - 00024606 _____ C:\WINDOWS\system32\NetSetupMig.log
2015-09-14 15:28 - 2015-09-15 19:25 - 00000000 ___HD C:\$Windows.~BT
2015-09-14 15:24 - 2015-09-14 15:24 - 00000000 ____D C:\ESD
2015-09-14 14:46 - 2015-09-14 14:46 - 00000000 ___HD C:\$Windows.~WS
2015-09-13 19:54 - 2015-09-13 19:54 - 00000000 ____D C:\Program Files\Samsung
2015-09-13 13:20 - 2015-09-13 13:22 - 00000000 ____D C:\Users\rires\AppData\Roaming\TP-LINK
2015-09-13 13:19 - 2015-09-14 16:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK
2015-09-13 13:19 - 2015-09-13 13:19 - 00000000 ____D C:\Program Files (x86)\TP-LINK
2015-09-13 13:19 - 2012-10-25 16:20 - 00926824 _____ (Realtek Semiconductor Corporation ) C:\WINDOWS\system32\rtl8192cu.sys
2015-09-13 13:19 - 2012-10-25 16:20 - 00007540 _____ C:\WINDOWS\system32\net8192cu.cat
2015-09-13 13:18 - 2015-09-13 13:19 - 00000000 ____D C:\ProgramData\TP-LINK
2015-09-12 10:59 - 2015-09-14 16:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-09-12 10:59 - 2015-09-12 10:59 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-09-09 11:08 - 2015-09-09 11:08 - 00000000 _____ C:\autoexec.bat
2015-09-09 08:03 - 2015-08-15 07:57 - 00968704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2015-09-09 08:03 - 2015-08-15 07:22 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll
2015-09-09 08:03 - 2015-08-15 07:01 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll
2015-09-09 07:32 - 2015-08-26 20:06 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-09-03 19:12 - 2015-09-14 22:21 - 00202952 _____ (Razer Inc) C:\WINDOWS\system32\Drivers\rzudd.sys
2015-08-31 16:25 - 2015-09-14 16:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2015-08-31 16:25 - 2015-08-31 16:25 - 00001237 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2015-08-31 16:24 - 2015-08-31 16:24 - 00000000 ____D C:\Program Files (x86)\FreeCodecPack
2015-08-31 16:23 - 2015-08-31 16:26 - 00000000 ____D C:\Users\rires\AppData\Roaming\DVDVideoSoft
2015-08-31 16:23 - 2015-08-31 16:25 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2015-08-31 16:20 - 2015-08-31 16:20 - 00000901 _____ C:\Users\Public\Desktop\AIMP3.lnk
2015-08-31 16:20 - 2015-08-31 16:20 - 00000000 ____D C:\Users\rires\AppData\Roaming\AIMP3
2015-08-31 16:20 - 2015-08-31 16:20 - 00000000 ____D C:\Program Files (x86)\AIMP3
2015-08-30 17:40 - 2015-08-30 17:40 - 00000000 ____D C:\Program Files (x86)\AVM_update
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-09-28 20:07 - 2015-07-24 13:45 - 00001136 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-28 20:07 - 2015-07-24 13:45 - 00001132 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-28 19:33 - 2015-07-10 18:34 - 00883584 _____ C:\WINDOWS\system32\perfh007.dat
2015-09-28 19:33 - 2015-07-10 18:34 - 00195718 _____ C:\WINDOWS\system32\perfc007.dat
2015-09-28 19:32 - 2015-07-10 14:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-09-28 19:32 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-28 15:37 - 2015-07-17 13:20 - 00000000 ____D C:\Users\rires\Desktop\Wichtig
2015-09-28 15:36 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-28 15:35 - 2015-07-10 11:05 - 00131072 ___SH C:\WINDOWS\system32\config\BBI
2015-09-28 14:26 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-09-27 18:41 - 2015-07-19 18:44 - 00000000 ____D C:\Users\rires\AppData\Roaming\Skype
2015-09-27 18:40 - 2015-07-17 17:57 - 00000000 ____D C:\ProgramData\Skype
2015-09-27 18:22 - 2015-07-17 12:55 - 00000000 ____D C:\ProgramData\AVAST Software
2015-09-27 18:17 - 2015-07-10 13:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-09-27 17:14 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-09-27 16:52 - 2015-07-24 19:15 - 00000000 ____D C:\Program Files\WinRAR
2015-09-27 16:27 - 2015-07-10 14:20 - 00189568 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-09-26 15:45 - 2015-07-25 16:43 - 00000000 ____D C:\Users\rires\AppData\Local\MyComGames
2015-09-26 15:04 - 2015-08-09 14:27 - 00000000 ____D C:\Program Files (x86)\Steam
2015-09-26 15:00 - 2015-07-17 17:55 - 00000000 ____D C:\ProgramData\Origin
2015-09-26 14:30 - 2015-07-24 13:45 - 00003648 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-26 14:30 - 2015-07-24 13:45 - 00003424 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-26 14:30 - 2015-07-17 17:58 - 00002320 _____ C:\WINDOWS\System32\Tasks\{A4148510-17F3-44C8-8E2B-51025F4BAB35}
2015-09-26 01:15 - 2015-07-22 20:45 - 00000000 ____D C:\Users\rires\Desktop\S5 handy
2015-09-26 00:00 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-09-25 21:57 - 2015-07-16 20:45 - 00000000 ____D C:\Users\rires\AppData\Local\VirtualStore
2015-09-25 21:26 - 2015-07-10 11:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-09-25 15:02 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-09-16 16:07 - 2015-07-17 17:54 - 00000000 ____D C:\Program Files (x86)\Origin
