AdwCleaner Logfile: Code:
# AdwCleaner v6.020 - Bericht erstellt am 20/09/2016 um 17:24:05
# Aktualisiert am 14/09/2016 von ToolsLib
# Datenbank : 2016-09-20.3 [Server]
# Betriebssystem : Windows 10 Pro (X64)
# Benutzername : milka - DESKTOP-A0H2KSD
# Gestartet von : C:\Users\milka\Desktop\adwcleaner_6.020.exe
# Modus: Suchlauf
# Unterstützung : https://toolslib.net/forum
***** [ Dienste ] *****
Keine schädlichen Dienste gefunden.
***** [ Ordner ] *****
Keine schädlichen Ordner gefunden.
***** [ Dateien ] *****
Datei Gefunden: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HowToRemove.html.lnk
***** [ DLL ] *****
Keine infizierten DLLs gefunden.
***** [ WMI ] *****
Keine schädlichen Schlüssel gefunden.
***** [ Verknüpfungen ] *****
Keine infizierten Verknüpfungen gefunden.
***** [ Aufgabenplanung ] *****
Keine schädlichen Aufgaben gefunden.
***** [ Registrierungsdatenbank ] *****
Schlüssel Gefunden: HKU\S-1-5-21-1231653582-135276213-3349442365-1001\Software\PRODUCTSETUP
Schlüssel Gefunden: HKU\S-1-5-21-1231653582-135276213-3349442365-1001\Software\csastats
Schlüssel Gefunden: HKCU\Software\PRODUCTSETUP
Schlüssel Gefunden: HKCU\Software\csastats
Schlüssel Gefunden: [x64] HKCU\Software\PRODUCTSETUP
Schlüssel Gefunden: [x64] HKCU\Software\csastats
Daten Gefunden: HKU\S-1-5-21-1231653582-135276213-3349442365-1001\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxps://de.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wnf_ir_16_38&pa
Daten Gefunden: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxps://de.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wnf_ir_16_38¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dde%26pa%3
Daten Gefunden: HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxps://de.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wnf_ir_16_38¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dde%26pa%3
Daten Gefunden: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxps://de.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wnf_ir_16_38¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dde%26pa
Daten Gefunden: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] - hxxps://de.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wnf_ir_16_38¶m1=1¶m2=f%3D1%26b%3DIE%26cc%3Dde%26pa
Schlüssel Gefunden: HKU\S-1-5-21-1231653582-135276213-3349442365-1001\Software\Microsoft\Internet Explorer\SearchScopes\{2211d4a5-48d0-47f5-a7cd-81e861470f7f}
Schlüssel Gefunden: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2211d4a5-48d0-47f5-a7cd-81e861470f7f}
Schlüssel Gefunden: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Daten Gefunden: HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] -
Schlüssel Gefunden: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2211d4a5-48d0-47f5-a7cd-81e861470f7f}
Schlüssel Gefunden: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}
Daten Gefunden: [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] -
***** [ Internetbrowser ] *****
Keine schädlichen Elemente in Firefox basierten Browsern gefunden.
Keine schädlichen Elemente in Chrome basierten Browsern gefunden.
*************************
C:\AdwCleaner\AdwCleaner[S0].txt - [3439 Bytes] - [20/09/2016 17:24:05]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3512 Bytes] ########## --- --- --- Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 20.09.2016
Suchlaufzeit: 17:34
Protokolldatei: malwarebytes.txt
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.09.20.06
Rootkit-Datenbank: v2016.08.15.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: milka
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 289931
Abgelaufene Zeit: 3 Min., 18 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 4
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{B84BA1FF-7FF0-4877-BDE1-962575DE139A}, Löschen bei Neustart, [bbab5f152476cf679f8ae4d0e024cf31],
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Yahoo! Powered fifil, Löschen bei Neustart, [96d02f45ebaf88ae0a201b9931d3956b],
PUP.Optional.WinYahoo, HKU\S-1-5-21-1231653582-135276213-3349442365-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BFREPORT, In Quarantäne, [d29422529901181e8ff8b34bb54ebd43],
PUP.Optional.WinYahoo, HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Chromium, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
Registrierungswerte: 2
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{B84BA1FF-7FF0-4877-BDE1-962575DE139A}|Path, \Yahoo! Powered fifil, Löschen bei Neustart, [bbab5f152476cf679f8ae4d0e024cf31]
PUP.Optional.WinYahoo, HKU\S-1-5-21-1231653582-135276213-3349442365-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BFREPORT|filename, C:\Users\milka\AppData\Roaming\{264D10F6-031F-7D80-6829-5A52B4FBA76C}\productupdate.exe, In Quarantäne, [d29422529901181e8ff8b34bb54ebd43]
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 2
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
Dateien: 26
PUP.Optional.WinYahoo, C:\Windows\Tasks\Yahoo! Powered fifil.job, In Quarantäne, [e3834d27eeac7fb7141473418a7a857b],
PUP.Optional.WinYahoo, C:\Windows\System32\Tasks\Yahoo! Powered fifil, In Quarantäne, [f274f084108ab87e2407f4c06c98ed13],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\HowToRemove.html, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\chromium-min.jpg, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\control panel-min-min.JPG, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\down.png, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\ff menu.JPG, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\ff search engine-min.png, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\hp-min ff.png, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\hp-min ie.png, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\search engine.gif, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\setup pages.gif, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\sp-min.png, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\start-min.jpg, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\HowToRemove\up.png, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\bapi_ff.dat, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\bapi_ie.dat, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\fode, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\install.log, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\lime.cfg, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\lise, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\rila.dat, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\Sqlite3.dll, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\tala, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\uninst.dat, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
PUP.Optional.WinYahoo, C:\Users\milka\AppData\Local\{2610104C-02B8-7CF4-6F20-591C4B48A584}\uninst.exe, In Quarantäne, [70f66014ff9b9a9c5905237a34d00af6],
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) Code:
Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 20-09-2016
durchgeführt von milka (20-09-2016 21:01:53) Run:1
Gestartet von C:\Users\milka\Desktop
Geladene Profile: milka & (Verfügbare Profile: milka)
Start-Modus: Normal
==============================================
fixlist Inhalt:
*****************
start
CloseProcesses:
Task: {B84346F3-64DD-4D5A-8D21-E5209AA6AE6E} - System32\Tasks\{180AF6D1-CC15-B901-EB43-700F62FF6EB1} => C:\Users\milka\AppData\Roaming\{264D1~1\PRODUC~1.EXE [2013-05-02] () <==== ACHTUNG
Task: {B84BA1FF-7FF0-4877-BDE1-962575DE139A} - System32\Tasks\Yahoo! Powered fifil => Wscript.exe "C:\ProgramData\{4F528A31-C510-00F7-43D6-9EB5D994157B}\mira.txt" "687474703a2f2f7761676e672e636f6d" "433a5c50726f6772616d446174615c7b34463532384133312d433531302d303046372d343344362d3945423544393934313537427d5c636f6e696661" "433a5c50726f6772616d446174615c7b34463532384133312d433531302d303046372d343344 (Der Dateneintrag hat 78 mehr Zeichen).
Task: C:\windows\Tasks\Yahoo! Powered fifil.job => Wscript.exe C:\ProgramData\{4F528A31-C510-00F7-43D6-9EB5D994157B}\mira.txt <==== ACHTUNG
C:\Users\milka\AppData\Roaming\{264D10F6-031F-7D80-6829-5A52B4FBA76C}
C:\ProgramData\{4F528A31-C510-00F7-43D6-9EB5D994157B}
CMD: dir "%ProgramFiles%"
CMD: dir "%ProgramFiles(x86)%"
CMD: dir "%ProgramData%"
CMD: dir "%Appdata%"
CMD: dir "%LocalAppdata%"
RemoveProxy:
CMD: ipconfig /flushdns
CMD: netsh winsock reset
EmptyTemp:
end
*****************
Prozess erfolgreich geschlossen.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B84346F3-64DD-4D5A-8D21-E5209AA6AE6E}" => Schlüssel erfolgreich entfernt
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B84346F3-64DD-4D5A-8D21-E5209AA6AE6E}" => Schlüssel erfolgreich entfernt
C:\windows\System32\Tasks\{180AF6D1-CC15-B901-EB43-700F62FF6EB1} => erfolgreich verschoben
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{180AF6D1-CC15-B901-EB43-700F62FF6EB1}" => Schlüssel erfolgreich entfernt
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B84BA1FF-7FF0-4877-BDE1-962575DE139A} => Schlüssel nicht gefunden.
C:\windows\System32\Tasks\Yahoo! Powered fifil => nicht gefunden.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Yahoo! Powered fifil => Schlüssel nicht gefunden.
C:\windows\Tasks\Yahoo! Powered fifil.job => nicht gefunden.
C:\Users\milka\AppData\Roaming\{264D10F6-031F-7D80-6829-5A52B4FBA76C} => erfolgreich verschoben
C:\ProgramData\{4F528A31-C510-00F7-43D6-9EB5D994157B} => erfolgreich verschoben
========= dir "%ProgramFiles%" =========
Datentr„ger in Laufwerk C: ist Local Disk
Volumeseriennummer: E88D-78BA
Verzeichnis von C:\Program Files
20.09.2016 20:48 <DIR> .
20.09.2016 20:48 <DIR> ..
30.10.2015 09:24 <DIR> Common Files
19.08.2016 04:40 <DIR> Intel
29.04.2016 22:18 <DIR> Internet Explorer
29.04.2016 23:04 <DIR> Microsoft Office 15
29.04.2016 22:09 <DIR> Windows Defender
30.10.2015 11:02 <DIR> Windows Mail
29.04.2016 22:18 <DIR> Windows Media Player
29.04.2016 22:18 <DIR> Windows Multimedia Platform
30.10.2015 09:24 <DIR> Windows NT
29.04.2016 22:09 <DIR> Windows Photo Viewer
29.04.2016 22:18 <DIR> Windows Portable Devices
0 Datei(en), 0 Bytes
13 Verzeichnis(se), 92.280.717.312 Bytes frei
========= Ende von CMD: =========
========= dir "%ProgramFiles(x86)%" =========
Datentr„ger in Laufwerk C: ist Local Disk
Volumeseriennummer: E88D-78BA
Verzeichnis von C:\Program Files (x86)
20.09.2016 17:33 <DIR> .
20.09.2016 17:33 <DIR> ..
