Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Log-Analyse und Auswertung (https://www.trojaner-board.de/log-analyse-auswertung/)
-   -   MPC Cleaner geht nicht mehr weg (https://www.trojaner-board.de/180776-mpc-cleaner-geht-mehr-weg.html)

cosinus 31.07.2016 22:37

FRST-Fix

Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft!


Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

S2 Phujitythaseengprm.exe; "C:\Program Files (x86)\Shuqogeclaale\Phujitythaseengprm.exe" {C25DA384-2010-45A4-A1ED-BFA540D4789B} {9DC74CD5-24EA-4ADE-9C42-608A8CE17116} [X]
C:\Users\Musik\Documents\Image-Line
C:\Users\Musik\Documents\u-he
C:\Users\Musik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
C:\Program Files\Image-Line
C:\Program Files (x86)\Image-Line
C:\Users\Musik\AppData\IObit
C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
C:\Program Files (x86)\IObit
C:\Users\Musik\AppData\Roaming\IObit
C:\ProgramData\IObit
C:\Users\Public\Desktop\IObit Uninstaller.lnk
C:\Users\Musik\AppData\LocalLow\IObit
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
C:\Users\Musik\Downloads\IObit Uninstaller - CHIP-Installer.exe
C:\ProgramData\{61D688EB-321B-4270-9A71-38609E2C61BC}
C:\ProgramData\{019B143A-9DF7-4A4E-9071-1FB3892DDD09}
C:\Program Files (x86)\Shuqogeclaale
emptytemp:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.


emus77 01.08.2016 14:15

FRST.txt:

Code:

Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 27-07-2016
durchgeführt von Musik (Administrator) auf MUSIK-PC (01-08-2016 15:14:10)
Gestartet von C:\Users\Musik\Desktop
Geladene Profile: Musik (Verfügbare Profile: Musik)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(AMD) C:\Windows\System32\atiesrxx.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanNetService.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(MAGIX Software GmbH) C:\Program Files (x86)\MAGIX\Music Maker 2015 Premium\MusicMaker.exe
(MAGIX AG) C:\Program Files (x86)\MAGIX\Music Maker 2015 Premium\Online\MagixOfa.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Amazon.com Inc.) C:\Users\Musik\AppData\Local\Amazon Drive\AmazonDrive.exe
(The CefSharp Authors) C:\Users\Musik\AppData\Local\Amazon Drive\CefSharp.BrowserSubprocess.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM-x32\...\Run: [AVMWlanClient] => C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin)
HKU\S-1-5-21-1261542232-542247610-1064982915-1000\...\Run: [Amazon Drive] => C:\Users\Musik\AppData\Local\Amazon Drive\AmazonDrive.exe [2061496 2016-06-21] (Amazon.com Inc.)
HKU\S-1-5-21-1261542232-542247610-1064982915-1000\...\MountPoints2: {e6ad5390-5536-11e6-b549-001f3f0c371a} - "D:\pushinst.exe"

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2
Tcpip\..\Interfaces\{93233a9a-5c03-451c-b793-562f144dc584}: [DhcpNameServer] 192.168.0.1 192.168.0.2
Tcpip\..\Interfaces\{F4753F6E-AE37-420F-BC7A-0EE31AD52C0D}: [DhcpNameServer] 192.168.0.1 192.168.0.2
ManualProxies:

Internet Explorer:
==================
HKU\S-1-5-21-1261542232-542247610-1064982915-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
SearchScopes: HKLM-x32 -> DefaultScope Wert fehlt
SearchScopes: HKU\S-1-5-21-1261542232-542247610-1064982915-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2015-12-23] (IObit)

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)

Chrome:
=======
CHR HomePage: ghifackarapulyfinck -> hxxp://google.de/
CHR StartupUrls: ghifackarapulyfinck -> "hxxp://google.de/"
CHR Profile: C:\Users\Musik\AppData\Local\Google\Chrome\User Data\Default

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [Datei ist nicht signiert]
R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1858048 2012-01-23] (MAGIX AG) [Datei ist nicht signiert]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [Datei ist nicht signiert]
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2960672 2016-05-27] (IObit)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [36504 2015-06-22] (VIA Technologies, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-07-17] (Microsoft Corporation)
S2 Phujitythaseengprm.exe; "C:\Program Files (x86)\Shuqogeclaale\Phujitythaseengprm.exe" {C25DA384-2010-45A4-A1ED-BFA540D4789B} {9DC74CD5-24EA-4ADE-9C42-608A8CE17116} [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 BEHRINGER_2902; C:\Windows\System32\Drivers\BUSB2902.sys [460864 2009-10-30] (BEHRINGER)
R3 BUSB_AUDIO_WDM; C:\Windows\system32\drivers\busbwdm.sys [49728 2009-10-30] (BEHRINGER)
R3 fwlanusbn; C:\Windows\system32\DRIVERS\fwlanusbn.sys [714368 2010-10-22] (AVM GmbH)
R3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] ()
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek                                            )
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
U4 aspnet_state; kein ImagePath
U3 wpcsvc; kein ImagePath