2015-09-15 19:13 - 2015-07-17 12:55 - 00000000 ____D C:\Users\rires\AppData\Local\Google
2015-09-15 18:12 - 2015-07-10 13:06 - 00812008 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-09-15 18:12 - 2015-07-10 13:06 - 00178152 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-09-15 14:46 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\appcompat
2015-09-14 23:07 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\restore
2015-09-14 22:55 - 2015-07-10 18:35 - 00000000 ____D C:\WINDOWS\OCR
2015-09-14 22:19 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-09-14 22:19 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PrintDialog
2015-09-14 22:19 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-09-14 22:19 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-09-14 17:27 - 2015-07-10 13:04 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2015-09-14 17:23 - 2015-07-10 18:46 - 00000000 ____D C:\Program Files\Windows Journal
2015-09-14 17:23 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2015-09-14 17:23 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-09-14 17:23 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-09-14 17:23 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-09-14 17:23 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Provisioning
2015-09-14 17:23 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2015-09-14 17:23 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Dism
2015-09-14 17:14 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2015-09-14 17:14 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2015-09-14 17:14 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\MUI
2015-09-14 17:14 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2015-09-14 17:14 - 2015-07-10 13:01 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2015-09-14 17:14 - 2015-07-10 13:01 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll
2015-09-14 17:14 - 2015-07-10 13:01 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll
2015-09-14 17:14 - 2015-07-10 13:01 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2015-09-14 17:14 - 2015-07-10 13:01 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll
2015-09-14 17:14 - 2015-07-10 13:01 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb
2015-09-14 17:14 - 2015-07-10 13:01 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb
2015-09-14 17:14 - 2015-07-10 13:01 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb
2015-09-14 17:14 - 2015-07-10 13:01 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2015-09-14 17:14 - 2015-07-10 13:01 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb
2015-09-14 17:14 - 2015-07-10 13:01 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2015-09-14 17:14 - 2015-07-10 13:01 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2015-09-14 17:14 - 2015-07-10 13:01 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2015-09-14 17:14 - 2015-07-10 13:01 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2015-09-14 17:14 - 2015-07-10 13:01 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2015-09-14 17:14 - 2015-07-10 13:01 - 00009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof
2015-09-14 17:14 - 2015-07-10 13:00 - 01417728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2015-09-14 17:14 - 2015-07-10 13:00 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2015-09-14 17:14 - 2015-07-10 13:00 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2015-09-14 17:14 - 2015-07-10 13:00 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2015-09-14 17:14 - 2015-07-10 13:00 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2015-09-14 17:14 - 2015-07-10 13:00 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2015-09-14 17:14 - 2015-07-10 13:00 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2015-09-14 17:14 - 2015-07-10 13:00 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2015-09-14 17:13 - 2015-07-10 13:00 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2015-09-14 17:13 - 2015-07-10 13:00 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2015-09-14 16:55 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache
2015-09-14 16:53 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows NT
2015-09-14 16:53 - 2015-07-10 11:05 - 00000000 __RHD C:\Users\Default
2015-09-14 16:52 - 2015-08-11 18:41 - 00010449 _____ C:\WINDOWS\diagerr.xml
2015-09-14 16:52 - 2015-08-11 18:41 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2015-09-14 16:51 - 2015-07-24 19:17 - 00003316 _____ C:\WINDOWS\System32\Tasks\{5ABA869D-F89D-4D52-852C-07372F27A859}
2015-09-14 16:51 - 2015-07-10 13:04 - 00000000 __RSD C:\WINDOWS\Media
2015-09-14 16:51 - 2015-07-10 13:04 - 00000000 __RHD C:\Users\Public\Libraries