20.09.2016 15:34 <DIR> Avira
19.08.2016 04:39 <DIR> Common Files
20.09.2016 15:27 <DIR> Intel
29.04.2016 22:18 <DIR> Internet Explorer
20.09.2016 17:33 <DIR> Malwarebytes Anti-Malware
20.09.2016 15:26 <DIR> Microsoft Office
29.04.2016 23:14 <DIR> Microsoft.NET
20.09.2016 15:31 <DIR> Mozilla Firefox
20.09.2016 15:31 <DIR> Mozilla Maintenance Service
29.04.2016 22:09 <DIR> Windows Defender
30.10.2015 11:02 <DIR> Windows Mail
29.04.2016 22:09 <DIR> Windows Media Player
29.04.2016 22:18 <DIR> Windows Multimedia Platform
30.10.2015 09:24 <DIR> Windows NT
29.04.2016 22:09 <DIR> Windows Photo Viewer
29.04.2016 22:18 <DIR> Windows Portable Devices
0 Datei(en), 0 Bytes
18 Verzeichnis(se), 92.280.717.312 Bytes frei
========= Ende von CMD: =========
========= dir "%ProgramData%" =========
Datentr„ger in Laufwerk C: ist Local Disk
Volumeseriennummer: E88D-78BA
Verzeichnis von C:\ProgramData
20.09.2016 15:34 <DIR> Avira
30.10.2015 09:24 <DIR> Comms
20.09.2016 17:33 <DIR> Malwarebytes
29.04.2016 23:15 <DIR> Microsoft OneDrive
20.09.2016 15:30 <DIR> Package Cache
29.04.2016 23:14 <DIR> regid.1991-06.com.microsoft
30.10.2015 09:24 <DIR> SoftwareDistribution
29.04.2016 22:34 <DIR> USOPrivate
29.04.2016 22:34 <DIR> USOShared
0 Datei(en), 0 Bytes
9 Verzeichnis(se), 92.280.717.312 Bytes frei
========= Ende von CMD: =========
========= dir "%Appdata%" =========
Datentr„ger in Laufwerk C: ist Local Disk
Volumeseriennummer: E88D-78BA
Verzeichnis von C:\Users\milka\AppData\Roaming
20.09.2016 21:01 <DIR> .
20.09.2016 21:01 <DIR> ..
20.09.2016 15:22 <DIR> Adobe
20.09.2016 16:35 <DIR> Avira
20.09.2016 15:34 <DIR> Mozilla
20.09.2016 20:27 <DIR> Spotify
20.09.2016 16:29 45 WB.CFG
1 Datei(en), 45 Bytes
6 Verzeichnis(se), 92.280.717.312 Bytes frei
========= Ende von CMD: =========
========= dir "%LocalAppdata%" =========
Datentr„ger in Laufwerk C: ist Local Disk
Volumeseriennummer: E88D-78BA
Verzeichnis von C:\Users\milka\AppData\Local
20.09.2016 18:51 <DIR> .
20.09.2016 18:51 <DIR> ..
20.09.2016 15:24 <DIR> ActiveSync
20.09.2016 18:51 <DIR> CEF
20.09.2016 15:30 <DIR> chromium
20.09.2016 15:24 <DIR> Comms
20.09.2016 18:55 <DIR> Microsoft
20.09.2016 15:27 <DIR> MicrosoftEdge
20.09.2016 15:40 <DIR> Mozilla
20.09.2016 16:30 <DIR> Packages
20.09.2016 15:40 <DIR> PackageStaging
20.09.2016 17:24 <DIR> PeerDistRepub
20.09.2016 17:33 <DIR> Programs
20.09.2016 15:23 <DIR> Publishers
20.09.2016 20:22 <DIR> Spotify
20.09.2016 21:01 <DIR> Temp
20.09.2016 15:22 <DIR> TileDataLayer
20.09.2016 15:22 <DIR> VirtualStore
0 Datei(en), 0 Bytes
18 Verzeichnis(se), 92.280.713.216 Bytes frei
========= Ende von CMD: =========
========= RemoveProxy: =========
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wert erfolgreich entfernt
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wert erfolgreich entfernt
HKU\S-1-5-21-1231653582-135276213-3349442365-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wert erfolgreich entfernt
HKU\S-1-5-21-1231653582-135276213-3349442365-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wert erfolgreich entfernt
HKU\S-1-5-21-1231653582-135276213-3349442365-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wert erfolgreich entfernt
HKU\S-1-5-21-1231653582-135276213-3349442365-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wert erfolgreich entfernt
========= Ende von RemoveProxy: =========
========= ipconfig /flushdns =========
Windows-IP-Konfiguration
Der DNS-Aufl”sungscache wurde geleert.
========= Ende von CMD: =========
========= netsh winsock reset =========
Der Winsock-Katalog wurde zurckgesetzt.
Sie mssen den Computer neu starten, um den Vorgang abzuschlieáen.
========= Ende von CMD: =========
=========== EmptyTemp: ==========
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 13763742 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 6266455 B
Edge => 8230920 B
Chrome => 0 B
Firefox => 98955319 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 4118 B
NetworkService => 9432 B
milka => 363454059 B
RecycleBin => 0 B
EmptyTemp: => 468 MB temporäre Dateien entfernt.
================================
Das System musste neu gestartet werden.
==== Ende von Fixlog 21:02:01 ==== Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 20-09-2016
durchgeführt von milka (Administrator) auf DESKTOP-A0H2KSD (20-09-2016 21:14:54)
Gestartet von C:\Users\milka\Desktop
Geladene Profile: milka (Verfügbare Profile: milka)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Edge)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.570_none_7645b09c266beb53\TiWorker.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(The Chromium Authors) C:\Users\milka\AppData\Local\chromium\Application\chrome.exe
(The Chromium Authors) C:\Users\milka\AppData\Local\chromium\Application\chrome.exe
(The Chromium Authors) C:\Users\milka\AppData\Local\chromium\Application\chrome.exe
(The Chromium Authors) C:\Users\milka\AppData\Local\chromium\Application\chrome.exe
(The Chromium Authors) C:\Users\milka\AppData\Local\chromium\Application\chrome.exe
(Spotify Ltd) C:\Users\milka\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\milka\AppData\Roaming\Spotify\SpotifyCrashService.exe
(Spotify Ltd) C:\Users\milka\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\milka\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Spotify Ltd) C:\Users\milka\AppData\Roaming\Spotify\Spotify.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSYNC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-08-24] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [830064 2016-08-25] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-1231653582-135276213-3349442365-1001\...\Run: [Chromium] => c:\users\milka\appdata\local\chromium\application\chrome.exe [1068544 2016-03-18] (The Chromium Authors)
HKU\S-1-5-21-1231653582-135276213-3349442365-1001\...\Run: [Spotify] => C:\Users\milka\AppData\Roaming\Spotify\Spotify.exe [6795376 2016-09-20] (Spotify Ltd)
HKU\S-1-5-21-1231653582-135276213-3349442365-1001\...\Run: [Spotify Web Helper] => C:\Users\milka\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1529456 2016-09-20] (Spotify Ltd)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.179.1
Tcpip\..\Interfaces\{5e2e3d79-378a-447c-844f-df04b3fa0d51}: [DhcpNameServer] 192.168.179.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKU\S-1-5-21-1231653582-135276213-3349442365-1001\Software\Microsoft\Internet Explorer\Main,Start Page =
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-04-29] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-04-29] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-04-29] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-04-29] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-04-29] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-04-29] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF ProfilePath: C:\Users\milka\AppData\Roaming\Mozilla\Firefox\Profiles\T3m4eCCn.default
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-04-29] (Microsoft Corporation)
FF Extension: (Avira Browser Safety) - C:\Users\milka\AppData\Roaming\Mozilla\Firefox\Profiles\T3m4eCCn.default\Extensions\abs@avira.com [2016-09-20]
FF Extension: (Firefox Hotfix) - C:\Users\milka\AppData\Roaming\Mozilla\Firefox\Profiles\T3m4eCCn.default\Extensions\firefox-hotfix@mozilla.org.xpi [2016-09-20]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [989696 2016-08-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [470600 2016-08-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [470600 2016-08-25] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1454720 2016-08-25] (Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [346928 2016-08-24] (Avira Operations GmbH & Co. KG)
R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [26760 2016-09-12] (Avira Operations GmbH & Co. KG)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2912496 2016-03-06] (Microsoft Corporation)
S3 cplspcon; C:\Windows\system32\IntelCpHDCPSvc.exe [465912 2016-07-14] (Intel Corporation)
S3 vmicvss; C:\Windows\System32\ICSvc.dll [511488 2016-09-07] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364456 2016-09-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2016-09-07] (Microsoft Corporation) Code:
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [144664 2016-08-25] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [154392 2016-08-25] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2016-08-25] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [78208 2016-08-25] (Avira Operations GmbH & Co. KG)
S3 AX88772; C:\Windows\System32\drivers\ax88772.sys [111616 2015-10-30] (ASIX Electronics Corp.)
R3 CSI2HostControllerDriver; C:\Windows\System32\drivers\CSI2HostControllerDriver.sys [125456 2016-07-16] (Intel(R) Corporation)
R3 iacamera64; C:\Windows\system32\DRIVERS\iacamera64.sys [2133520 2016-07-16] (Intel(R) Corporation)
R3 iaLPSS2_GPIO2; C:\Windows\System32\drivers\iaLPSS2_GPIO2.sys [83768 2016-01-29] (Windows (R) Win 7 DDK provider)
R3 iaLPSS2_I2C; C:\Windows\System32\drivers\iaLPSS2_I2C.sys [185144 2016-01-29] (Intel Corporation)
S3 iaLPSS2_SPI; C:\Windows\System32\drivers\iaLPSS2_SPI.sys [152376 2016-01-29] (Intel Corporation)
S3 iaLPSS2_UART2; C:\Windows\System32\drivers\iaLPSS2_UART2.sys [281400 2016-01-29] (Intel Corporation)
R3 IntcAudioBus; C:\Windows\System32\drivers\IntcAudioBus.sys [217672 2016-06-28] (Intel(R) Corporation)
R3 IntcOED; C:\Windows\System32\drivers\IntcOED.sys [648264 2016-06-28] (Intel(R) Corporation)
R3 IntTouch; C:\Windows\System32\drivers\iaPreciseTouch.sys [270856 2016-04-29] (Intel Corporation)
R3 mrvlpcie8897; C:\Windows\System32\drivers\mrvlpcie8897.sys [1050112 2016-02-24] (Marvell Semiconductors Inc.)
R3 ov5693; C:\Windows\System32\drivers\ov5693.sys [164880 2016-07-16] (Intel(R) Corporation)
R3 ov7251; C:\Windows\System32\drivers\ov7251.sys [156176 2016-07-16] (Intel Corporation)
R3 ov8865; C:\Windows\System32\drivers\ov8865.sys [162320 2016-07-16] (Intel Corporation)
R3 SkcController; C:\Windows\System32\drivers\SkcController.sys [170496 2016-07-16] (Intel(R) Corporation)
R3 supportdriver; C:\Windows\System32\drivers\iaisp64.sys [52752 2016-07-16] (Intel(R) Corporation)
S3 Surface3TypeCoverIntegration; C:\Windows\System32\drivers\Surface3TypeCoverIntegration.sys [46104 2015-09-06] (Microsoft Corporation)
R3 SurfaceAccessoryDevice; C:\Windows\System32\drivers\SurfaceAccessoryDevice.sys [70264 2015-09-06] (Microsoft Corporation)
R3 SurfaceButton; C:\Windows\System32\drivers\SurfaceButton.sys [128144 2016-06-28] (Microsoft Corporation)
R3 SurfaceCoSAR; C:\Windows\System32\drivers\SurfaceCoSAR.sys [55960 2015-12-04] (Microsoft Corporation)
R3 SurfaceDigitizerIntegration; C:\Windows\System32\drivers\SurfaceDigitizerIntegration.sys [58504 2015-09-06] (Microsoft Corporation)
R3 SurfaceDisplayCalibration; C:\Windows\System32\drivers\SurfaceDisplayCalibration.sys [51344 2015-11-25] (Microsoft Corporation)
S3 SurfaceDockIntegration; C:\Windows\System32\drivers\SurfaceDockIntegration.sys [41232 2016-03-28] (Microsoft Corporation)
R3 SurfaceIntegrationDriver; C:\Windows\System32\drivers\SurfaceIntegrationDriver.sys [95496 2016-05-26] (Microsoft Corporation)
R3 SurfacePenClickFilter; C:\Windows\System32\drivers\SurfacePenClickFilter.sys [56984 2015-09-06] (Microsoft Corporation)
R3 SurfacePenDriver; C:\Windows\system32\DRIVERS\SurfacePenDriver.sys [115592 2016-07-14] (Microsoft Corporation)
R3 SurfacePenIntegration; C:\Windows\System32\drivers\SurfacePenIntegration.sys [61464 2015-09-06] (Microsoft Corporation)
S3 SurfacePro4TypeCoverIntegration; C:\Windows\System32\drivers\SurfacePro4TypeCoverIntegration.sys [59448 2015-09-06] (Microsoft Corporation)
S3 SurfaceSoftwareServicing; C:\Windows\System32\drivers\SurfaceSoftwareServicingDriver.sys [33544 2015-08-22] (Microsoft Corporation)
R3 SurfaceStorageFwUpdate; C:\Windows\System32\drivers\SurfaceStorageFwUpdate.sys [2813592 2015-10-22] (Microsoft Corporation)
R3 SurfaceSystemTelemetryDriver; C:\Windows\System32\drivers\SurfaceSystemTelemetryDriver.sys [64000 2015-09-06] (Microsoft Corporation)
R3 SurfaceTouchServicingML; C:\Windows\System32\drivers\SurfaceTouchServicingML.sys [77584 2016-06-28] (Microsoft Corporation)
S3 SurfaceTypeCover; C:\Windows\System32\drivers\SurfaceTypeCover.sys [58896 2015-09-06] (Microsoft Corporation)
S3 SurfaceTypeCoverV3Integration; C:\Windows\System32\drivers\SurfaceTypeCoverV3Integration.sys [44072 2015-09-06] (Microsoft Corporation)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2016-09-20 21:05 - 2016-09-20 21:05 - 00000000 ____D C:\Program Files\CMAK
2016-09-20 21:05 - 2016-09-20 21:05 - 00000000 ____D C:\Program Files (x86)\CMAK
2016-09-20 21:01 - 2016-09-20 21:02 - 00009684 _____ C:\Users\milka\Desktop\Fixlog.txt
2016-09-20 21:01 - 2016-09-20 21:01 - 00000000 ____D C:\Users\milka\Desktop\FRST-OlderVersion
2016-09-20 20:46 - 2016-09-20 20:47 - 00000000 ____D C:\windows\system32\MRT
2016-09-20 20:46 - 2016-09-20 20:46 - 144199024 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2016-09-20 20:40 - 2016-09-07 06:26 - 13392384 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2016-09-20 20:40 - 2016-09-07 06:22 - 12134400 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2016-09-20 20:40 - 2016-09-07 06:20 - 02352128 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2016-09-20 20:40 - 2016-09-07 06:16 - 04412928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExplorerFrame.dll
2016-09-20 20:39 - 2016-09-07 07:39 - 02656952 _____ C:\windows\system32\CoreUIComponents.dll
2016-09-20 20:39 - 2016-09-07 07:39 - 01098640 _____ (Microsoft Corporation) C:\windows\system32\MrmCoreR.dll
2016-09-20 20:39 - 2016-09-07 07:37 - 00572272 _____ (Microsoft Corporation) C:\windows\SysWOW64\taskschd.dll
2016-09-20 20:39 - 2016-09-07 07:33 - 00026408 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2016-09-20 20:39 - 2016-09-07 07:26 - 02544256 _____ (Microsoft Corporation) C:\windows\system32\mfcore.dll
2016-09-20 20:39 - 2016-09-07 07:26 - 01299504 _____ (Microsoft Corporation) C:\windows\system32\mfnetsrc.dll
2016-09-20 20:39 - 2016-09-07 07:26 - 01152320 _____ (Microsoft Corporation) C:\windows\system32\mfasfsrcsnk.dll
2016-09-20 20:39 - 2016-09-07 07:26 - 01092464 _____ (Microsoft Corporation) C:\windows\system32\mfplat.dll
2016-09-20 20:39 - 2016-09-07 07:26 - 00858952 _____ (Microsoft Corporation) C:\windows\system32\mfnetcore.dll
2016-09-20 20:39 - 2016-09-07 07:26 - 00847648 _____ (Microsoft Corporation) C:\windows\system32\mfsvr.dll
2016-09-20 20:39 - 2016-09-07 07:26 - 00785088 _____ (Microsoft Corporation) C:\windows\system32\evr.dll
2016-09-20 20:39 - 2016-09-07 07:26 - 00588320 _____ (Microsoft Corporation) C:\windows\system32\wmdrmdev.dll
2016-09-20 20:39 - 2016-09-07 07:26 - 00245840 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2016-09-20 20:39 - 2016-09-07 07:25 - 02607336 _____ (Microsoft Corporation) C:\windows\system32\combase.dll
2016-09-20 20:39 - 2016-09-07 07:25 - 01270064 _____ (Microsoft Corporation) C:\windows\system32\WinTypes.dll
2016-09-20 20:39 - 2016-09-07 07:24 - 01349632 _____ (Microsoft Corporation) C:\windows\SysWOW64\winmde.dll
2016-09-20 20:39 - 2016-09-07 07:24 - 00511312 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll
2016-09-20 20:39 - 2016-09-07 07:24 - 00496360 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmdrmdev.dll
2016-09-20 20:39 - 2016-09-07 07:23 - 01750440 _____ (Microsoft Corporation) C:\windows\system32\WpcMon.exe
2016-09-20 20:39 - 2016-09-07 07:23 - 01603224 _____ (Microsoft Corporation) C:\windows\system32\propsys.dll
2016-09-20 20:39 - 2016-09-07 07:23 - 01040792 _____ (Microsoft Corporation) C:\windows\system32\twinapi.appcore.dll
2016-09-20 20:39 - 2016-09-07 07:23 - 00725776 _____ (Microsoft Corporation) C:\windows\system32\SHCore.dll
2016-09-20 20:39 - 2016-09-07 07:22 - 01128096 _____ (Microsoft Corporation) C:\windows\system32\ClipUp.exe
2016-09-20 20:39 - 2016-09-07 07:20 - 00569744 _____ (Microsoft Corporation) C:\windows\SysWOW64\SHCore.dll
2016-09-20 20:39 - 2016-09-07 07:19 - 00294752 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2016-09-20 20:39 - 2016-09-07 07:15 - 00911640 _____ (Microsoft Corporation) C:\windows\system32\dcomp.dll
2016-09-20 20:39 - 2016-09-07 07:12 - 01174008 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctf.dll
2016-09-20 20:39 - 2016-09-07 06:52 - 00084480 _____ (Microsoft Corporation) C:\windows\system32\rdpudd.dll
2016-09-20 20:39 - 2016-09-07 06:48 - 22379520 _____ (Microsoft Corporation) C:\windows\system32\edgehtml.dll
2016-09-20 20:39 - 2016-09-07 06:48 - 00957952 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL
2016-09-20 20:39 - 2016-09-07 06:47 - 00824320 _____ (Microsoft Corporation) C:\windows\system32\WpcWebFilter.dll
2016-09-20 20:39 - 2016-09-07 06:46 - 00123392 _____ (Microsoft Corporation) C:\windows\system32\mssprxy.dll
2016-09-20 20:39 - 2016-09-07 06:46 - 00088576 _____ (Microsoft Corporation) C:\windows\SysWOW64\olepro32.dll
2016-09-20 20:39 - 2016-09-07 06:43 - 16985600 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.dll
2016-09-20 20:39 - 2016-09-07 06:42 - 00572928 _____ (Microsoft Corporation) C:\windows\SysWOW64\WpcWebFilter.dll
2016-09-20 20:39 - 2016-09-07 06:41 - 00124928 _____ (Microsoft Corporation) C:\windows\system32\shsetup.dll
2016-09-20 20:39 - 2016-09-07 06:41 - 00094720 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataTimeUtil.dll
2016-09-20 20:39 - 2016-09-07 06:39 - 01567744 _____ (Microsoft Corporation) C:\windows\system32\Windows.Globalization.dll
2016-09-20 20:39 - 2016-09-07 06:37 - 00617984 _____ (Microsoft Corporation) C:\windows\system32\StorSvc.dll
2016-09-20 20:39 - 2016-09-07 06:37 - 00381952 _____ (Microsoft Corporation) C:\windows\system32\apprepsync.dll
2016-09-20 20:39 - 2016-09-07 06:36 - 00764928 _____ (Microsoft Corporation) C:\windows\system32\Chakradiag.dll
2016-09-20 20:39 - 2016-09-07 06:36 - 00457216 _____ (Microsoft Corporation) C:\windows\system32\azroleui.dll
2016-09-20 20:39 - 2016-09-07 06:36 - 00287744 _____ (Microsoft Corporation) C:\windows\system32\apprepapi.dll
2016-09-20 20:39 - 2016-09-07 06:36 - 00174592 _____ (Microsoft Corporation) C:\windows\system32\easwrt.dll
2016-09-20 20:39 - 2016-09-07 06:35 - 24611840 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2016-09-20 20:39 - 2016-09-07 06:35 - 00814592 _____ (Microsoft Corporation) C:\windows\system32\msctfuimanager.dll
2016-09-20 20:39 - 2016-09-07 06:35 - 00394240 _____ (Microsoft Corporation) C:\windows\system32\Search.ProtocolHandler.MAPI2.dll
2016-09-20 20:39 - 2016-09-07 06:35 - 00393216 _____ (Microsoft Corporation) C:\windows\SysWOW64\wbemcomn.dll
2016-09-20 20:39 - 2016-09-07 06:35 - 00339968 _____ (Microsoft Corporation) C:\windows\system32\SensorService.dll
2016-09-20 20:39 - 2016-09-07 06:35 - 00254464 _____ (Microsoft Corporation) C:\windows\system32\ExecModelClient.dll
2016-09-20 20:39 - 2016-09-07 06:35 - 00206848 _____ (Microsoft Corporation) C:\windows\system32\SharedStartModelShim.dll
2016-09-20 20:39 - 2016-09-07 06:34 - 00952320 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.PointOfService.dll
2016-09-20 20:39 - 2016-09-07 06:34 - 00727040 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2016-09-20 20:39 - 2016-09-07 06:34 - 00305152 _____ (Microsoft Corporation) C:\windows\system32\edputil.dll
2016-09-20 20:39 - 2016-09-07 06:32 - 00787456 _____ (Microsoft Corporation) C:\windows\system32\cscui.dll
2016-09-20 20:39 - 2016-09-07 06:32 - 00643584 _____ (Microsoft Corporation) C:\windows\system32\wiaservc.dll
2016-09-20 20:39 - 2016-09-07 06:32 - 00581632 _____ (Microsoft Corporation) C:\windows\SysWOW64\apphelp.dll
2016-09-20 20:39 - 2016-09-07 06:32 - 00356864 _____ (Microsoft Corporation) C:\windows\system32\ActivationManager.dll
2016-09-20 20:39 - 2016-09-07 06:32 - 00334848 _____ (Microsoft Corporation) C:\windows\system32\SearchProtocolHost.exe
2016-09-20 20:39 - 2016-09-07 06:32 - 00275968 _____ (Microsoft Corporation) C:\windows\system32\facecredentialprovider.dll
2016-09-20 20:39 - 2016-09-07 06:31 - 00828928 _____ (Microsoft Corporation) C:\windows\system32\Windows.AccountsControl.dll
2016-09-20 20:39 - 2016-09-07 06:31 - 00794624 _____ (Microsoft Corporation) C:\windows\system32\winhttp.dll
2016-09-20 20:39 - 2016-09-07 06:31 - 00753664 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctfuimanager.dll
2016-09-20 20:39 - 2016-09-07 06:31 - 00610304 _____ (Microsoft Corporation) C:\windows\system32\wmdrmsdk.dll
2016-09-20 20:39 - 2016-09-07 06:31 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\AppReadiness.dll
2016-09-20 20:39 - 2016-09-07 06:31 - 00262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2016-09-20 20:39 - 2016-09-07 06:30 - 18676224 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgehtml.dll
2016-09-20 20:39 - 2016-09-07 06:30 - 02127360 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2016-09-20 20:39 - 2016-09-07 06:30 - 01707520 _____ (Microsoft Corporation) C:\windows\system32\msdtctm.dll
2016-09-20 20:39 - 2016-09-07 06:30 - 01001472 _____ (Microsoft Corporation) C:\windows\system32\schedsvc.dll
2016-09-20 20:39 - 2016-09-07 06:30 - 00904704 _____ (Microsoft Corporation) C:\windows\system32\rpcss.dll
2016-09-20 20:39 - 2016-09-07 06:30 - 00870400 _____ (Microsoft Corporation) C:\windows\system32\modernexecserver.dll
2016-09-20 20:39 - 2016-09-07 06:30 - 00784384 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2016-09-20 20:39 - 2016-09-07 06:30 - 00602624 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2016-09-20 20:39 - 2016-09-07 06:29 - 19350016 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2016-09-20 20:39 - 2016-09-07 06:28 - 01752576 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2016-09-20 20:39 - 2016-09-07 06:28 - 00938496 _____ (Microsoft Corporation) C:\windows\system32\SearchIndexer.exe
2016-09-20 20:39 - 2016-09-07 06:28 - 00780800 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2016-09-20 20:39 - 2016-09-07 06:28 - 00381952 _____ (Microsoft Corporation) C:\windows\system32\wuuhext.dll
2016-09-20 20:39 - 2016-09-07 06:28 - 00284160 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappcfg.dll
2016-09-20 20:39 - 2016-09-07 06:27 - 01743872 _____ (Microsoft Corporation) C:\windows\system32\wevtsvc.dll
2016-09-20 20:39 - 2016-09-07 06:27 - 01131520 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Audio.dll
2016-09-20 20:39 - 2016-09-07 06:27 - 00963072 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_health.dll
2016-09-20 20:39 - 2016-09-07 06:27 - 00552960 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppointmentApis.dll
2016-09-20 20:39 - 2016-09-07 06:27 - 00521728 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmdrmsdk.dll
2016-09-20 20:39 - 2016-09-07 06:27 - 00329216 _____ (Microsoft Corporation) C:\windows\SysWOW64\upnphost.dll
2016-09-20 20:39 - 2016-09-07 06:26 - 02050048 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2016-09-20 20:39 - 2016-09-07 06:26 - 01508352 _____ (Microsoft Corporation) C:\windows\SysWOW64\winmsipc.dll
2016-09-20 20:39 - 2016-09-07 06:26 - 01063936 _____ (Microsoft Corporation) C:\windows\system32\comdlg32.dll
2016-09-20 20:39 - 2016-09-07 06:26 - 00854528 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Bluetooth.dll
2016-09-20 20:39 - 2016-09-07 06:26 - 00687616 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2016-09-20 20:39 - 2016-09-07 06:25 - 01526272 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2016-09-20 20:39 - 2016-09-07 06:25 - 01166848 _____ (Microsoft Corporation) C:\windows\SysWOW64\Pimstore.dll
2016-09-20 20:39 - 2016-09-07 06:25 - 00769536 _____ (Microsoft Corporation) C:\windows\SysWOW64\ContactApis.dll
2016-09-20 20:39 - 2016-09-07 06:24 - 03695104 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_47.dll
2016-09-20 20:39 - 2016-09-07 06:24 - 03428864 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.dll
2016-09-20 20:39 - 2016-09-07 06:24 - 01276928 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_fs.dll
2016-09-20 20:39 - 2016-09-07 06:24 - 00785920 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprddm.dll
2016-09-20 20:39 - 2016-09-07 06:23 - 00980480 _____ (Microsoft Corporation) C:\windows\SysWOW64\winipcsecproc.dll
2016-09-20 20:39 - 2016-09-07 06:23 - 00838144 _____ (Microsoft Corporation) C:\windows\system32\uDWM.dll
2016-09-20 20:39 - 2016-09-07 06:23 - 00701952 _____ (Microsoft Corporation) C:\windows\system32\twinapi.dll
2016-09-20 20:39 - 2016-09-07 06:22 - 02582016 _____ (Microsoft Corporation) C:\windows\system32\MFMediaEngine.dll
2016-09-20 20:39 - 2016-09-07 06:21 - 03046400 _____ (Microsoft Corporation) C:\windows\system32\xpsservices.dll
2016-09-20 20:39 - 2016-09-07 06:21 - 01797120 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Immersive.dll
2016-09-20 20:39 - 2016-09-07 06:19 - 03663360 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2016-09-20 20:39 - 2016-09-07 06:19 - 02102272 _____ (Microsoft Corporation) C:\windows\SysWOW64\xpsservices.dll
2016-09-20 20:39 - 2016-09-07 06:19 - 01072128 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Web.Http.dll
2016-09-20 20:39 - 2016-09-07 06:18 - 03577344 _____ (Microsoft Corporation) C:\windows\system32\tquery.dll
2016-09-20 20:39 - 2016-09-07 06:18 - 02876928 _____ (Microsoft Corporation) C:\windows\system32\Wpc.dll
2016-09-20 20:39 - 2016-09-07 06:18 - 00592384 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Web.dll
2016-09-20 20:39 - 2016-09-07 06:18 - 00451072 _____ (Microsoft Corporation) C:\windows\system32\XpsDocumentTargetPrint.dll
2016-09-20 20:39 - 2016-09-07 06:17 - 02679808 _____ (Microsoft Corporation) C:\windows\SysWOW64\netshell.dll
2016-09-20 20:39 - 2016-09-07 06:17 - 02285568 _____ (Microsoft Corporation) C:\windows\system32\WpcWebSync.dll
2016-09-20 20:39 - 2016-09-07 06:16 - 03671040 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2016-09-20 20:39 - 2016-09-07 06:16 - 02911744 _____ (Microsoft Corporation) C:\windows\system32\CertEnroll.dll
2016-09-20 20:39 - 2016-09-07 06:16 - 02746368 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepository.dll
2016-09-20 20:39 - 2016-09-07 06:16 - 02597888 _____ (Microsoft Corporation) C:\windows\system32\mssrch.dll
2016-09-20 20:39 - 2016-09-07 06:16 - 02280960 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2016-09-20 20:39 - 2016-09-07 06:16 - 02217984 _____ (Microsoft Corporation) C:\windows\SysWOW64\Wpc.dll
2016-09-20 20:39 - 2016-09-07 06:16 - 01676800 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll
2016-09-20 20:39 - 2016-09-07 06:16 - 01194496 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.Phone.dll
2016-09-20 20:39 - 2016-09-07 06:16 - 01123328 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsPrint.dll
2016-09-20 20:39 - 2016-09-07 06:16 - 00314880 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsDocumentTargetPrint.dll
2016-09-20 20:39 - 2016-09-07 06:15 - 07831552 _____ (Microsoft Corporation) C:\windows\system32\Chakra.dll
2016-09-20 20:39 - 2016-09-07 06:15 - 05659136 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakra.dll
2016-09-20 20:39 - 2016-09-07 06:15 - 02604032 _____ (Microsoft Corporation) C:\windows\SysWOW64\CertEnroll.dll
2016-09-20 20:39 - 2016-09-07 06:15 - 02055168 _____ (Microsoft Corporation) C:\windows\system32\OpcServices.dll
2016-09-20 20:39 - 2016-09-07 06:15 - 00835072 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Streaming.dll
2016-09-20 20:39 - 2016-09-07 06:15 - 00573440 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserLanguagesCpl.dll
2016-09-20 20:39 - 2016-09-07 06:15 - 00416256 _____ (Microsoft Corporation) C:\windows\SysWOW64\hnetcfg.dll
2016-09-20 20:39 - 2016-09-07 06:14 - 06743040 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2016-09-20 20:39 - 2016-09-07 06:14 - 04895232 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2016-09-20 20:39 - 2016-09-07 06:14 - 01946112 _____ (Microsoft Corporation) C:\windows\system32\dwmcore.dll
2016-09-20 20:39 - 2016-09-07 06:13 - 04171264 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll
2016-09-20 20:39 - 2016-09-07 06:13 - 02874880 _____ (Microsoft Corporation) C:\windows\system32\mmcndmgr.dll
2016-09-20 20:39 - 2016-09-07 06:11 - 03065344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstsc.exe
2016-09-20 20:39 - 2016-08-03 12:36 - 00099680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\pdc.sys
2016-09-20 20:39 - 2016-08-03 12:22 - 00058408 _____ (Microsoft Corporation) C:\windows\system32\SensorsNativeApi.dll
2016-09-20 20:39 - 2016-08-03 11:31 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\wevtutil.exe
2016-09-20 20:39 - 2016-08-03 11:29 - 00954368 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthport.sys
2016-09-20 20:39 - 2016-08-03 11:29 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\Drivers\BTHUSB.SYS
2016-09-20 20:39 - 2016-08-03 11:28 - 00848896 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2016-09-20 20:39 - 2016-07-01 06:38 - 01083656 _____ (Microsoft Corporation) C:\windows\SysWOW64\Taskmgr.exe
2016-09-20 20:39 - 2016-07-01 06:38 - 00256192 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Storage.ApplicationData.dll
2016-09-20 20:39 - 2016-07-01 06:35 - 00498960 _____ (Microsoft Corporation) C:\windows\system32\MFCaptureEngine.dll
2016-09-20 20:39 - 2016-07-01 06:32 - 00106928 _____ (Microsoft Corporation) C:\windows\system32\phoneactivate.exe
2016-09-20 20:39 - 2016-07-01 06:23 - 00032040 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfpmp.exe
2016-09-20 20:39 - 2016-07-01 05:52 - 00087040 _____ (Microsoft Corporation) C:\windows\system32\tzautoupdate.dll
2016-09-20 20:39 - 2016-07-01 05:50 - 00069120 _____ (Microsoft Corporation) C:\windows\system32\WPDShServiceObj.dll
2016-09-20 20:39 - 2016-07-01 05:49 - 00290816 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2016-09-20 20:39 - 2016-07-01 05:46 - 00287744 _____ (Microsoft Corporation) C:\windows\system32\cdpsvc.dll
2016-09-20 20:39 - 2016-07-01 05:44 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\mssphtb.dll
2016-09-20 20:39 - 2016-07-01 05:43 - 00589824 _____ (Microsoft Corporation) C:\windows\system32\PrintDialogs.dll
2016-09-20 20:39 - 2016-07-01 05:42 - 02088960 _____ (Microsoft Corporation) C:\windows\system32\wpdshext.dll
2016-09-20 20:39 - 2016-07-01 05:42 - 01434112 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Editing.dll
2016-09-20 20:39 - 2016-07-01 05:41 - 00299520 _____ (Microsoft Corporation) C:\windows\system32\taskeng.exe
2016-09-20 20:39 - 2016-07-01 05:40 - 02050560 _____ (Microsoft Corporation) C:\windows\system32\PrintDialogs3D.dll
2016-09-20 20:39 - 2016-07-01 05:40 - 00596480 _____ (Microsoft Corporation) C:\windows\system32\Windows.Graphics.Printing.dll
2016-09-20 20:39 - 2016-07-01 05:40 - 00496640 _____ (Microsoft Corporation) C:\windows\system32\webio.dll
2016-09-20 20:39 - 2016-07-01 05:32 - 00268800 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2016-09-20 20:39 - 2016-07-01 05:32 - 00157696 _____ (Microsoft Corporation) C:\windows\SysWOW64\SimCfg.dll
2016-09-20 20:39 - 2016-07-01 05:29 - 00254976 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Picker.dll
2016-09-20 20:39 - 2016-07-01 05:28 - 00578048 _____ (Microsoft Corporation) C:\windows\SysWOW64\wiaaut.dll
2016-09-20 20:39 - 2016-07-01 05:28 - 00442880 _____ (Microsoft Corporation) C:\windows\SysWOW64\efswrt.dll
2016-09-20 20:39 - 2016-07-01 05:21 - 00321536 _____ (Microsoft Corporation) C:\windows\system32\GlobCollationHost.dll
2016-09-20 20:39 - 2016-05-28 07:23 - 00388384 _____ (Microsoft Corporation) C:\windows\SysWOW64\ws2_32.dll
2016-09-20 20:39 - 2016-05-28 07:23 - 00312160 _____ (Microsoft Corporation) C:\windows\SysWOW64\mswsock.dll
2016-09-20 20:39 - 2016-05-28 06:25 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\gpscript.dll
2016-09-20 20:39 - 2016-05-28 06:22 - 00163328 _____ (Microsoft Corporation) C:\windows\system32\tetheringservice.dll
2016-09-20 20:39 - 2016-05-28 06:18 - 00678912 _____ (Microsoft Corporation) C:\windows\system32\gpprefcl.dll
2016-09-20 20:39 - 2016-05-28 06:16 - 00592896 _____ (Microsoft Corporation) C:\windows\system32\AppContracts.dll
2016-09-20 20:39 - 2016-05-28 06:15 - 00535040 _____ (Microsoft Corporation) C:\windows\SysWOW64\rastls.dll
2016-09-20 20:39 - 2016-05-06 06:53 - 00095072 _____ (Microsoft Corporation) C:\windows\system32\Drivers\sdport.sys
2016-09-20 20:39 - 2016-04-23 07:28 - 01542816 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2016-09-20 20:39 - 2016-04-23 07:00 - 00058208 _____ (Microsoft Corporation) C:\windows\system32\dwminit.dll
2016-09-20 20:39 - 2016-04-23 06:34 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2016-09-20 20:39 - 2016-04-23 06:26 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\wpdbusenum.dll
2016-09-20 20:39 - 2016-04-23 06:24 - 00689152 _____ (Microsoft Corporation) C:\windows\system32\ieproxy.dll
2016-09-20 20:39 - 2016-04-23 06:24 - 00181248 _____ (Microsoft Corporation) C:\windows\system32\shacct.dll
2016-09-20 20:39 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieproxy.dll
2016-09-20 20:39 - 2016-04-23 06:18 - 00804352 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2016-09-20 20:39 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2016-09-20 20:38 - 2016-09-07 07:39 - 00845568 _____ (Microsoft Corporation) C:\windows\SysWOW64\MrmCoreR.dll
2016-09-20 20:38 - 2016-09-07 07:39 - 00754664 _____ (Microsoft Corporation) C:\windows\system32\CoreMessaging.dll
2016-09-20 20:38 - 2016-09-07 07:39 - 00620176 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2016-09-20 20:38 - 2016-09-07 07:39 - 00277848 _____ (Microsoft Corporation) C:\windows\system32\Drivers\sdbus.sys
2016-09-20 20:38 - 2016-09-07 07:33 - 01297760 _____ (Microsoft Corporation) C:\windows\system32\LicenseManager.dll
2016-09-20 20:38 - 2016-09-07 07:33 - 00986976 _____ (Microsoft Corporation) C:\windows\SysWOW64\LicenseManager.dll
2016-09-20 20:38 - 2016-09-07 07:27 - 00538632 _____ (Microsoft Corporation) C:\windows\system32\WWanAPI.dll
2016-09-20 20:38 - 2016-09-07 07:27 - 00413536 _____ (Microsoft Corporation) C:\windows\system32\wifitask.exe
2016-09-20 20:38 - 2016-09-07 07:26 - 00586200 _____ (Microsoft Corporation) C:\windows\system32\mf.dll
2016-09-20 20:38 - 2016-09-07 07:24 - 00501600 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetSetupEngine.dll
2016-09-20 20:38 - 2016-09-07 07:24 - 00355672 _____ (Microsoft Corporation) C:\windows\SysWOW64\netcfgx.dll
2016-09-20 20:38 - 2016-09-07 07:22 - 02937384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2016-09-20 20:38 - 2016-09-07 07:22 - 01085728 _____ (Microsoft Corporation) C:\windows\SysWOW64\webservices.dll
2016-09-20 20:38 - 2016-09-07 07:22 - 00604920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2016-09-20 20:38 - 2016-09-07 07:12 - 02195632 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2016-09-20 20:38 - 2016-09-07 07:08 - 00116216 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2016-09-20 20:38 - 2016-09-07 06:52 - 01035776 _____ (Microsoft Corporation) C:\windows\system32\XboxNetApiSvc.dll
2016-09-20 20:38 - 2016-09-07 06:49 - 00649216 _____ (Microsoft Corporation) C:\windows\system32\ngcsvc.dll
2016-09-20 20:38 - 2016-09-07 06:44 - 00069120 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2016-09-20 20:38 - 2016-09-07 06:41 - 00313856 _____ (Microsoft Corporation) C:\windows\system32\DictationManager.dll
2016-09-20 20:38 - 2016-09-07 06:41 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\fwcfg.dll
2016-09-20 20:38 - 2016-09-07 06:41 - 00047616 _____ (Microsoft Corporation) C:\windows\system32\deviceassociation.dll
2016-09-20 20:38 - 2016-09-07 06:40 - 00361472 _____ (Microsoft Corporation) C:\windows\system32\bdechangepin.exe
2016-09-20 20:38 - 2016-09-07 06:40 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\CheckNetIsolation.exe
2016-09-20 20:38 - 2016-09-07 06:39 - 00075264 _____ (Microsoft Corporation) C:\windows\system32\wiarpc.dll
2016-09-20 20:38 - 2016-09-07 06:39 - 00059904 _____ (Microsoft Corporation) C:\windows\SysWOW64\udhisapi.dll
2016-09-20 20:38 - 2016-09-07 06:38 - 00254464 _____ (Microsoft Corporation) C:\windows\system32\prnntfy.dll
2016-09-20 20:38 - 2016-09-07 06:38 - 00206848 _____ (Microsoft Corporation) C:\windows\system32\LegacyNetUXHost.exe
2016-09-20 20:38 - 2016-09-07 06:38 - 00038912 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsmprovhost.exe
2016-09-20 20:38 - 2016-09-07 06:38 - 00035840 _____ (Microsoft Corporation) C:\windows\SysWOW64\upnpcont.exe
2016-09-20 20:38 - 2016-09-07 06:37 - 00435712 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.AllJoyn.dll
2016-09-20 20:38 - 2016-09-07 06:37 - 00145408 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmAuto.dll
2016-09-20 20:38 - 2016-09-07 06:37 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2016-09-20 20:38 - 2016-09-07 06:36 - 06572032 _____ (Microsoft Corporation) C:\windows\system32\wwanmm.dll
2016-09-20 20:38 - 2016-09-07 06:36 - 01568768 _____ (Microsoft Corporation) C:\windows\system32\msdt.exe
2016-09-20 20:38 - 2016-09-07 06:36 - 01051136 _____ (Microsoft Corporation) C:\windows\system32\DiagCpl.dll
2016-09-20 20:38 - 2016-09-07 06:36 - 00489984 _____ (Microsoft Corporation) C:\windows\system32\authfwcfg.dll
2016-09-20 20:38 - 2016-09-07 06:36 - 00319488 _____ (Microsoft Corporation) C:\windows\system32\dot3ui.dll
2016-09-20 20:38 - 2016-09-07 06:36 - 00102912 _____ (Microsoft Corporation) C:\windows\SysWOW64\shsetup.dll
2016-09-20 20:38 - 2016-09-07 06:35 - 00704000 _____ (Microsoft Corporation) C:\windows\system32\CellularAPI.dll
2016-09-20 20:38 - 2016-09-07 06:35 - 00591872 _____ (Microsoft Corporation) C:\windows\system32\SmsRouterSvc.dll
2016-09-20 20:38 - 2016-09-07 06:35 - 00577536 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Wallet.dll
2016-09-20 20:38 - 2016-09-07 06:35 - 00458752 _____ (Microsoft Corporation) C:\windows\system32\PlayToDevice.dll
2016-09-20 20:38 - 2016-09-07 06:35 - 00383488 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2016-09-20 20:38 - 2016-09-07 06:35 - 00256512 _____ (Microsoft Corporation) C:\windows\SysWOW64\unimdm.tsp
2016-09-20 20:38 - 2016-09-07 06:35 - 00119296 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Streaming.ps.dll
2016-09-20 20:38 - 2016-09-07 06:35 - 00052736 _____ (Microsoft Corporation) C:\windows\SysWOW64\vsstrace.dll
2016-09-20 20:38 - 2016-09-07 06:34 - 00371712 _____ (Microsoft Corporation) C:\windows\system32\MDEServer.exe
2016-09-20 20:38 - 2016-09-07 06:34 - 00344064 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Picker.dll
2016-09-20 20:38 - 2016-09-07 06:33 - 00847360 _____ (Microsoft Corporation) C:\windows\system32\netlogon.dll
2016-09-20 20:38 - 2016-09-07 06:33 - 00576000 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-09-20 20:38 - 2016-09-07 06:33 - 00330240 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-20 20:38 - 2016-09-07 06:33 - 00316416 _____ (Microsoft Corporation) C:\windows\system32\sti.dll
2016-09-20 20:38 - 2016-09-07 06:33 - 00290304 _____ (Microsoft Corporation) C:\windows\SysWOW64\WmpDui.dll
2016-09-20 20:38 - 2016-09-07 06:33 - 00238080 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmWmiPl.dll
2016-09-20 20:38 - 2016-09-07 06:32 - 01048576 _____ (Microsoft Corporation) C:\windows\system32\WebcamUi.dll
2016-09-20 20:38 - 2016-09-07 06:32 - 00947200 _____ (Microsoft Corporation) C:\windows\system32\rasgcw.dll
2016-09-20 20:38 - 2016-09-07 06:32 - 00738816 _____ (Microsoft Corporation) C:\windows\system32\SmartCardSimulator.dll
2016-09-20 20:38 - 2016-09-07 06:32 - 00517632 _____ (Microsoft Corporation) C:\windows\system32\winspool.drv
2016-09-20 20:38 - 2016-09-07 06:32 - 00466944 _____ (Microsoft Corporation) C:\windows\system32\wwanconn.dll
2016-09-20 20:38 - 2016-09-07 06:32 - 00444928 _____ (Microsoft Corporation) C:\windows\system32\das.dll
2016-09-20 20:38 - 2016-09-07 06:32 - 00407040 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv.sys
2016-09-20 20:38 - 2016-09-07 06:31 - 01216512 _____ (Microsoft Corporation) C:\windows\system32\netcenter.dll
2016-09-20 20:38 - 2016-09-07 06:31 - 00859136 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.dll
2016-09-20 20:38 - 2016-09-07 06:31 - 00821760 _____ (Microsoft Corporation) C:\windows\system32\MrmIndexer.dll
2016-09-20 20:38 - 2016-09-07 06:31 - 00578560 _____ (Microsoft Corporation) C:\windows\system32\mscms.dll
2016-09-20 20:38 - 2016-09-07 06:31 - 00538112 _____ (Microsoft Corporation) C:\windows\system32\Windows.Cortana.Desktop.dll
2016-09-20 20:38 - 2016-09-07 06:31 - 00435200 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Wallet.dll
2016-09-20 20:38 - 2016-09-07 06:31 - 00335872 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2016-09-20 20:38 - 2016-09-07 06:31 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\offlinelsa.dll
2016-09-20 20:38 - 2016-09-07 06:30 - 02476032 _____ (Microsoft Corporation) C:\windows\system32\MSAJApi.dll
2016-09-20 20:38 - 2016-09-07 06:30 - 00698368 _____ (Microsoft Corporation) C:\windows\system32\PlayToManager.dll
2016-09-20 20:38 - 2016-09-07 06:30 - 00436224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprdim.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 02624512 _____ (Microsoft Corporation) C:\windows\system32\InputService.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 01319424 _____ (Microsoft Corporation) C:\windows\system32\wifinetworkmanager.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 01213440 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 00888320 _____ (Microsoft Corporation) C:\windows\system32\Windows.Networking.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 00841728 _____ (Microsoft Corporation) C:\windows\system32\win32spl.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 00669696 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Sensors.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 00499712 _____ (Microsoft Corporation) C:\windows\SysWOW64\MessagingDataModel2.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 00442368 _____ (Microsoft Corporation) C:\windows\SysWOW64\dlnashext.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 00286208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2016-09-20 20:38 - 2016-09-07 06:29 - 00250880 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 00242688 _____ (Microsoft Corporation) C:\windows\SysWOW64\sti.dll
2016-09-20 20:38 - 2016-09-07 06:29 - 00199680 _____ (Microsoft Corporation) C:\windows\SysWOW64\SyncSettings.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 01291776 _____ (Microsoft Corporation) C:\windows\system32\werconcpl.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 00879616 _____ (Microsoft Corporation) C:\windows\SysWOW64\WebcamUi.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 00846336 _____ (Microsoft Corporation) C:\windows\SysWOW64\rasgcw.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 00755712 _____ (Microsoft Corporation) C:\windows\system32\spoolsv.exe
2016-09-20 20:38 - 2016-09-07 06:28 - 00674816 _____ (Microsoft Corporation) C:\windows\SysWOW64\MiracastReceiver.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 00673280 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 00654336 _____ (Microsoft Corporation) C:\windows\SysWOW64\winipcsecproc_ssp.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 00645120 _____ (Microsoft Corporation) C:\windows\system32\wpnapps.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 00614400 _____ (Microsoft Corporation) C:\windows\SysWOW64\winhttp.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 00400896 _____ (Microsoft Corporation) C:\windows\SysWOW64\winspool.drv
2016-09-20 20:38 - 2016-09-07 06:28 - 00337920 _____ (Microsoft Corporation) C:\windows\SysWOW64\Geolocation.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 00334848 _____ (Microsoft Corporation) C:\windows\SysWOW64\CredProvDataModel.dll
2016-09-20 20:38 - 2016-09-07 06:28 - 00296448 _____ (Microsoft Corporation) C:\windows\SysWOW64\sysdm.cpl
2016-09-20 20:38 - 2016-09-07 06:27 - 01139712 _____ (Microsoft Corporation) C:\windows\SysWOW64\vssapi.dll
2016-09-20 20:38 - 2016-09-07 06:27 - 00708608 _____ (Microsoft Corporation) C:\windows\SysWOW64\CPFilters.dll
2016-09-20 20:38 - 2016-09-07 06:27 - 00549888 _____ (Microsoft Corporation) C:\windows\system32\SearchFolder.dll
2016-09-20 20:38 - 2016-09-07 06:27 - 00230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2016-09-20 20:38 - 2016-09-07 06:26 - 01588224 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2016-09-20 20:38 - 2016-09-07 06:26 - 01497088 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPDMC.exe
2016-09-20 20:38 - 2016-09-07 06:26 - 00638464 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Networking.dll
2016-09-20 20:38 - 2016-09-07 06:26 - 00482816 _____ (Microsoft Corporation) C:\windows\SysWOW64\duser.dll
2016-09-20 20:38 - 2016-09-07 06:26 - 00321024 _____ (Microsoft Corporation) C:\windows\SysWOW64\syncutil.dll
2016-09-20 20:38 - 2016-09-07 06:25 - 06312448 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Search.dll
2016-09-20 20:38 - 2016-09-07 06:25 - 00888832 _____ (Microsoft Corporation) C:\windows\system32\printfilterpipelinesvc.exe
2016-09-20 20:38 - 2016-09-07 06:25 - 00501760 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Sensors.dll
2016-09-20 20:38 - 2016-09-07 06:23 - 01309696 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdc.dll
2016-09-20 20:38 - 2016-09-07 06:23 - 00787456 _____ (Microsoft Corporation) C:\windows\system32\Windows.Web.dll
2016-09-20 20:38 - 2016-09-07 06:22 - 02106368 _____ (Microsoft Corporation) C:\windows\SysWOW64\storagewmi.dll
2016-09-20 20:38 - 2016-09-07 06:21 - 02527232 _____ (Microsoft Corporation) C:\windows\SysWOW64\mispace.dll
2016-09-20 20:38 - 2016-09-07 06:21 - 01410560 _____ (Microsoft Corporation) C:\windows\system32\Windows.Web.Http.dll
2016-09-20 20:38 - 2016-09-07 06:20 - 00870400 _____ (Microsoft Corporation) C:\windows\system32\wpncore.dll
2016-09-20 20:38 - 2016-09-07 06:19 - 01388544 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2016-09-20 20:38 - 2016-09-07 06:19 - 00503296 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSync.dll
2016-09-20 20:38 - 2016-09-07 06:18 - 00450560 _____ (Microsoft Corporation) C:\windows\SysWOW64\SyncController.dll
2016-09-20 20:38 - 2016-09-07 06:17 - 02175488 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentServer.dll
2016-09-20 20:38 - 2016-09-07 06:17 - 01502208 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2016-09-20 20:38 - 2016-09-07 06:16 - 02155008 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2016-09-20 20:38 - 2016-09-07 06:16 - 00232448 _____ (Microsoft Corporation) C:\windows\SysWOW64\notepad.exe
2016-09-20 20:38 - 2016-09-07 06:15 - 02067968 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.dll
2016-09-20 20:38 - 2016-09-07 06:15 - 01626112 _____ (Microsoft Corporation) C:\windows\SysWOW64\dwmcore.dll
2016-09-20 20:38 - 2016-09-07 06:15 - 01448960 _____ (Microsoft Corporation) C:\windows\SysWOW64\dui70.dll
2016-09-20 20:38 - 2016-09-07 06:15 - 01249280 _____ (Microsoft Corporation) C:\windows\SysWOW64\usercpl.dll
2016-09-20 20:38 - 2016-09-07 06:15 - 01121792 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll
2016-09-20 20:38 - 2016-09-07 06:14 - 03351040 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2016-09-20 20:38 - 2016-09-07 06:14 - 02553856 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2016-09-20 20:38 - 2016-09-07 06:14 - 02177024 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmSvc.dll
2016-09-20 20:38 - 2016-09-07 06:14 - 01708032 _____ (Microsoft Corporation) C:\windows\SysWOW64\ActiveSyncProvider.dll
2016-09-20 20:38 - 2016-09-07 06:14 - 01487872 _____ (Microsoft Corporation) C:\windows\system32\SpeechPal.dll
2016-09-20 20:38 - 2016-09-07 06:12 - 02180096 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.StateRepository.dll
2016-09-20 20:38 - 2016-09-07 06:11 - 03053568 _____ (Microsoft Corporation) C:\windows\system32\rdpcore.dll
2016-09-20 20:38 - 2016-09-07 06:10 - 01035776 _____ (Microsoft Corporation) C:\windows\system32\TSWorkspace.dll
2016-09-20 20:38 - 2016-09-05 02:37 - 00445765 _____ C:\windows\system32\ApnDatabase.xml
2016-09-20 20:38 - 2016-08-03 12:19 - 00161632 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2016-09-20 20:38 - 2016-08-03 11:41 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepositoryClient.dll
2016-09-20 20:38 - 2016-08-03 11:41 - 00059904 _____ (Microsoft Corporation) C:\windows\system32\Windows.StateRepositoryBroker.dll
2016-09-20 20:38 - 2016-08-03 11:38 - 00412160 _____ (Microsoft Corporation) C:\windows\system32\MusUpdateHandlers.dll
2016-09-20 20:38 - 2016-08-03 11:36 - 00221696 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2016-09-20 20:38 - 2016-08-03 11:31 - 00359936 _____ (Microsoft Corporation) C:\windows\system32\SensorsApi.dll
2016-09-20 20:38 - 2016-08-03 07:34 - 00084832 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetSetupApi.dll
2016-09-20 20:38 - 2016-08-03 06:57 - 00091648 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdlrecover.exe
2016-09-20 20:38 - 2016-08-03 06:48 - 00051712 _____ (Microsoft Corporation) C:\windows\SysWOW64\wshbth.dll
2016-09-20 20:38 - 2016-08-03 06:44 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.StateRepositoryClient.dll
2016-09-20 20:38 - 2016-08-03 06:44 - 00048128 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.StateRepositoryBroker.dll
2016-09-20 20:38 - 2016-08-03 06:42 - 00080896 _____ (Microsoft Corporation) C:\windows\SysWOW64\BluetoothApis.dll
2016-09-20 20:38 - 2016-08-03 06:37 - 00219136 _____ (Microsoft Corporation) C:\windows\SysWOW64\VEEventDispatcher.dll
2016-09-20 20:38 - 2016-08-03 06:35 - 00286208 _____ (Microsoft Corporation) C:\windows\SysWOW64\SensorsApi.dll
2016-09-20 20:38 - 2016-07-01 06:35 - 00035656 _____ (Microsoft Corporation) C:\windows\system32\mfpmp.exe
2016-09-20 20:38 - 2016-07-01 06:31 - 01848584 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2016-09-20 20:38 - 2016-07-01 06:10 - 00675064 _____ (Microsoft Corporation) C:\windows\SysWOW64\dcomp.dll
2016-09-20 20:38 - 2016-07-01 05:57 - 00059392 _____ (Microsoft Corporation) C:\windows\system32\cdpreference.exe
2016-09-20 20:38 - 2016-07-01 05:55 - 00071168 _____ (Microsoft Corporation) C:\windows\system32\LegacyNetUX.dll
2016-09-20 20:38 - 2016-07-01 05:52 - 00040960 _____ (Microsoft Corporation) C:\windows\system32\msscntrs.dll
2016-09-20 20:38 - 2016-07-01 05:51 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\Windows.Shell.Search.UriHandler.dll
2016-09-20 20:38 - 2016-07-01 05:50 - 00349184 _____ (Microsoft Corporation) C:\windows\system32\ntprint.dll
2016-09-20 20:38 - 2016-07-01 05:48 - 00233984 _____ (Microsoft Corporation) C:\windows\system32\schtasks.exe
2016-09-20 20:38 - 2016-07-01 05:46 - 00341504 _____ (Microsoft Corporation) C:\windows\system32\wmicmiplugin.dll
2016-09-20 20:38 - 2016-07-01 05:45 - 00224256 _____ (Microsoft Corporation) C:\windows\system32\PackageStateRoaming.dll
2016-09-20 20:38 - 2016-07-01 05:45 - 00203776 _____ (Microsoft Corporation) C:\windows\system32\SearchFilterHost.exe
2016-09-20 20:38 - 2016-07-01 05:45 - 00147456 _____ (Microsoft Corporation) C:\windows\system32\mssph.dll
2016-09-20 20:38 - 2016-07-01 05:44 - 00677376 _____ (Microsoft Corporation) C:\windows\system32\wiaaut.dll
2016-09-20 20:38 - 2016-07-01 05:44 - 00451584 _____ (Microsoft Corporation) C:\windows\system32\werui.dll
2016-09-20 20:38 - 2016-07-01 05:42 - 00429056 _____ (Microsoft Corporation) C:\windows\system32\taskcomp.dll
2016-09-20 20:38 - 2016-07-01 05:37 - 00055808 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappprxy.dll
2016-09-20 20:38 - 2016-07-01 05:33 - 00309760 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntprint.dll
2016-09-20 20:38 - 2016-07-01 05:33 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\WPDShServiceObj.dll
2016-09-20 20:38 - 2016-07-01 05:32 - 00096256 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappgnui.dll
2016-09-20 20:38 - 2016-07-01 05:31 - 00238592 _____ (Microsoft Corporation) C:\windows\SysWOW64\eapphost.dll
2016-09-20 20:38 - 2016-07-01 05:31 - 00186880 _____ (Microsoft Corporation) C:\windows\SysWOW64\schtasks.exe
2016-09-20 20:38 - 2016-07-01 05:31 - 00129024 _____ (Microsoft Corporation) C:\windows\SysWOW64\SimAuth.dll
2016-09-20 20:38 - 2016-07-01 05:30 - 00849920 _____ (Microsoft Corporation) C:\windows\system32\samsrv.dll
2016-09-20 20:38 - 2016-07-01 05:30 - 00339968 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll
2016-09-20 20:38 - 2016-07-01 05:30 - 00248320 _____ (Microsoft Corporation) C:\windows\SysWOW64\eapp3hst.dll
2016-09-20 20:38 - 2016-07-01 05:30 - 00217600 _____ (Microsoft Corporation) C:\windows\SysWOW64\dmdskmgr.dll
2016-09-20 20:38 - 2016-07-01 05:29 - 00368128 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanui.dll
2016-09-20 20:38 - 2016-07-01 05:28 - 00197120 _____ (Microsoft Corporation) C:\windows\SysWOW64\netplwiz.dll
2016-09-20 20:38 - 2016-07-01 05:27 - 00330752 _____ (Microsoft Corporation) C:\windows\SysWOW64\winipcfile.dll
2016-09-20 20:38 - 2016-07-01 05:27 - 00216576 _____ (Microsoft Corporation) C:\windows\SysWOW64\PlayToReceiver.dll
2016-09-20 20:38 - 2016-07-01 05:26 - 01171456 _____ (Microsoft Corporation) C:\windows\SysWOW64\netcenter.dll
2016-09-20 20:38 - 2016-07-01 05:26 - 00779264 _____ (Microsoft Corporation) C:\windows\SysWOW64\sbe.dll
2016-09-20 20:38 - 2016-07-01 05:25 - 00356352 _____ (Microsoft Corporation) C:\windows\SysWOW64\taskcomp.dll
2016-09-20 20:38 - 2016-07-01 05:25 - 00240640 _____ (Microsoft Corporation) C:\windows\SysWOW64\taskeng.exe
2016-09-20 20:38 - 2016-07-01 05:24 - 00405504 _____ (Microsoft Corporation) C:\windows\SysWOW64\webio.dll
2016-09-20 20:38 - 2016-07-01 05:23 - 00184832 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingMonitor.dll
2016-09-20 20:38 - 2016-07-01 05:08 - 01976832 _____ (Microsoft Corporation) C:\windows\SysWOW64\wpdshext.dll
2016-09-20 20:38 - 2016-05-28 07:09 - 00170848 _____ (Microsoft Corporation) C:\windows\system32\NetworkUXBroker.exe
2016-09-20 20:38 - 2016-05-28 07:08 - 00258912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ufx01000.sys
2016-09-20 20:38 - 2016-05-28 07:04 - 00111064 _____ (Microsoft Corporation) C:\windows\system32\ncryptsslp.dll
2016-09-20 20:38 - 2016-05-28 06:57 - 01372312 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2016-09-20 20:38 - 2016-05-28 06:35 - 00031744 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dumpsdport.sys
2016-09-20 20:38 - 2016-05-28 06:26 - 00199168 _____ (Microsoft Corporation) C:\windows\system32\InstallAgent.exe
2016-09-20 20:38 - 2016-05-28 06:22 - 00161280 _____ (Microsoft Corporation) C:\windows\SysWOW64\InstallAgent.exe
2016-09-20 20:38 - 2016-05-28 06:22 - 00079872 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2016-09-20 20:38 - 2016-05-28 06:21 - 00550912 _____ (Microsoft Corporation) C:\windows\system32\StoreAgent.dll
2016-09-20 20:38 - 2016-05-28 06:17 - 00415232 _____ (Microsoft Corporation) C:\windows\SysWOW64\StoreAgent.dll
2016-09-20 20:38 - 2016-05-28 06:16 - 00684544 _____ (Microsoft Corporation) C:\windows\system32\StructuredQuery.dll
2016-09-20 20:38 - 2016-05-28 06:14 - 00200192 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Internal.Management.dll
2016-09-20 20:38 - 2016-05-28 06:11 - 00890368 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppxPackaging.dll
2016-09-20 20:38 - 2016-05-28 06:03 - 01185280 _____ (Microsoft Corporation) C:\windows\SysWOW64\LocationFramework.dll
2016-09-20 20:38 - 2016-05-28 06:00 - 00151040 _____ (Microsoft Corporation) C:\windows\SysWOW64\mdmregistration.dll
2016-09-20 20:38 - 2016-05-28 05:53 - 00076800 _____ (Microsoft Corporation) C:\windows\system32\ngcpopkeysrv.dll
2016-09-20 20:38 - 2016-05-06 05:53 - 00351232 _____ (Microsoft Corporation) C:\windows\system32\NgcCtnr.dll
2016-09-20 20:38 - 2016-05-06 05:49 - 00289792 _____ (Microsoft Corporation) C:\windows\system32\NgcCtnrSvc.dll
2016-09-20 20:38 - 2016-05-06 05:44 - 00582656 _____ (Microsoft Corporation) C:\windows\system32\ngccredprov.dll
2016-09-20 20:38 - 2016-05-06 05:43 - 00320000 _____ (Microsoft Corporation) C:\windows\system32\cryptngc.dll
2016-09-20 20:38 - 2016-04-23 07:26 - 00707608 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2016-09-20 20:38 - 2016-04-23 07:24 - 00335712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fastfat.sys
2016-09-20 20:38 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanapi.dll
2016-09-20 20:38 - 2016-04-23 07:07 - 00204048 _____ (Microsoft Corporation) C:\windows\system32\rsaenh.dll
2016-09-20 20:38 - 2016-04-23 07:06 - 00291360 _____ (Microsoft Corporation) C:\windows\system32\wininit.exe
2016-09-20 20:38 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppxAllUserStore.dll
2016-09-20 20:38 - 2016-04-23 07:01 - 00217440 _____ (Microsoft Corporation) C:\windows\system32\AppxAllUserStore.dll
2016-09-20 20:38 - 2016-04-23 07:00 - 01337240 _____ (Microsoft Corporation) C:\windows\SysWOW64\user32.dll
2016-09-20 20:38 - 2016-04-23 06:33 - 00038400 _____ (Microsoft Corporation) C:\windows\system32\ByteCodeGenerator.exe
2016-09-20 20:38 - 2016-04-23 06:27 - 00039424 _____ (Microsoft Corporation) C:\windows\SysWOW64\wfdprov.dll
2016-09-20 20:38 - 2016-04-23 06:24 - 00166400 _____ (Microsoft Corporation) C:\windows\system32\SubscriptionMgr.dll
2016-09-20 20:38 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\windows\SysWOW64\VEDataLayerHelpers.dll
2016-09-20 20:38 - 2016-04-23 06:19 - 00395264 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlansec.dll
2016-09-20 20:38 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\windows\SysWOW64\BrowserSettingSync.dll
2016-09-20 20:38 - 2016-04-23 06:17 - 00337920 _____ (Microsoft Corporation) C:\windows\SysWOW64\wlanmsm.dll
2016-09-20 20:38 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\windows\SysWOW64\NetSetupShim.dll
2016-09-20 20:38 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppXDeploymentClient.dll
2016-09-20 20:37 - 2016-09-07 07:39 - 01030408 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2016-09-20 20:37 - 2016-09-07 07:39 - 00875480 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe
2016-09-20 20:37 - 2016-09-07 07:39 - 00175120 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2016-09-20 20:37 - 2016-09-07 07:37 - 00129888 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2016-09-20 20:37 - 2016-09-07 07:36 - 00405856 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2016-09-20 20:37 - 2016-09-07 07:34 - 02587696 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2016-09-20 20:37 - 2016-09-07 07:26 - 00131424 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ufxsynopsys.sys
2016-09-20 20:37 - 2016-09-07 07:25 - 01447776 _____ (Microsoft Corporation) C:\windows\system32\webservices.dll
2016-09-20 20:37 - 2016-09-07 07:25 - 01322248 _____ (Microsoft Corporation) C:\windows\system32\ole32.dll
2016-09-20 20:37 - 2016-09-07 07:24 - 03693064 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2016-09-20 20:37 - 2016-09-07 07:24 - 00808288 _____ (Microsoft Corporation) C:\windows\system32\WWAHost.exe
2016-09-20 20:37 - 2016-09-07 07:23 - 22561256 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2016-09-20 20:37 - 2016-09-07 07:23 - 06605544 _____ (Microsoft Corporation) C:\windows\system32\windows.storage.dll
2016-09-20 20:37 - 2016-09-07 07:23 - 06536248 _____ (Microsoft Corporation) C:\windows\system32\sppsvc.exe
2016-09-20 20:37 - 2016-09-07 07:21 - 00465760 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncHost.exe
2016-09-20 20:37 - 2016-09-07 07:20 - 01355336 _____ (Microsoft Corporation) C:\windows\SysWOW64\propsys.dll
2016-09-20 20:37 - 2016-09-07 07:13 - 01865584 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d9.dll
2016-09-20 20:37 - 2016-09-07 07:12 - 01522152 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2016-09-20 20:37 - 2016-09-07 07:11 - 00057912 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2016-09-20 20:37 - 2016-09-07 07:07 - 01951848 _____ (Microsoft Corporation) C:\windows\SysWOW64\hevcdecoder.dll
2016-09-20 20:37 - 2016-09-07 06:46 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\odbcconf.dll
2016-09-20 20:37 - 2016-09-07 06:45 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\spcompat.dll
2016-09-20 20:37 - 2016-09-07 06:45 - 00037376 _____ (Microsoft Corporation) C:\windows\system32\cmintegrator.dll
2016-09-20 20:37 - 2016-09-07 06:44 - 00134656 _____ (Microsoft Corporation) C:\windows\system32\wificonnapi.dll
2016-09-20 20:37 - 2016-09-07 06:44 - 00014848 _____ (Microsoft Corporation) C:\windows\system32\IconCodecService.dll
2016-09-20 20:37 - 2016-09-07 06:43 - 00584704 _____ (Microsoft Corporation) C:\windows\system32\UIRibbonRes.dll
2016-09-20 20:37 - 2016-09-07 06:43 - 00037376 _____ (Microsoft Corporation) C:\windows\system32\wsmprovhost.exe
2016-09-20 20:37 - 2016-09-07 06:43 - 00015872 _____ (Microsoft Corporation) C:\windows\system32\Drivers\MTConfig.sys
2016-09-20 20:37 - 2016-09-07 06:42 - 00163328 _____ (Microsoft Corporation) C:\windows\system32\WsmAuto.dll
2016-09-20 20:37 - 2016-09-07 06:42 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\WcnApi.dll
2016-09-20 20:37 - 2016-09-07 06:42 - 00117760 _____ (Microsoft Corporation) C:\windows\system32\dafWCN.dll
2016-09-20 20:37 - 2016-09-07 06:42 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\fdWCN.dll
2016-09-20 20:37 - 2016-09-07 06:42 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\MosHostClient.dll
2016-09-20 20:37 - 2016-09-07 06:42 - 00031744 _____ (Microsoft Corporation) C:\windows\system32\WsmAgent.dll
2016-09-20 20:37 - 2016-09-07 06:41 - 00125952 _____ (Microsoft Corporation) C:\windows\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-20 20:37 - 2016-09-07 06:41 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\OnDemandConnRouteHelper.dll
2016-09-20 20:37 - 2016-09-07 06:41 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\odbcconf.dll
2016-09-20 20:37 - 2016-09-07 06:40 - 00471040 _____ (Microsoft Corporation) C:\windows\system32\wbemcomn.dll
2016-09-20 20:37 - 2016-09-07 06:40 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\AppCapture.dll
2016-09-20 20:37 - 2016-09-07 06:39 - 00379392 _____ (Microsoft Corporation) C:\windows\system32\usocore.dll
2016-09-20 20:37 - 2016-09-07 06:39 - 00096256 _____ (Microsoft Corporation) C:\windows\SysWOW64\VoipRT.dll
2016-09-20 20:37 - 2016-09-07 06:39 - 00053760 _____ (Microsoft Corporation)
|