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-08-01 15:13 - 2016-08-01 15:13 - 00000941 _____ C:\Users\Musik\Desktop\Fixlist.txt
2016-08-01 10:50 - 2016-08-01 10:50 - 00000000 ____D C:\Users\Musik\AppData\Roaming\ProductData
2016-08-01 10:50 - 2016-08-01 10:50 - 00000000 ____D C:\ProgramData\ProductData
2016-07-31 23:37 - 2016-07-31 23:38 - 00000000 ____D C:\Users\Musik\AppData\Roaming\Amazon Cloud Drive
2016-07-31 23:37 - 2016-07-31 23:37 - 00866488 _____ (Amazon) C:\Users\Musik\Downloads\AmazonDriveSetup.exe
2016-07-31 23:37 - 2016-07-31 23:37 - 00001214 _____ C:\Users\Musik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Drive.lnk
2016-07-31 23:37 - 2016-07-31 23:37 - 00001202 _____ C:\Users\Musik\Desktop\Amazon Drive.lnk
2016-07-31 23:37 - 2016-07-31 23:37 - 00000000 ____D C:\Users\Musik\AppData\Local\CEF
2016-07-31 23:37 - 2016-07-31 23:37 - 00000000 ____D C:\Users\Musik\AppData\Local\Amazon Drive
2016-07-31 23:33 - 2016-07-31 23:33 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2016-07-31 23:25 - 2016-08-01 15:14 - 00007128 _____ C:\Users\Musik\Desktop\FRST.txt
2016-07-31 23:25 - 2016-07-31 23:26 - 00035356 _____ C:\Users\Musik\Desktop\Addition.txt
2016-07-31 23:25 - 2016-07-30 01:04 - 02394112 _____ (Farbar) C:\Users\Musik\Desktop\FRST64.exe
2016-07-31 23:01 - 2016-07-31 23:01 - 00000000 ____D C:\Users\Musik\Documents\Image-Line
2016-07-31 23:01 - 2016-07-31 23:01 - 00000000 ____D C:\Users\Musik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
2016-07-31 23:01 - 2016-07-31 23:01 - 00000000 ____D C:\Program Files\Image-Line
2016-07-31 23:01 - 2016-07-31 23:01 - 00000000 ____D C:\Program Files (x86)\Image-Line
2016-07-31 23:00 - 2016-07-31 23:00 - 00001056 _____ C:\Users\Public\Desktop\Gladiator standalone.lnk
2016-07-31 23:00 - 2016-07-31 23:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tone2 Gladiator full
2016-07-31 22:58 - 2016-07-31 22:58 - 00000000 ____D C:\Users\Musik\Documents\u-he
2016-07-31 22:58 - 2016-07-31 22:58 - 00000000 ____D C:\Users\Musik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\u-he
2016-07-31 22:57 - 2016-07-31 22:57 - 00000000 ____D C:\Users\Musik\Documents\Synapse Audio
2016-07-31 22:57 - 2016-07-31 22:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Synapse Audio
2016-07-31 22:54 - 2016-07-31 22:54 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc71.dll
2016-07-31 22:54 - 2016-07-31 22:54 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll
2016-07-31 22:54 - 2016-07-31 22:54 - 00000000 ____D C:\Users\Musik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rob Papen
2016-07-31 22:54 - 2016-07-31 22:54 - 00000000 ____D C:\Program Files (x86)\Rob Papen
2016-07-31 22:49 - 2016-07-31 22:49 - 00000947 _____ C:\Users\Musik\Desktop\JRT.txt
2016-07-31 22:46 - 2016-07-31 22:49 - 01610560 _____ (Malwarebytes) C:\Users\Musik\Desktop\JRT.exe
2016-07-31 22:44 - 2016-07-31 22:45 - 03712064 _____ C:\Users\Musik\Desktop\AdwCleaner_5.201.exe
2016-07-31 00:52 - 2016-07-31 00:52 - 00001238 _____ C:\Users\Public\Desktop\MAGIX Music Maker 2015 Premium.lnk
2016-07-31 00:52 - 2016-07-31 00:52 - 00000000 ____D C:\Users\Musik\AppData\Local\Magix
2016-07-31 00:52 - 2016-07-31 00:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX
2016-07-31 00:47 - 2016-07-31 00:47 - 03033352 _____ (MAGIX Software GmbH) C:\Users\Musik\Downloads\musicmaker2015premium_dlm.exe
2016-07-30 23:45 - 2016-07-31 00:43 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-07-30 23:45 - 2016-07-31 00:33 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-07-30 23:45 - 2016-07-30 23:45 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-07-30 23:43 - 2016-07-31 00:42 - 00000000 ____D C:\Users\Musik\Downloads\mbar
2016-07-30 23:43 - 2016-07-31 00:33 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-07-30 23:43 - 2016-07-30 23:43 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Musik\Downloads\mbar-1.09.3.1001.exe
2016-07-30 01:04 - 2016-08-01 15:13 - 00000000 ____D C:\FRST
2016-07-30 01:04 - 2016-07-30 01:04 - 02394112 _____ (Farbar) C:\Users\Musik\Downloads\FRST64.exe
2016-07-30 00:42 - 2016-07-31 22:47 - 00000000 ____D C:\AdwCleaner
2016-07-30 00:36 - 2016-07-30 00:36 - 00000000 ____D C:\Users\Musik\AppData\IObit
2016-07-30 00:36 - 2016-07-30 00:36 - 00000000 ____D C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
2016-07-30 00:35 - 2016-07-30 22:06 - 00000000 ____D C:\Program Files (x86)\IObit
2016-07-30 00:35 - 2016-07-30 00:38 - 00000000 ____D C:\Users\Musik\AppData\Roaming\IObit
2016-07-30 00:35 - 2016-07-30 00:36 - 00000000 ____D C:\ProgramData\IObit
2016-07-30 00:35 - 2016-07-30 00:35 - 00001427 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2016-07-30 00:35 - 2016-07-30 00:35 - 00000000 ____D C:\Users\Musik\AppData\LocalLow\IObit
2016-07-30 00:35 - 2016-07-30 00:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
2016-07-30 00:34 - 2016-07-30 00:34 - 01474568 _____ C:\Users\Musik\Downloads\IObit Uninstaller - CHIP-Installer.exe
2016-07-30 00:33 - 2016-07-30 00:33 - 00000000 ____D C:\Users\Musik\AVM_Driver
2016-07-29 23:51 - 2016-07-29 23:51 - 00003272 _____ C:\WINDOWS\System32\Tasks\{F42F29E9-BDB3-481B-B116-6198E86299BD}
2016-07-29 23:48 - 2016-07-29 23:48 - 00003254 _____ C:\WINDOWS\System32\Tasks\{1A09E4E3-CF9B-4664-8CF2-A2F138C125D6}
2016-07-29 23:46 - 2016-07-29 23:46 - 00000000 ____D C:\Users\Musik\AppData\Roaming\Mozilla
2016-07-29 23:46 - 2016-07-26 08:33 - 01615872 _____ C:\Users\Musik\AppData\Roaming\kpzip.exe
2016-07-29 23:45 - 2016-07-29 23:45 - 07616340 _____ C:\Users\Musik\AppData\Roaming\setup.apk
2016-07-29 23:45 - 2016-07-29 23:45 - 07129600 _____ C:\Users\Musik\AppData\Roaming\agent.dat
2016-07-29 23:45 - 2016-07-29 23:45 - 02279413 _____ C:\Users\Musik\AppData\Roaming\Dambam.bin
2016-07-29 23:45 - 2016-07-29 23:45 - 01905266 _____ C:\Users\Musik\AppData\Roaming\Y-home.tst
2016-07-29 23:45 - 2016-07-29 23:45 - 00126464 _____ C:\Users\Musik\AppData\Roaming\noah.dat
2016-07-29 23:45 - 2016-07-29 23:45 - 00126464 _____ C:\Users\Musik\AppData\Roaming\lobby.dat
2016-07-29 23:45 - 2016-07-29 23:45 - 00072710 _____ C:\Users\Musik\AppData\Roaming\Kansollab.tst
2016-07-29 23:45 - 2016-07-29 23:45 - 00070896 _____ C:\Users\Musik\AppData\Roaming\Config.xml
2016-07-29 23:45 - 2016-07-29 23:45 - 00054272 _____ C:\Users\Musik\AppData\Roaming\ApplicationHosting.dat
2016-07-29 23:45 - 2016-07-29 23:45 - 00018432 _____ C:\Users\Musik\AppData\Roaming\Main.dat
2016-07-29 23:45 - 2016-07-29 23:45 - 00005568 _____ C:\Users\Musik\AppData\Roaming\md.xml
2016-07-29 23:45 - 2016-07-29 23:44 - 00683520 _____ C:\Users\Musik\AppData\Roaming\Y-home.exe
2016-07-29 23:45 - 2016-07-29 23:44 - 00683520 _____ C:\Users\Musik\AppData\Roaming\Kansollab.exe
2016-07-29 23:45 - 2016-02-18 10:10 - 05267952 _____ () C:\Users\Musik\AppData\Roaming\ziptool_wc-9015_setup.exe
2016-07-29 23:44 - 2016-07-30 16:49 - 00187904 _____ C:\WINDOWS\rsrcs.dll
2016-07-29 23:44 - 2016-07-29 23:44 - 00848437 _____ C:\Users\Musik\AppData\Roaming\Roundtouch.bin
2016-07-29 23:44 - 2016-07-29 23:44 - 00129024 _____ C:\Users\Musik\AppData\Roaming\Installer.dat
2016-07-29 23:44 - 2016-07-29 23:44 - 00018336 _____ C:\Users\Musik\AppData\Roaming\InstallationConfiguration.xml
2016-07-29 23:43 - 2016-07-29 23:43 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2016-07-29 23:42 - 2016-07-29 23:41 - 00001006 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2016-07-29 23:41 - 2016-07-29 23:41 - 00009018 _____ C:\WINDOWS\System32\Tasks\Phujitythase Engine
2016-07-29 23:41 - 2016-07-29 23:41 - 00003566 _____ C:\WINDOWS\System32\Tasks\b2929b72a96a471893ecaa9c51368bae
2016-07-29 23:40 - 2016-07-29 23:41 - 00000000 ____D C:\Users\Musik\AppData\Local\guquentligolysergeph
2016-07-29 23:27 - 2016-07-29 23:27 - 00000000 ____D C:\Bitmaps
2016-07-29 12:19 - 2016-07-29 12:19 - 00000000 ____D C:\Program Files\Common Files\Native Instruments
2016-07-29 12:02 - 2016-07-29 12:02 - 00000000 ____D C:\VstPlugins
2016-07-29 10:10 - 2016-07-31 23:24 - 00000000 ____D C:\Users\Musik\AppData\Local\Spectrasonics
2016-07-29 10:04 - 2016-07-29 10:04 - 00000000 ____D C:\Program Files\Common Files\Avid
2016-07-29 10:03 - 2016-07-29 10:08 - 00000000 ____D C:\ProgramData\Spectrasonics
2016-07-29 09:44 - 2016-07-29 09:44 - 00000000 ____D C:\Users\Musik\Documents\Best Service
2016-07-29 09:44 - 2016-07-29 09:44 - 00000000 ____D C:\Users\Musik\AppData\Roaming\Best Service
2016-07-29 09:43 - 2016-07-29 09:43 - 00000000 ____D C:\WINDOWS\usb-audio.deBehringer2902
2016-07-29 09:43 - 2009-10-30 14:39 - 00460864 _____ (BEHRINGER) C:\WINDOWS\system32\Drivers\BUSB2902.sys
2016-07-29 09:43 - 2009-10-30 14:39 - 00049728 _____ (BEHRINGER) C:\WINDOWS\system32\Drivers\busbwdm.sys
2016-07-29 09:40 - 2016-07-31 22:57 - 00000000 ____D C:\Program Files (x86)\VST64
2016-07-29 09:40 - 2016-07-29 09:40 - 00000000 __HDC C:\ProgramData\{61D688EB-321B-4270-9A71-38609E2C61BC}
2016-07-29 09:40 - 2016-07-29 09:40 - 00000000 __HDC C:\ProgramData\{019B143A-9DF7-4A4E-9071-1FB3892DDD09}
2016-07-29 09:40 - 2016-07-29 09:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Engine 2
2016-07-29 09:40 - 2016-07-29 09:40 - 00000000 ____D C:\ProgramData\Best Service
2016-07-29 09:40 - 2016-07-29 09:40 - 00000000 ____D C:\Program Files\Best Service
2016-07-29 09:39 - 2016-07-31 23:03 - 00000000 ____D C:\Program Files (x86)\VST32
2016-07-29 09:35 - 2016-07-29 09:35 - 02869264 _____ (Microsoft Corporation) C:\Users\Musik\Downloads\dotNetFx35setup.exe
2016-07-29 09:35 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-07-29 09:35 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-07-29 09:35 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-07-29 09:35 - 2015-10-23 17:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-07-29 09:35 - 2015-10-23 17:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-07-29 09:35 - 2015-10-23 17:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-07-29 08:24 - 2016-07-31 00:52 - 00000000 ____D C:\Users\Public\Documents\MAGIX
2016-07-29 08:24 - 2016-07-29 08:24 - 00000000 ____D C:\Users\Musik\Documents\MAGIX_MusicEditor
2016-07-29 08:24 - 2016-07-29 08:24 - 00000000 ____D C:\Users\Musik\AppData\Local\Xara
2016-07-29 08:23 - 2016-07-31 22:47 - 00000000 ____D C:\Program Files (x86)\MAGIX
2016-07-29 08:23 - 2016-07-31 01:11 - 00000000 ___RD C:\Users\Musik\Documents\MAGIX
2016-07-29 08:23 - 2016-07-29 08:23 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2016-07-29 08:16 - 2016-07-29 08:16 - 00000000 ____D C:\Users\Musik\AppData\Local\MicrosoftEdge
2016-07-17 12:36 - 2016-07-17 12:36 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-07-17 12:06 - 2016-07-17 12:06 - 00000000 ____D C:\Users\Musik\AppData\Local\Comms
2016-07-17 11:55 - 2016-07-17 11:55 - 00000000 ____D C:\Users\Musik\AppData\Local\PeerDistRepub
2016-07-17 11:51 - 2016-07-17 11:51 - 00002383 _____ C:\Users\Musik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-07-17 11:51 - 2016-07-17 11:51 - 00000000 ___RD C:\Users\Musik\OneDrive
2016-07-17 11:51 - 2016-07-17 11:51 - 00000000 ____D C:\Users\Musik\AppData\Local\ActiveSync
2016-07-17 11:50 - 2016-07-17 11:50 - 00000000 ____D C:\Users\Musik\AppData\Local\Publishers
2016-07-17 11:49 - 2016-07-19 15:38 - 00000000 ____D C:\Users\Musik\AppData\Local\Packages
2016-07-17 11:49 - 2016-07-17 11:49 - 00000020 ___SH C:\Users\Musik\ntuser.ini
2016-07-17 11:49 - 2016-07-17 11:49 - 00000000 ____D C:\Users\Musik\AppData\Local\TileDataLayer
2016-07-17 02:26 - 2016-07-17 02:26 - 00000000 ____D C:\Program Files\CMAK
2016-07-17 02:26 - 2016-07-17 02:26 - 00000000 ____D C:\Program Files (x86)\CMAK
2016-07-17 02:25 - 2016-07-17 02:25 - 28851224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 28083144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 24610304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 22379520 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 19347968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 18674176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 16985088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 13385728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 12128256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 07469408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 06973952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 06675968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 06536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 06471168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 06312448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 05660672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 05323776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 05123072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04895232 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04646912 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 04456448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04413440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04387680 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04268880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04171264 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04170240 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04078080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 03994624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03675512 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03589632 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 03585536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03577344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03555840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 03459584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03415040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03351040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03301376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncCenter.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03078144 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03053568 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03046400 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 03026944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02921880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02902528 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02876928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02849792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02771968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02745856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02731008 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02679808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02656408 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02635776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02632192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02609664 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02578432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02563584 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02548944 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02519552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02501632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02445312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02444800 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02403168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02285568 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02280448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02217984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02179584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02168320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02152280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 02145032 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-07-17 02:25 - 2016-07-17 02:25 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02103296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02102272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02088960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02062336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs3D.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-07-17 02:25 - 2016-07-17 02:25 - 02012672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01987936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 01987072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01976832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01872896 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01866104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01862008 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01848584 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01797120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01755648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 01729024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01716736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01671168 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01626112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01603224 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01594416 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01575936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01567744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01554152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01552104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01540224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01536600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01522160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01508352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmsipc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01505984 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01498624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 01487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.3D.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01445888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01434112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01410560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01395712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 01385472 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01372312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01355336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01349640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01339904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-07-17 02:25 - 2016-07-17 02:25 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01297752 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01294336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01291776 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01240064 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01239552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01238584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Taskmgr.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 01228800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcnwiz.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01223872 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01216512 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01211904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01185280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationFramework.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01171456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcenter.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01159168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01152864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 01141248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01128104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 01121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01089888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01083656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01051648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01040800 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01037824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-07-17 02:25 - 2016-07-17 02:25 - 01001472 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00994816 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00992256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00990208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-07-17 02:25 - 2016-07-17 02:25 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcsecproc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00965120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00961536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00958976 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-07-17 02:25 - 2016-07-17 02:25 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00947200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00925576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00879616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebcamUi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00847656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00836760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00835072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00833536 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmcsnap.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00817152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-07-17 02:25 - 2016-07-17 02:25 - 00808288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-07-17 02:25 - 2016-07-17 02:25 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sbe.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsSpellCheckingFacility.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00770640 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00765952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00760320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2016-07-17 02:25 - 2016-07-17 02:25 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00730352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00715776 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00714240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00697344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00694784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00693760 _____ (Microsoft Corporation) C:\WINDOWS\system32\internetmail.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00692136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00686976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00656896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00648256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00642048 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00636304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00614400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintDialogs.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00587456 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2016-07-17 02:25 - 2016-07-17 02:25 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00577376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00569752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00566104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00565760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenterCPL.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00559808 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00559616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.SmartCards.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00556032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00546816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenterCPL.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00546456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-07-17 02:25 - 2016-07-17 02:25 - 00530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFiDirect.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00521152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00519168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintDialogs.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00511488 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00510464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00503600 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00502784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\duser.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsettingsprovider.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00451936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcfile.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00442880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dlnashext.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00431296 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00429056 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00428896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WLanConn.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00405504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-07-17 02:25 - 2016-07-17 02:25 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL
2016-07-17 02:25 - 2016-07-17 02:25 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00388896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00388384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFiDirect.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00378208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-07-17 02:25 - 2016-07-17 02:25 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00374008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack_win.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00364032 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneBackupHandler.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdechangepin.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AccountsRt.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00357216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswsock.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntprint.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00347648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00344064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Picker.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\RADCUI.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00337336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00333824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\polstore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00331616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipcfile.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll


emus77 01.08.2016 14:16

Code:

2016-07-17 02:25 - 2016-07-17 02:25 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00312160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswsock.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00310464 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntprint.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dot3ui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\polstore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WmpDui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00284352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edputil.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00278528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmdskmgr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2016-07-17 02:25 - 2016-07-17 02:25 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00261376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00258912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00256192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Maps.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhengine.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00248320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssphtb.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingMonitor.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00240640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NotificationObjFactory.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrokerLib.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmdskmgr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToReceiver.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00211296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licensingdiag.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LegacyNetUXHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schtasks.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10_1.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingMonitor.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00170848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetpp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\easwrt.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00131248 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommon.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00111064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00110584 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00106928 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Devices.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00100232 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00097096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdlrecover.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\FingerprintEnrollment.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00081144 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00078040 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00078040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetCfgNotifyObjectHost.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00074424 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srvcli.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\LegacyNetUX.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netapi32.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPDShServiceObj.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00064584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00058400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WPDShServiceObj.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wkscli.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappprxy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FwRemoteSvr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OnDemandConnRouteHelper.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpscript.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00050368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Speech.Pal.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\browcli.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpscript.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00037232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Speech.Pal.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00032552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsdport.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsdchngr.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-07-17 02:25 - 2016-07-17 02:25 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2016-07-17 02:25 - 2016-07-17 02:25 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\IconCodecService.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IconCodecService.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll
2016-07-17 02:25 - 2016-07-17 02:25 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml
2016-07-17 02:25 - 2016-07-17 02:25 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-07-17 02:17 - 2016-07-17 02:17 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-07-17 01:37 - 2016-07-31 23:36 - 01950060 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-07-17 01:34 - 2016-07-17 01:34 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-07-17 01:33 - 2016-07-28 23:45 - 00004194 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-07-17 01:33 - 2016-07-28 23:45 - 00003962 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-07-17 01:33 - 2016-07-17 01:33 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-07-17 01:33 - 2016-07-17 01:33 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD
2016-07-17 01:31 - 2016-07-17 01:31 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-07-17 01:31 - 2016-07-17 01:31 - 00000000 ____D C:\Users\Default\AppData\Roaming\Media Center Programs
2016-07-17 01:31 - 2016-07-17 01:31 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Media Center Programs
2016-07-17 01:31 - 2016-07-17 01:31 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2016-07-17 01:30 - 2016-07-30 00:33 - 00000000 ____D C:\Users\Musik
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\Vorlagen
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\Startmenü
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\Netzwerkumgebung
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\Lokale Einstellungen
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\Eigene Dateien
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\Druckumgebung
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\Documents\Eigene Videos
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\Documents\Eigene Musik
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\Documents\Eigene Bilder
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\AppData\Local\Verlauf
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\AppData\Local\Anwendungsdaten
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _SHDL C:\Users\Musik\Anwendungsdaten
2016-07-17 01:30 - 2016-07-17 01:30 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2016-07-17 01:29 - 2016-07-17 01:29 - 00000000 ____D C:\WINDOWS\system32\SRSLabs
2016-07-17 01:29 - 2016-07-17 01:29 - 00000000 ____D C:\Program Files\VIA
2016-07-17 00:20 - 2016-07-17 00:20 - 00000000 ____D C:\Users\Musik\AppData\Local\GWX
2016-07-17 00:14 - 2016-07-31 00:53 - 00000000 ____D C:\Users\Musik\AppData\Roaming\MAGIX
2016-07-17 00:14 - 2016-07-29 12:52 - 00000000 ____D C:\Users\Musik\Documents\MAGIX Downloads
2016-07-17 00:14 - 2016-07-17 00:14 - 08476664 _____ (MAGIX Software GmbH) C:\Users\Musik\Downloads\musicmaker2016live_dlm.exe
2016-07-17 00:11 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\WINDOWS\system32\IEUDINIT.EXE
2016-07-16 23:50 - 2016-07-16 23:50 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll
2016-07-16 23:50 - 2016-07-16 23:50 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmlmedia.dll
2016-07-16 23:50 - 2016-07-16 23:50 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsIntl.dll
2016-07-16 23:50 - 2016-07-16 23:50 - 00940032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2016-07-16 23:50 - 2016-07-16 23:50 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsIntl.dll
2016-07-16 23:40 - 2016-07-16 23:43 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-07-16 23:40 - 2016-07-16 23:40 - 144749672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-07-16 23:38 - 2016-07-31 00:52 - 00000000 ____D C:\ProgramData\MAGIX
2016-07-16 23:38 - 2016-07-16 23:38 - 00000000 ____D C:\ProgramData\Package Cache
2016-07-16 23:29 - 2012-08-23 15:41 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbRedirectionGroupPolicyControl.exe
2016-07-16 23:29 - 2012-08-23 15:24 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpGroupPolicyExtension.dll
2016-07-16 23:29 - 2012-08-23 13:12 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpendp_winip.dll
2016-07-16 23:29 - 2012-08-23 12:51 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpendp_winip.dll
2016-07-16 23:25 - 2016-07-29 09:36 - 01884474 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2016-07-16 23:19 - 2013-01-13 23:17 - 00009728 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 23:17 - 00002560 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 23:16 - 00010752 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 23:12 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-07-16 23:19 - 2013-01-13 23:11 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-07-16 23:19 - 2013-01-13 23:11 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 23:11 - 00004096 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 23:11 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 23:11 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 22:35 - 00010752 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 22:35 - 00009728 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 22:35 - 00002560 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 22:32 - 00003584 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-07-16 23:19 - 2013-01-13 22:31 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-07-16 23:19 - 2013-01-13 22:31 - 00005632 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 22:31 - 00004096 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 22:31 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-version-l1-1-0.dll
2016-07-16 23:19 - 2013-01-13 22:31 - 00003072 ____H (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-07-16 23:17 - 2016-06-22 15:06 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\centel.dll
2016-07-16 23:04 - 2016-03-25 21:12 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\OxpsConverter.exe
2016-07-16 23:04 - 2015-11-19 16:07 - 00063840 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:07 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00066400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2016-07-16 23:04 - 2015-11-19 16:06 - 00011616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2016-07-16 23:03 - 2016-03-25 19:44 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2016-07-16 22:56 - 2015-06-03 22:17 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wdfres.dll
2016-07-16 22:55 - 2016-03-25 20:25 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdrmemptylst.exe
2016-07-16 22:55 - 2015-06-03 22:17 - 00000003 _____ C:\WINDOWS\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2016-07-16 22:48 - 2016-05-13 23:52 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2016-07-16 21:40 - 2015-01-09 05:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\powertracker.dll
2016-07-16 07:29 - 2011-02-16 04:16 - 00000029 ___RH C:\WINDOWS\version
2016-07-16 07:29 - 2011-02-16 04:16 - 00000013 ____R C:\WINDOWS\csup.txt
2016-07-16 07:28 - 2016-07-17 01:31 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-07-16 07:28 - 2016-07-16 07:28 - 00000000 ____D C:\WINDOWS\SysWOW64\0407
2016-07-16 07:28 - 2016-07-16 07:28 - 00000000 ____D C:\WINDOWS\system32\0407
2016-07-15 23:08 - 2016-07-17 01:33 - 00009510 _____ C:\WINDOWS\diagwrn.xml
2016-07-15 23:08 - 2016-07-17 01:33 - 00009510 _____ C:\WINDOWS\diagerr.xml
2016-07-15 23:06 - 2016-07-16 22:15 - 00000066 _____ C:\WINDOWS\progress.ini
2016-07-15 22:50 - 2016-07-15 22:50 - 00000694 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10-Upgrade-Assistent.lnk
2016-07-15 22:50 - 2016-07-15 22:50 - 00000000 ____D C:\Users\Musik\AppData\Roaming\Macromedia
2016-07-15 22:50 - 2016-07-15 22:50 - 00000000 ____D C:\Users\Musik\AppData\Roaming\Adobe
2016-07-15 22:49 - 2016-07-15 22:50 - 00000000 ____D C:\Users\Musik\AppData\Local\ElevatedDiagnostics
2016-07-15 22:43 - 2016-07-17 01:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN
2016-07-15 22:43 - 2016-07-15 22:43 - 00000000 ____D C:\Program Files (x86)\avmwlanstick
2016-07-15 22:42 - 2016-07-15 22:42 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2016-07-15 22:42 - 2016-07-15 22:42 - 00000000 ____D C:\Program Files (x86)\AVM_update
2016-07-15 22:40 - 2016-07-15 22:40 - 00000000 ____D C:\Users\Musik\AppData\Roaming\DAEMON Tools Pro
2016-07-15 22:40 - 2016-07-15 22:40 - 00000000 ____D C:\ProgramData\DAEMON Tools Pro
2016-07-15 22:39 - 2016-07-15 22:39 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3
2016-07-15 22:38 - 2016-07-15 22:38 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-07-15 22:37 - 2016-07-15 22:38 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-07-15 22:37 - 2016-07-15 22:37 - 00001214 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD VDeck.lnk
2016-07-15 22:37 - 2016-07-15 22:37 - 00000000 ____D C:\Program Files (x86)\VIA
2016-07-15 22:37 - 2007-04-11 09:35 - 00414632 _____ (Microsoft Corporation) C:\WINDOWS\difxapi.dll
2016-07-15 22:36 - 2016-07-15 22:36 - 00000000 ____D C:\Program Files\ATI
2016-07-15 22:36 - 2016-07-15 22:36 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2016-07-15 22:36 - 2010-05-20 09:30 - 00016440 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\Drivers\AtiPcie.sys
2016-07-15 22:35 - 2016-07-15 22:35 - 00000000 ____D C:\Program Files\ATI Technologies
2016-07-15 22:34 - 2016-08-01 14:50 - 00001136 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-07-15 22:34 - 2016-07-31 23:50 - 00001132 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-07-15 22:34 - 2016-07-31 22:47 - 00001367 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-07-15 22:34 - 2016-07-17 01:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-07-15 22:34 - 2016-07-16 00:55 - 00000000 ____D C:\Users\Musik\AppData\Local\Google
2016-07-15 22:34 - 2016-07-15 22:34 - 00000000 ____D C:\Program Files (x86)\Google
2016-07-15 22:33 - 2016-07-15 22:37 - 00001769 _____ C:\WINDOWS\Language_trs.ini
2016-07-15 22:33 - 2016-07-15 22:33 - 00039451 _____ C:\WINDOWS\Ascd_tmp.ini
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\Vorlagen
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\Startmenü
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\Netzwerkumgebung
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\Lokale Einstellungen
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\Eigene Dateien
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\Druckumgebung
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Videos
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Musik
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Bilder
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Verlauf
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Anwendungsdaten
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Users\Default.migrated\Anwendungsdaten
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Programme
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\ProgramData\Vorlagen
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\ProgramData\Startmenü
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\ProgramData\Favoriten
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\ProgramData\Dokumente
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 _SHDL C:\Dokumente und Einstellungen
2016-07-15 22:30 - 2016-07-15 22:30 - 00000000 ____D C:\Users\Musik\AppData\Local\VirtualStore
2016-07-15 22:30 - 2010-11-21 09:16 - 00000000 ____D C:\Users\Musik\AppData\Roaming\Media Center Programs

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-07-31 23:53 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-07-31 23:36 - 2016-04-27 07:13 - 00832370 _____ C:\WINDOWS\system32\perfh007.dat
2016-07-31 23:36 - 2016-04-27 07:13 - 00179280 _____ C:\WINDOWS\system32\perfc007.dat
2016-07-31 23:36 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-07-31 22:48 - 2016-04-27 07:48 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-07-31 22:48 - 2016-04-26 22:44 - 00269152 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-07-31 22:47 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-07-31 22:46 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-07-30 23:55 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-07-30 16:58 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-07-29 19:32 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-07-29 09:33 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-07-29 09:32 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-07-29 08:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Help
2016-07-27 21:25 - 2010-11-21 05:27 - 00504488 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-07-18 03:48 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-07-17 11:55 - 2016-04-27 07:19 - 00000000 ____D C:\WINDOWS\OCR
2016-07-17 11:49 - 2016-04-27 07:55 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-07-17 02:28 - 2015-10-30 09:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-07-17 02:26 - 2016-04-27 07:34 - 00000000 ____D C:\Program Files\Windows Journal
2016-07-17 02:26 - 2015-10-30 09:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Defender
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-07-17 02:26 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-07-17 02:25 - 2016-04-27 07:48 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-07-17 02:20 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2016-07-17 02:20 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2016-07-17 02:20 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2016-07-17 02:20 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2016-07-17 02:20 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\system32\winrm
2016-07-17 02:20 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\system32\WCN
2016-07-17 02:20 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-07-17 02:20 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2016-07-17 02:20 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-07-17 02:20 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2016-07-17 02:20 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-07-17 02:20 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-07-17 02:20 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-07-17 02:20 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-07-17 02:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-07-17 02:20 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\servicing
2016-07-17 01:34 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-07-17 01:34 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows NT
2016-07-17 01:33 - 2015-10-30 09:24 - 00000000 __RSD C:\WINDOWS\Media
2016-07-17 01:33 - 2015-10-30 09:24 - 00000000 __RHD C:\Users\Public\Libraries
2016-07-17 01:33 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Registration
2016-07-17 01:33 - 2009-07-14 05:20 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2016-07-17 01:31 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2016-07-17 01:31 - 2016-04-27 07:13 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\IME
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\schemas
2016-07-17 01:31 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-07-17 01:31 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-07-17 01:31 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-07-17 01:31 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\MSBuild
2016-07-17 01:31 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker
2016-07-17 01:31 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-07-17 01:31 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-07-17 01:31 - 2009-07-14 05:20 - 00000000 ____D C:\Users\Default.migrated
2016-07-17 01:30 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-07-17 01:13 - 2009-07-14 06:45 - 00025872 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-07-17 01:13 - 2009-07-14 06:45 - 00025872 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-07-15 21:31 - 2010-11-21 09:17 - 00000000 ____D C:\WINDOWS\CSC
2016-07-02 06:37 - 2015-10-30 09:26 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-07-02 06:37 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2010-08-28 22:43 - 2010-08-28 22:43 - 0096256 ____N (Google, inc) C:\Users\Musik\AppData\Roaming\AdbWinApi.dll
2010-08-28 22:43 - 2010-08-28 22:43 - 0060928 ____N (Google, inc) C:\Users\Musik\AppData\Roaming\AdbWinUsbApi.dll
2016-07-29 23:45 - 2016-07-29 23:45 - 7129600 _____ () C:\Users\Musik\AppData\Roaming\agent.dat
2016-07-29 23:45 - 2016-07-29 23:45 - 0054272 _____ () C:\Users\Musik\AppData\Roaming\ApplicationHosting.dat
2016-07-29 23:45 - 2016-07-29 23:45 - 0070896 _____ () C:\Users\Musik\AppData\Roaming\Config.xml
2016-07-29 23:45 - 2016-07-29 23:45 - 2279413 _____ () C:\Users\Musik\AppData\Roaming\Dambam.bin
2016-07-29 23:44 - 2016-07-29 23:44 - 0018336 _____ () C:\Users\Musik\AppData\Roaming\InstallationConfiguration.xml
2016-07-29 23:44 - 2016-07-29 23:44 - 0129024 _____ () C:\Users\Musik\AppData\Roaming\Installer.dat
2016-07-29 23:45 - 2016-07-29 23:44 - 0683520 _____ () C:\Users\Musik\AppData\Roaming\Kansollab.exe
2016-07-29 23:45 - 2016-07-29 23:45 - 0072710 _____ () C:\Users\Musik\AppData\Roaming\Kansollab.tst
2016-07-29 23:46 - 2016-07-26 08:33 - 1615872 _____ () C:\Users\Musik\AppData\Roaming\kpzip.exe
2016-07-29 23:45 - 2016-07-29 23:45 - 0126464 _____ () C:\Users\Musik\AppData\Roaming\lobby.dat
2016-07-29 23:45 - 2016-07-29 23:45 - 0018432 _____ () C:\Users\Musik\AppData\Roaming\Main.dat
2016-07-29 23:45 - 2016-07-29 23:45 - 0005568 _____ () C:\Users\Musik\AppData\Roaming\md.xml
2016-07-29 23:45 - 2016-07-29 23:45 - 0126464 _____ () C:\Users\Musik\AppData\Roaming\noah.dat
2016-07-29 23:44 - 2016-07-29 23:44 - 0848437 _____ () C:\Users\Musik\AppData\Roaming\Roundtouch.bin
2016-07-29 23:45 - 2016-07-29 23:45 - 7616340 _____ () C:\Users\Musik\AppData\Roaming\setup.apk
2016-07-29 23:45 - 2016-07-29 23:45 - 0032038 _____ () C:\Users\Musik\AppData\Roaming\uninstall_temp.ico
2016-07-29 23:45 - 2016-07-29 23:44 - 0683520 _____ () C:\Users\Musik\AppData\Roaming\Y-home.exe
2016-07-29 23:45 - 2016-07-29 23:45 - 1905266 _____ () C:\Users\Musik\AppData\Roaming\Y-home.tst
2016-07-29 23:45 - 2016-02-18 10:10 - 5267952 _____ () C:\Users\Musik\AppData\Roaming\ziptool_wc-9015_setup.exe

Einige Dateien in TEMP:
====================
C:\Users\Musik\AppData\Local\Temp\358WVPGEUY.exe
C:\Users\Musik\AppData\Local\Temp\3SMN5D40U3.exe
C:\Users\Musik\AppData\Local\Temp\4TUJJXkDhz.exe
C:\Users\Musik\AppData\Local\Temp\71A1J73OTF.exe
C:\Users\Musik\AppData\Local\Temp\A8GE47D4II.exe
C:\Users\Musik\AppData\Local\Temp\AE91.tmp.exe
C:\Users\Musik\AppData\Local\Temp\AmazonDriveSetupQ.exe
C:\Users\Musik\AppData\Local\Temp\libeay32.dll
C:\Users\Musik\AppData\Local\Temp\LsbM6sXmIK.exe
C:\Users\Musik\AppData\Local\Temp\msvcr120.dll
C:\Users\Musik\AppData\Local\Temp\nsw2108.tmp.exe
C:\Users\Musik\AppData\Local\Temp\NW83Vqqn9m.exe
C:\Users\Musik\AppData\Local\Temp\sdf5AC3.exe
C:\Users\Musik\AppData\Local\Temp\sdfFA92.exe
C:\Users\Musik\AppData\Local\Temp\sqlite3.dll
C:\Users\Musik\AppData\Local\Temp\tu17p84.exe


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-07-29 10:15

==================== Ende von FRST.txt ============================


cosinus 01.08.2016 14:17

Anleitung bitte richtig lesen...:kaffee:....du solltest einen Fix machen und nicht schon wieder normale Logs

emus77 01.08.2016 14:20

Fixlog.txt:

Code:

Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 27-07-2016
durchgeführt von Musik (2016-08-01 15:18:53) Run:1
Gestartet von C:\Users\Musik\Desktop
Geladene Profile: Musik (Verfügbare Profile: Musik)
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
S2 Phujitythaseengprm.exe; "C:\Program Files (x86)\Shuqogeclaale\Phujitythaseengprm.exe" {C25DA384-2010-45A4-A1ED-BFA540D4789B} {9DC74CD5-24EA-4ADE-9C42-608A8CE17116} [X]
C:\Users\Musik\Documents\Image-Line
C:\Users\Musik\Documents\u-he
C:\Users\Musik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
C:\Program Files\Image-Line
C:\Program Files (x86)\Image-Line
C:\Users\Musik\AppData\IObit
C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
C:\Program Files (x86)\IObit
C:\Users\Musik\AppData\Roaming\IObit
C:\ProgramData\IObit
C:\Users\Public\Desktop\IObit Uninstaller.lnk
C:\Users\Musik\AppData\LocalLow\IObit
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
C:\Users\Musik\Downloads\IObit Uninstaller - CHIP-Installer.exe
C:\ProgramData\{61D688EB-321B-4270-9A71-38609E2C61BC}
C:\ProgramData\{019B143A-9DF7-4A4E-9071-1FB3892DDD09}
C:\Program Files (x86)\Shuqogeclaale
emptytemp:
*****************

Phujitythaseengprm.exe => Dienst erfolgreich entfernt
C:\Users\Musik\Documents\Image-Line => erfolgreich verschoben
C:\Users\Musik\Documents\u-he => erfolgreich verschoben
C:\Users\Musik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line => erfolgreich verschoben
C:\Program Files\Image-Line => erfolgreich verschoben
C:\Program Files (x86)\Image-Line => erfolgreich verschoben
C:\Users\Musik\AppData\IObit => erfolgreich verschoben
C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705} => erfolgreich verschoben
C:\Program Files (x86)\IObit => erfolgreich verschoben
C:\Users\Musik\AppData\Roaming\IObit => erfolgreich verschoben
C:\ProgramData\IObit => erfolgreich verschoben
C:\Users\Public\Desktop\IObit Uninstaller.lnk => erfolgreich verschoben
C:\Users\Musik\AppData\LocalLow\IObit => erfolgreich verschoben
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller => erfolgreich verschoben
C:\Users\Musik\Downloads\IObit Uninstaller - CHIP-Installer.exe => erfolgreich verschoben
C:\ProgramData\{61D688EB-321B-4270-9A71-38609E2C61BC} => erfolgreich verschoben
C:\ProgramData\{019B143A-9DF7-4A4E-9071-1FB3892DDD09} => erfolgreich verschoben
"C:\Program Files (x86)\Shuqogeclaale" => nicht gefunden.

=========== EmptyTemp: ==========

BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 8755163 B
Java, Flash, Steam htmlcache => 343 B
Windows/system/drivers => 23011903 B
Edge => 1474920 B
Chrome => 2516355 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 115379 B
NetworkService => 138280 B
Musik => 216609121 B

RecycleBin => 3901594 B
EmptyTemp: => 244.6 MB temporäre Dateien entfernt.

================================


Das System musste neu gestartet werden.

==== Ende von Fixlog 15:19:00 ====


cosinus 01.08.2016 14:24

Okay, dann Kontrollscans mit (1) MBAM, (2) ESET und (3) SecurityCheck bitte:


1. Schritt: MBAM

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.




2. Schritt: ESET

ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset




3. Schritt: SecurityCheck

Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

emus77 01.08.2016 20:28

mbam.txt:

Code:

Malwarebytes Anti-Malware
www.malwarebytes.org

Suchlaufdatum: 01.08.2016
Suchlaufzeit: 15:29
Protokolldatei: mbam.txt
Administrator: Ja

Version: 2.2.1.1043
Malware-Datenbank: v2016.08.01.06
Rootkit-Datenbank: v2016.05.27.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: Musik

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 301792
Abgelaufene Zeit: 2 Min., 6 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(keine bösartigen Elemente erkannt)

Module: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 11
PUP.Optional.IDSCProduct, HKLM\SOFTWARE\MICROSOFT\TRACING\idscservice_RASAPI32, In Quarantäne, [707adf662f6baa8c917ce11b5ca74bb5],
PUP.Optional.IDSCProduct, HKLM\SOFTWARE\MICROSOFT\TRACING\idscservice_RASMANCS, In Quarantäne, [df0be85d0b8fc472dc3136c626dd857b],
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\MICROSOFT\TRACING\otutnetwork_RASAPI32, In Quarantäne, [b7333312bfdb7abcca0488738c776b95],
PUP.Optional.Tuto4PC, HKLM\SOFTWARE\MICROSOFT\TRACING\otutnetwork_RASMANCS, In Quarantäne, [b8320f36d2c866d019b5699206fd8878],
PUP.Optional.WizzCaster, HKLM\SOFTWARE\MICROSOFT\TRACING\wizzcaster_RASAPI32, In Quarantäne, [22c82e17801a6acc3a2fd02e5ba80af6],
PUP.Optional.WizzCaster, HKLM\SOFTWARE\MICROSOFT\TRACING\wizzcaster_RASMANCS, In Quarantäne, [8466d3724654b2845c0d4bb3778c8878],
PUP.Optional.Elex, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{6C782A47-1A78-4C41-AE7D-16F1F1DB99EA}, Löschen bei Neustart, [23c798adccce241210cdc1fea75d7e82],
PUP.Optional.Elex, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F6B9DD4B-DC06-4DC5-B3E9-945C958883D9}, Löschen bei Neustart, [40aa2d183e5cc76f14bd2996dd2748b8],
PUP.Optional.Elex, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\b2929b72a96a471893ecaa9c51368bae, Löschen bei Neustart, [c327cc79b8e2dc5a4390a31c05ff768a],
PUP.Optional.Elex, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Phujitythase Engine, Löschen bei Neustart, [ae3c9baa1f7bce68ac35338cba4ac937],
PUP.Optional.Trotux, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}, In Quarantäne, [bc2ef3523e5cd85e4ca2a5246c9644bc],

Registrierungswerte: 6
PUP.Optional.Elex, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{6C782A47-1A78-4C41-AE7D-16F1F1DB99EA}|Path, \Phujitythase Engine, Löschen bei Neustart, [23c798adccce241210cdc1fea75d7e82]
PUP.Optional.Elex, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{F6B9DD4B-DC06-4DC5-B3E9-945C958883D9}|Path, \b2929b72a96a471893ecaa9c51368bae, Löschen bei Neustart, [40aa2d183e5cc76f14bd2996dd2748b8]
PUP.Optional.Trotux, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|hp, hxxp://www.trotux.com/?z=d8543c2530f59c7ba88d07cgaz8qft2bfoebezcwbt&from=epf1&uid=INTENSOXSATAXIIIXSSD_DA5A07650FEE02957576&type=hp&mode=ffsengext, In Quarantäne, [bc2ef3523e5cd85e4ca2a5246c9644bc]
PUP.Optional.Trotux, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|tab, hxxp://www.trotux.com/?z=d8543c2530f59c7ba88d07cgaz8qft2bfoebezcwbt&from=epf1&uid=INTENSOXSATAXIIIXSSD_DA5A07650FEE02957576&type=hp&mode=ffsengext, In Quarantäne, [f1f981c47c1e55e11fcf2f9a38ca1ae6]
PUP.Optional.Trotux, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|sp, hxxp://www.trotux.com/search/?q={searchTerms}&z=d8543c2530f59c7ba88d07cgaz8qft2bfoebezcwbt&from=epf1&uid=INTENSOXSATAXIIIXSSD_DA5A07650FEE02957576&type=sp, In Quarantäne, [e5055de8d7c3142213db24a557ab629e]
PUP.Optional.Trotux, HKLM\SOFTWARE\MOZILLA\FIREFOX\{EB52F1AB-3C2B-424F-9794-833C687025CF}|surl, hxxp://www.trotux.com/search/?&z=d8543c2530f59c7ba88d07cgaz8qft2bfoebezcwbt&from=epf1&uid=INTENSOXSATAXIIIXSSD_DA5A07650FEE02957576&type=sp&q=, In Quarantäne, [31b977ce6337082e6b83e4e59c66a55b]

Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)

Ordner: 138
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Caps, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Crashpad, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Crashpad\reports, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\EVWhitelist, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\EVWhitelist\7, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\EVWhitelist\7\_metadata, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\EVWhitelist\7\_platform_specific, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\EVWhitelist\7\_platform_specific\all, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\databases, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\databases\http_content.adriver.ru_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\databases\http_de.ccm.net_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\databases\http_onkpfgdw.cba.pl_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\data_reduction_proxy_leveldb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension Rules, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension State, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\css, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\html, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\images, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\bg, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\ca, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\cs, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\da, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\de, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\el, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\en, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\en_GB, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\es, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\es_419, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\et, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\fi, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\fil, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\fr, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\hi, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\hr, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\hu, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\id, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\it, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\ja, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\ko, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\lt, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\lv, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\nb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\nl, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\pl, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\pt_BR, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\pt_PT, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\ro, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\ru, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\sk, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\sl, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\sr, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\sv, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\th, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\tr, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\uk, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\vi, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\zh_CN, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\zh_TW, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_metadata, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_docs.google.com_0.indexeddb.leveldb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_magine.com_0.indexeddb.leveldb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.com_0.indexeddb.leveldb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.de_0.indexeddb.leveldb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\L4ENW74E, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\aa.online-metrix.net, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\aa.online-metrix.net\fpc.swf, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\bbcdn-bbnaut.ibillboard.com, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\bbcdn-bbnaut.ibillboard.com\server-static-files, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\bbcdn-bbnaut.ibillboard.com\server-static-files\bbnaut-b.swf, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\#aa.online-metrix.net, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\#bbcdn-bbnaut.ibillboard.com, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\#p5.focus.de, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\#s.ytimg.com, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\#www.tagesschau.de, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\p5.focus.de, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\p5.focus.de\##AF3DF60A73FC7225, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\s.ytimg.com, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\www.tagesschau.de, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\www.tagesschau.de\##092833DF21E87875, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Plugin Data, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Plugin Data\Google Gears, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\28da9c56fde4021055a681112c092453f74d8dd8, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\28da9c56fde4021055a681112c092453f74d8dd8\06DC3DEC-953D-4371-9B9E-01E337A4988E, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\28da9c56fde4021055a681112c092453f74d8dd8\06DC3DEC-953D-4371-9B9E-01E337A4988E\index-dir, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\index-dir, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\Database, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache\index-dir, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\User StyleSheets, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\PepperFlash, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\PepperFlash\22.0.0.209, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_metadata, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ShaderCache, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\SwiftShader, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\SwReporter, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\SwReporter\7.58.0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\SwReporter\7.58.0\_metadata, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\imgs, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\_metadata, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\_platform_specific, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\_platform_specific\win_x86, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],

Dateien: 402
PUP.Optional.LogicHandler, C:\Users\Musik\AppData\Roaming\Dambam.bin, In Quarantäne, [e505dd68c8d2eb4ba34c5e009868649c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Roaming\kpzip.exe, In Quarantäne, [f1f96fd6c3d7e94d765aa80faf55e020],
PUP.Optional.Linkury, C:\Users\Musik\AppData\Roaming\Roundtouch.bin, In Quarantäne, [6e7cf64f297156e0ba7b352313f1a759],
PUP.Optional.Linkury, C:\Users\Musik\AppData\Roaming\ApplicationHosting.dat, In Quarantäne, [01e9e95cdcbe1e186d3c25caab5848b8],
PUP.Optional.Linkury, C:\Users\Musik\AppData\Roaming\md.xml, In Quarantäne, [1bcf0e37c3d706304b5f21cea45ff60a],
PUP.Optional.Linkury, C:\Users\Musik\AppData\Roaming\noah.dat, In Quarantäne, [608abd88e9b1d95de1cab03f7291de22],
PUP.Optional.Linkury, C:\Users\Musik\AppData\Roaming\uninstall_temp.ico, In Quarantäne, [46a4f550e6b4300605a7c629a162be42],
PUP.Optional.Linkury, C:\Users\Musik\AppData\Roaming\lobby.dat, In Quarantäne, [69810a3b1981ec4a73c23ab6b053956b],
PUP.Optional.Linkury.Gen, C:\Users\Musik\AppData\Roaming\Kansollab.tst, In Quarantäne, [bc2e78cd4a50b97d4f1b11ec7a89a65a],
PUP.Optional.Linkury.Gen, C:\Users\Musik\AppData\Roaming\Y-home.tst, In Quarantäne, [638773d26f2b42f4036727d6669d8977],
PUP.Optional.Elex, C:\Windows\System32\Tasks\b2929b72a96a471893ecaa9c51368bae, In Quarantäne, [14d656ef4e4cba7ca73001bef50fc937],
PUP.Optional.Elex, C:\Windows\System32\Tasks\Phujitythase Engine, In Quarantäne, [ab3f76cf4d4d58dea7386a5552b28977],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Csd Whitelist, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\.ChromotingConfig.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Certificate Revocation Lists, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\de-DE-1-2.bdic, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\de-DE-3-0.bdic, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\First Run, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Local State, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Bloom, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Bloom Prefix Set, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Cookies, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Cookies-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Download, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Download Whitelist, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Extension Blacklist, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Inclusion Whitelist, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing IP Blacklist, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Module Whitelist, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing Resource Blacklist, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing UwS List, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Safe Browsing UwS List Prefix Set, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Service State, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\manifest.fingerprint, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\manifest.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths\5614069a2fd7c2ecd3f5e1bd44b23ec74676b9bc99115cc0ef949855d689d0dd.sth, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths\68f698f81f6482be3a8ceeb9281d4cfc71515d6793d444d10a67acbb4f4ffbc4.sth, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths\7461b4a09cfb3d41d75159575b2e7649a445a8d27709b0cc564a6482b7eb41a3.sth, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths\a4b90990b418581487bb13a2cc67700a3c359804f91bdfb8e377cd0ec80ddc10.sth, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths\a577ac9ced7548dd8f025b67a241089df86e0f476ec203c2ecbedb185f282638.sth, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths\ac3b9aed7fa9674757159e6d7d575672f9d98100941e9bdeffeca1313b75782d.sth, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths\bc78e1dfc5f63c684649334da10fa15f0979692009c081b4f3f6917f3ed9b8a5.sth, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths\cdb5179b7fc1c046feea31136a3f8f002e6182faf8896fecc8b2f5b5ab604900.sth, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths\ddeb1d2b7a0d4fa6208b81ad8168707e2e8e9d01d55c888d3d11c4cdb6ecbecc.sth, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\CertificateTransparency\103\_platform_specific\all\sths\ee4bbdb775ce60bae142691fabe19e66a30f7e5fb072d88300c47b897aa8fdcb.sth, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Crashpad\metadata, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\Crashpad\settings.dat, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\EVWhitelist\7\manifest.fingerprint, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\EVWhitelist\7\manifest.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\EVWhitelist\7\_metadata\verified_contents.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\EVWhitelist\7\_platform_specific\all\ev_hashes_whitelist.bin, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Archived History, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Bookmarks, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Bookmarks.bak, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Cookies, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Cookies-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Current Session, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Current Tabs, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\DownloadMetadata, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension Cookies, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension Cookies-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Favicons, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Favicons-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Google Profile.ico, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\History, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\History Provider Cache, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Last Session, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Last Tabs, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Login Data, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Login Data-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Network Action Predictor-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Network Persistent State, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Origin Bound Certs, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Origin Bound Certs-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Preferences, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\QuotaManager, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\QuotaManager-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Secure Preferences, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Secure Preferencescouershmodphmehogh, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Shortcuts, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Shortcuts-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Top Sites, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Top Sites-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\TransportSecurity, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Visited Links, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Web Data, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Web Data-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Web Datacouershmodphmehogh, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\History-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Network Action Predictor, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\databases\Databases.db, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\databases\Databases.db-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\databases\http_content.adriver.ru_0\2, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\databases\http_de.ccm.net_0\1, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\databases\http_onkpfgdw.cba.pl_0\3, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\data_reduction_proxy_leveldb\000003.log, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\data_reduction_proxy_leveldb\CURRENT, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\data_reduction_proxy_leveldb\LOCK, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\data_reduction_proxy_leveldb\LOG, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\data_reduction_proxy_leveldb\LOG.old, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\data_reduction_proxy_leveldb\MANIFEST-000001, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension Rules\000003.log, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension Rules\CURRENT, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension Rules\LOCK, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension Rules\LOG, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension Rules\MANIFEST-000001, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension State\000003.log, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension State\CURRENT, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension State\LOCK, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension State\LOG, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension State\LOG.old, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extension State\MANIFEST-000001, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\craw_background.js, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\craw_window.js, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\manifest.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\css\craw_window.css, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\html\craw_window.html, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\images\flapper.gif, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\images\icon_128.png, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\images\icon_16.png, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\images\topbar_floating_button.png, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\images\topbar_floating_button_close.png, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\images\topbar_floating_button_hover.png, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\images\topbar_floating_button_maximize.png, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\images\topbar_floating_button_pressed.png, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\bg\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\ca\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\cs\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\da\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\de\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\el\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\en\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\en_GB\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\es\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\es_419\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\et\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\fi\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\fil\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\fr\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\hi\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\hr\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\hu\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\id\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\it\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\ja\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\ko\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\lt\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\lv\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\nb\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\nl\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\pl\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\pt_BR\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\pt_PT\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\ro\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\ru\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\sk\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\sl\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\sr\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\sv\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\th\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\tr\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\uk\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\vi\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\zh_CN\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_locales\zh_TW\messages.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\1.0.0.0_0\_metadata\verified_contents.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_docs.google.com_0.indexeddb.leveldb\000003.log, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_docs.google.com_0.indexeddb.leveldb\CURRENT, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_docs.google.com_0.indexeddb.leveldb\LOCK, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_docs.google.com_0.indexeddb.leveldb\LOG, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_docs.google.com_0.indexeddb.leveldb\MANIFEST-000001, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_magine.com_0.indexeddb.leveldb\000003.log, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_magine.com_0.indexeddb.leveldb\CURRENT, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_magine.com_0.indexeddb.leveldb\LOCK, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_magine.com_0.indexeddb.leveldb\LOG, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_magine.com_0.indexeddb.leveldb\MANIFEST-000001, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.com_0.indexeddb.leveldb\000003.log, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.com_0.indexeddb.leveldb\CURRENT, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.com_0.indexeddb.leveldb\LOCK, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.com_0.indexeddb.leveldb\LOG, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.com_0.indexeddb.leveldb\MANIFEST-000001, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.de_0.indexeddb.leveldb\000003.log, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.de_0.indexeddb.leveldb\CURRENT, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.de_0.indexeddb.leveldb\LOCK, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.de_0.indexeddb.leveldb\LOG, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.de_0.indexeddb.leveldb\LOG.old, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\IndexedDB\https_www.google.de_0.indexeddb.leveldb\MANIFEST-000001, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FD6.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FE7.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FE8.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FE9.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FEA.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FEB.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FEC.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FED.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FEE.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FEF.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FF0.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FF1.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FF2.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FF3.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIcons\1FF4.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E32C.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E32D.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E32E.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E32F.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E330.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E331.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E332.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E333.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E334.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E335.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E336.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E337.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E338.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E348.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\JumpListIconsOld\E349.tmp, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\chrome-extension_eemcgdkfndhakfknompkggombfjjjeno_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_check.paymentsmb.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_check.paymentsmb.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_clients5.google.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_clients5.google.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_de.magine.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_de.magine.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_dkuim.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_dkuim.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_docs.google.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_docs.google.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_imagesrv.adition.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_magine.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_magine.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_mstat.freent.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_mstat.freent.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_plus.google.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_plus.google.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_rtlnext.rtl.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_rtlnext.rtl.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_secure-ds.serving-sys.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_secure-ds.serving-sys.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_support.microsoft.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_c.betrad.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_imagesrv.adition.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_support.microsoft.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.facebook.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_disqus.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_widgets.outbrain.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_vlscppe.microsoft.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_vlscppe.microsoft.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_webmail.freenet.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_webmail.freenet.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.allmystery.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.allmystery.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.computerbase.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.computerbase.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.computerbild.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.computerbild.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.facebook.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.google.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.google.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.google.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.google.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.microsoft.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.microsoft.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.netflix.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.netflix.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.youtube.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_www.youtube.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_answers.microsoft.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_answers.microsoft.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_c.betrad.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_c.betrad.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_de.ccm.net_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_de.ccm.net_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_de.sputniknews.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_de.sputniknews.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_disqus.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_imagesrv.adition.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_imagesrv.adition.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_info.kopp-verlag.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_info.kopp-verlag.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_liveblog.faz.net_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_liveblog.faz.net_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_onkpfgdw.cba.pl_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_onkpfgdw.cba.pl_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_t4ft.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_t4ft.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_videos.huffingtonpost.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_videos.huffingtonpost.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_widgets.outbrain.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.faz.net_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.faz.net_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.freenet.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.freenet.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.giga.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.giga.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.google.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.heise.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.heise.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.huffingtonpost.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.huffingtonpost.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.magix.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.magix.com_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.n-tv.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.n-tv.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.win-10-forum.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.win-10-forum.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.zeit.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\http_www.zeit.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_alexanderschimpf.de_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_alexanderschimpf.de_0.localstorage-journal, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Local Storage\https_c.betrad.com_0.localstorage, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\aa.online-metrix.net\fpc.swf\session.sol, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\bbcdn-bbnaut.ibillboard.com\server-static-files\bbnaut-b.swf\bbcookie.sol, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\settings.sol, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\#aa.online-metrix.net\settings.sol, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\#bbcdn-bbnaut.ibillboard.com\settings.sol, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\#p5.focus.de\settings.sol, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\#s.ytimg.com\settings.sol, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\macromedia.com\support\flashplayer\sys\#www.tagesschau.de\settings.sol, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\Z8DCBA33\www.tagesschau.de\##092833DF21E87875\00000001.sol, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Plugin Data\Google Gears\localserver.db, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Plugin Data\Google Gears\permissions.db, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\28da9c56fde4021055a681112c092453f74d8dd8\index.txt, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\28da9c56fde4021055a681112c092453f74d8dd8\06DC3DEC-953D-4371-9B9E-01E337A4988E\1dd0446e4b2b157b_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\28da9c56fde4021055a681112c092453f74d8dd8\06DC3DEC-953D-4371-9B9E-01E337A4988E\290faecc8d0548fa_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\28da9c56fde4021055a681112c092453f74d8dd8\06DC3DEC-953D-4371-9B9E-01E337A4988E\d4a1768080ecf56d_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\28da9c56fde4021055a681112c092453f74d8dd8\06DC3DEC-953D-4371-9B9E-01E337A4988E\fdf2cfeb8ad0eeac_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\28da9c56fde4021055a681112c092453f74d8dd8\06DC3DEC-953D-4371-9B9E-01E337A4988E\index, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\28da9c56fde4021055a681112c092453f74d8dd8\06DC3DEC-953D-4371-9B9E-01E337A4988E\index-dir\the-real-index, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\index.txt, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\1157fee2e2dc1968_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\1d349f3d1ebe59d5_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\33a474001b630f7c_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\40bba07c05914591_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\4a80d5be9f073893_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\50da1ec5d44a313d_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\58062b649d5fee3c_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\608d13fb70947f94_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\6c5623553203e6ca_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\cea6c1a3a8cd3460_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\e43dbe60372b8464_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\e599dc5e24eb76d7_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\fdf2cfeb8ad0eeac_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\index, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\CacheStorage\e6622492fa163609ddd4212f54512baa07929ed3\86A5AB0A-0A76-43F4-BA64-108E9148FABC\index-dir\the-real-index, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\Database\000003.log, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\Database\CURRENT, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\Database\LOCK, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\Database\LOG, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\Database\LOG.old, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\Database\MANIFEST-000001, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache\2cc80dabc69f58b6_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache\2cc80dabc69f58b6_1, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache\f1cdccba37924bda_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache\f3ab1e1292e135fa_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache\f3ab1e1292e135fa_1, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache\f76ccbbbd72a0391_0, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache\f76ccbbbd72a0391_1, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache\index, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Service Worker\ScriptCache\index-dir\the-real-index, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\000005.ldb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\000081.ldb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\000083.ldb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\000085.ldb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\000086.log, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\000087.ldb, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\CURRENT, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\LOCK, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\LOG, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\LOG.old, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\Session Storage\MANIFEST-000001, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\ghifackarapulyfinck\User StyleSheets\Custom.css, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\PepperFlash\22.0.0.209\manifest.fingerprint, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\PepperFlash\22.0.0.209\manifest.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\PepperFlash\22.0.0.209\pepflashplayer.dll, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\manifest.fingerprint, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\manifest.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_metadata\verified_contents.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_pnacl_json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_for_eh_o, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_o, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_x86_64_crtend_o, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_x86_64_ld_nexe, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_x86_64_libcrt_platform_a, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_x86_64_libgcc_a, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_a, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_dummy_a, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_llc_nexe, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\pnacl\0.52.38.9180\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_sz_nexe, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\SwReporter\7.58.0\manifest.fingerprint, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\SwReporter\7.58.0\manifest.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\SwReporter\7.58.0\software_reporter_tool.exe, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\SwReporter\7.58.0\_metadata\verified_contents.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\manifest.fingerprint, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\manifest.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\imgs\icon-128x128.png, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\_metadata\verified_contents.json, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\_platform_specific\win_x86\CdmAdapterVersion, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\_platform_specific\win_x86\widevinecdm.dll, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Elex, C:\Users\Musik\AppData\Local\guquentligolysergeph\WidevineCDM\1.4.8.903\_platform_specific\win_x86\widevinecdmadapter.dll, In Quarantäne, [13d7a69f8416db5be2e3efd0e51ff40c],
PUP.Optional.Linkury.ACMB1, C:\Users\Musik\AppData\Roaming\Config.xml, In Quarantäne, [fceeee573d5d2c0a5cd2b6e741c3b54b],
PUP.Optional.Linkury.ACMB1, C:\Users\Musik\AppData\Roaming\InstallationConfiguration.xml, In Quarantäne, [37b36adbd8c2ff37aa85acf131d35ca4],

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)

ESET log.txt:

Code:

ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=21ab7c68ec57fc4ebcc9228e178e1c49
# end=init
# utc_time=2016-08-01 01:39:03
# local_time=2016-08-01 03:39:03 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.2.9200 NT
Update Init
Update Download
Update Finalize
Updated modules version: 30286
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=21ab7c68ec57fc4ebcc9228e178e1c49
# end=updated
# utc_time=2016-08-01 01:42:29
# local_time=2016-08-01 03:42:29 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.2.9200 NT
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7777
# api_version=3.1.1
# EOSSerial=21ab7c68ec57fc4ebcc9228e178e1c49
# engine=30286
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2016-08-01 05:13:23
# local_time=2016-08-01 07:13:23 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 13196 23885746 0 0
# scanned=694787
# found=17
# cleaned=0
# scan_time=12654
sh=F0A6259220CC16C711A6B365BFC156487E68430B ft=1 fh=2e03c0ae4cca728e vn="Variante von Win64/SBWatchman.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\FileQuarantine\C\Program Files\Common Files\Noobzo\GNUpdate\smci64_IObitDel.dll.vir"
sh=3E3C9AAC1A368AB4EC6B120C11FB89ECC9F243F4 ft=1 fh=0d6dd3be1b64d8b2 vn="Variante von Win64/SBWatchman.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\FileQuarantine\C\Program Files\Common Files\Noobzo\GNUpdate\smu_IObitDel.exe.vir"
sh=867E2F7DED3F87D8B4DF292596BCAB73943FB017 ft=1 fh=f3dbcb50843c43ad vn="Variante von Win64/SpeedBit.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\FileQuarantine\C\Program Files\Common Files\Noobzo\GNUpdate\smw_IObitDel.sys.vir"
sh=83DAD0F237FE2DF266E77F9E881AAA6234B6F48C ft=1 fh=3ecc9053201fcd25 vn="Variante von MSIL/Injector.PPZ Trojaner" ac=I fn="C:\AdwCleaner\FileQuarantine\C\Program Files\SpaceSoundPro\uninstaller.exe.vir"
sh=CB8DA5D594B4865DC12FDFE102A1E215F205B2A8 ft=1 fh=984b652ab325ba69 vn="Variante von Win32/TrojanDropper.Addrop.BA Trojaner" ac=I fn="C:\AdwCleaner\FileQuarantine\C\ProgramData\CloudPrinter\CloudPrinter.exe.vir"
sh=90E77041D4FB2FC4653569BF597172662D04689F ft=1 fh=47d38294a3f1d393 vn="MSIL/Toolbar.Linkury.AV evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\FileQuarantine\C\ProgramData\Logic Handler\set.exe.vir"
sh=289DBDEB697232483BE2AEFDD2468ADF313A8FB5 ft=1 fh=b4517ae452b41ff4 vn="Variante von Win32/Adware.Hejie123.A Anwendung" ac=I fn="C:\AdwCleaner\FileQuarantine\C\Users\Musik\AppData\Roaming\THREADAPP.exe.vir"
sh=CF2F8E5216A607A59D956D7466320AF66C8FD10C ft=1 fh=e3d13535c8be4d40 vn="Mehrere Bedrohungen" ac=I fn="C:\AdwCleaner\FileQuarantine\C\Users\Musik\AppData\Roaming\UPUpdata\AutoTime_51477.exe.vir"
sh=50B8659F2086F61FC86DD3CC0186433EADAE0BE7 ft=1 fh=771964d3a2294b75 vn="Variante von Win32/Adware.Eszjuxuan.A Anwendung" ac=I fn="C:\AdwCleaner\FileQuarantine\C\Users\Musik\AppData\Roaming\UPUpdata\hp.exe.vir"
sh=72223305B732AFE6D2256B5C771E27AB879F62B5 ft=1 fh=a1a6334f8deddcaa vn="Variante von Win32/Adware.Agent.NPK Anwendung" ac=I fn="C:\AdwCleaner\FileQuarantine\C\Users\Musik\AppData\Roaming\UPUpdata\msiql.exe.vir"
sh=6931683DD746996AE150E3EA89557EF5C52CEF1D ft=1 fh=0c9341fe40b7f00e vn="Variante von Win32/SpeedBit.AT evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\FileQuarantine\C\WINDOWS\SysNative\bi3.exe.vir"
sh=618AF640D3B538883987A052F1E2036E10B17290 ft=1 fh=7d40e1f1576f19c4 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\FRST\Quarantine\C\Users\Musik\Downloads\IObit Uninstaller - CHIP-Installer.exe.xBAD"
sh=CB8DA5D594B4865DC12FDFE102A1E215F205B2A8 ft=1 fh=984b652ab325ba69 vn="Variante von Win32/TrojanDropper.Addrop.BA Trojaner" ac=I fn="C:\Users\Musik\AppData\Roaming\Kansollab.exe"
sh=7F8D2B55D1BC382C5043D14F995B8F761A95A627 ft=0 fh=0000000000000000 vn="Variante von Android/TrojanDropper.Agent.AAH Trojaner" ac=I fn="C:\Users\Musik\AppData\Roaming\setup.apk"
sh=CB8DA5D594B4865DC12FDFE102A1E215F205B2A8 ft=1 fh=984b652ab325ba69 vn="Variante von Win32/TrojanDropper.Addrop.BA Trojaner" ac=I fn="C:\Users\Musik\AppData\Roaming\Y-home.exe"
sh=6B2E6727D469A559ACE0F46467E9B8E71112FCC1 ft=1 fh=7e72112073512e13 vn="Variante von Win32/Packed.VMProtect.ABD Trojaner" ac=I fn="E:\AUDIO-APPS\MAGIX Music Maker 2014 Premium - VLAD\XTRAS\MAGIX Products Multikeygen\Magic.dll"
sh=53CBD321F59BF39278BB41494FDAA631F1DEE7A1 ft=1 fh=52d86995bd19c781 vn="Variante von Generik.EUQALWC Trojaner" ac=I fn="E:\VST\SONSTIGE\EastWest.Vapor.Virtual.Synth.v1.0.VSTi.DXi.AU.HYBRiD.DVDR-DELiRiUM\ewvapkg.exe"


emus77 01.08.2016 20:31

checkup.txt:

Code:

Results of screen317's Security Check version 1.009 
  x64 (UAC is enabled) 
 Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````
Windows Defender 
 WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````
 Google Chrome 11.0.696.77 Google Chrome out of date! 
````````Process Check: objlist.exe by Laurent```````` 
 Windows Defender MSMpEng.exe
 Windows Defender MSASCui.exe
 Windows Defender MpCmdRun.exe 
 Windows Defender MSASCui.exe 
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:  %
````````````````````End of Log``````````````````````


cosinus 02.08.2016 08:32

FRST-Fix

Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft!


Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

C:\Users\Musik\AppData\Roaming\Kansollab.exe
C:\Users\Musik\AppData\Roaming\setup.apk
C:\Users\Musik\AppData\Roaming\Y-home.exe
E:\AUDIO-APPS\
E:\VST\SONSTIGE\
hosts:
emptytemp:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.


emus77 02.08.2016 10:18

FRST bleibt immer hängen (keine Rückmeldung), dann geht´s weiter, dann bleibt er wieder hängen...
der bisher generierte Log:

Code:

Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 27-07-2016
durchgeführt von Musik (2016-08-02 11:06:54) Run:3
Gestartet von C:\Users\Musik\Desktop
Geladene Profile: Musik (Verfügbare Profile: Musik)
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
C:\Users\Musik\AppData\Roaming\Kansollab.exe
C:\Users\Musik\AppData\Roaming\setup.apk
C:\Users\Musik\AppData\Roaming\Y-home.exe
E:\AUDIO-APPS\
E:\VST\SONSTIGE\
hosts:
emptytemp:
*****************

"C:\Users\Musik\AppData\Roaming\Kansollab.exe" => erfolgreich verschoben
"C:\Users\Musik\AppData\Roaming\setup.apk" => erfolgreich verschoben
"C:\Users\Musik\AppData\Roaming\Y-home.exe" => erfolgreich verschoben

Jetzt ist FRST abgestürzt mit der Windowsmeldung: FRST funktioniert nicht mehr. Programm schließen.
Und nun?

aber neuer Eintrag im Fixlog.txt:

Code:

"E:\AUDIO-APPS" Ordner verschieben:

Konnte nicht verschoben werden "E:\AUDIO-APPS" => ist geplant bei Neustart verschoben zu werden.

Nebenbei: Warum und wohin will FRST meine beiden Ordner auf der E.-Platte verschieben?

cosinus 02.08.2016 10:23

Zitat:

E:\AUDIO-APPS\MAGIX Music Maker 2014 Premium - VLAD\XTRAS\MAGIX Products Multikeygen\Magic.dll
E:\VST\SONSTIGE\EastWest.Vapor.Virtual.Synth.v1.0.VSTi.DXi.AU.HYBRiD.DVDR-DELiRiUM\ewvapkg.exe
Alternativ kann ich dir auch das :pfui:-Schild zeigen
Was ist ist, weiß du ja oder?

emus77 02.08.2016 10:35

ok, d.h. ich entferne manuell diese beiden Dateien?
Was mache ich dann?

ok, ich habe nun beide Ordner gelöscht - ist also weg...

cosinus 02.08.2016 10:43

neuer Fix bitte

FRST-Fix

Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft!


Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

C:\Users\Musik\AppData\Roaming\Kansollab.exe
C:\Users\Musik\AppData\Roaming\setup.apk
C:\Users\Musik\AppData\Roaming\Y-home.exe
hosts:
emptytemp:


Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.


emus77 02.08.2016 10:56

Fixlog.txt:

Code:

Ergebnis der geplanten Datei-Verschiebungen (Start-Modus: Normal) (Datum&Uhrzeit: 2016-08-02 11:55:56)

==> ACHTUNG: Das System wurde nicht neu gestartet.
"E:\AUDIO-APPS" => Konnte nicht verschoben werden

==== Ende von Fixlog 11:56:06 ====


cosinus 02.08.2016 11:05

Anleitung bitte richtig lesen und umsetzen


Alle Zeitangaben in WEZ +1. Es ist jetzt 16:57 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20