2015-09-14 16:51 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Registration
2015-09-14 16:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\spool
2015-09-14 16:41 - 2015-08-09 14:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-09-14 16:41 - 2015-07-25 16:44 - 00000000 ____D C:\Users\rires\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games
2015-09-14 16:41 - 2015-07-24 13:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-09-14 16:41 - 2015-07-19 18:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-09-14 16:41 - 2015-07-18 17:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2015-09-14 16:41 - 2015-07-17 13:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
2015-09-14 16:41 - 2015-07-17 13:01 - 00000000 ____D C:\WINDOWS\SysWOW64\vbox
2015-09-14 16:41 - 2015-07-17 13:01 - 00000000 ____D C:\WINDOWS\system32\vbox
2015-09-14 16:41 - 2015-07-16 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JMicron Technology Corp
2015-09-14 16:41 - 2015-07-10 13:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-14 16:40 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2015-09-14 16:40 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-14 16:40 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-14 16:40 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\zh-HK
2015-09-14 16:40 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\tr-TR
2015-09-14 16:40 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2015-09-14 16:40 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2015-09-14 16:40 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\zh-HK
2015-09-14 16:40 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-09-14 16:40 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\tr-TR
2015-09-14 16:40 - 2009-07-14 05:20 - 00000000 ____D C:\Users\Default.migrated
2015-09-14 16:39 - 2015-07-17 16:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2015-09-14 16:39 - 2015-07-10 15:19 - 00000000 ____D C:\WINDOWS\DigitalLocker
2015-09-14 16:39 - 2015-07-10 13:04 - 00000000 __SHD C:\Program Files\Windows Sidebar
2015-09-14 16:39 - 2015-07-10 13:04 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2015-09-14 16:39 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\IME
2015-09-14 16:39 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\schemas
2015-09-14 16:39 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-09-14 16:39 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-09-14 16:39 - 2011-04-12 09:54 - 00000000 ___RD C:\Users\Public\Recorded TV
2015-09-14 16:39 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Microsoft Games
2015-09-14 16:39 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker
2015-09-14 16:38 - 2015-07-25 20:49 - 00000000 ____D C:\Users\rires\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com
2015-09-14 16:38 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-09-14 15:36 - 2009-07-14 06:45 - 00028896 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-09-14 15:36 - 2009-07-14 06:45 - 00028896 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-09-13 19:01 - 2015-07-17 13:22 - 00000000 ____D C:\WINDOWS\pss
2015-09-13 13:19 - 2015-07-16 21:03 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-09-12 10:59 - 2015-07-19 18:44 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk
2015-09-09 09:41 - 2015-07-17 16:29 - 00000000 ____D C:\WINDOWS\system32\MRT
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2015-07-18 11:36 - 2015-07-18 11:36 - 0000017 _____ () C:\Users\rires\AppData\Local\resmon.resmoncfg
2008-02-05 13:28 - 2008-02-05 13:28 - 0000051 _____ () C:\Users\rires\AppData\Local\setup.txt
Einige Dateien in TEMP:
====================
C:\Users\rires\AppData\Local\Temp\avg-2f8fcd77-32b0-4108-b00e-a63fc01e8076.exe
C:\Users\rires\AppData\Local\Temp\NGMDll.dll
C:\Users\rires\AppData\Local\Temp\NGMResource.dll
C:\Users\rires\AppData\Local\Temp\NGMSetup.exe
C:\Users\rires\AppData\Local\Temp\sqlite3.dll
C:\Users\rires\AppData\Local\Temp\unicows.dll
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2015-09-25 15:02
==================== Ende von FRST.txt ============================ JRT Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.6.3 (09.21.2015:1)
OS: Windows 10 Home x64
Ran by rires on 28.09.2015 at 20:04:08,20
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Tasks
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ Chrome
[C:\Users\rires\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset
[C:\Users\rires\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:
[C:\Users\rires\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset
[C:\Users\rires\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 28.09.2015 at 20:06:32,76
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |