Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Plagegeister aller Art und deren Bekämpfung (https://www.trojaner-board.de/plagegeister-aller-art-deren-bekaempfung/)
-   -   defogger disabel log (https://www.trojaner-board.de/160979-defogger-disabel-log.html)

krautsand 20.11.2014 13:50

defogger disabel log
 
Hallo Zusammen,

um als Hilfesuchender Informationen über meinen Rechner zusammenzustellen werde ich zuerst aufgefordert, den defogger herunterzuladen.

Die Istallation des Defoggers funktioniert zwar, aber nach dem Finish setzt sich die Installation erneut in Gang.

Ich verstehe die Anweisung "poste bitte die defogger_disable Log von deinem Desktop." nicht. Was soll ich da tun?

Vielleicht kann mir das jemand verständlich erklären.

Beste Grüße

krautsand

schrauber 20.11.2014 13:55

Hi,

Defogger brauchst nicht unbedingt, wichtig ist das hier:

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)


krautsand 20.11.2014 15:28

Hallo Schrauber,

danke für die Hilfe.

Hier das Ergebnis:
FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-11-2014
Ran by hannibla34 (administrator) on WO on 20-11-2014 15:15:39
Running from C:\Users\hannibla34\Downloads
Loaded Profile: hannibla34 (Available profiles: hannibla34)
Platform: Windows 8.1 (X64) OS Language: Englisch (Vereinigte Staaten)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
(SurfRight B.V.) C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\SysWOW64\AsHookDevice.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
() C:\Program Files\Everything\Everything.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUSTeK) C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_189.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_189.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
(Microsoft Corporation) C:\Windows\System32\wermgr.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7199448 2013-09-05] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-30] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] ()
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5595336 2014-10-01] (ESET)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3216032 2014-01-09] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Run: [Advanced SystemCare 7] => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2281248 2014-08-22] (IObit)
HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-23] (Piriform Ltd)
Startup: C:\Users\hannibla34\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk
ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe ()
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-903397656-3433550281-814490945-1002\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\.DEFAULT -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> DefaultScope {F7FA0E18-88F4-47FD-97EF-19FE83C440CC} URL = https://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> {F7FA0E18-88F4-47FD-97EF-19FE83C440CC} URL = https://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292
FF Homepage: about:home
FF Keyword.URL: https://de.search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=198484&p=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-903397656-3433550281-814490945-1002: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\duckduckgo.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\dudende-suche.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\google-maps.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\metager.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\wikipedia-en-ssl.xml
FF Extension: Avira Browser Safety - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\abs@avira.com [2014-11-20]
FF Extension: FoxyProxy Standard - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\foxyproxy@eric.h.jung [2014-09-06]
FF Extension: EPUBReader - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F} [2014-09-05]
FF Extension: DownloadHelper - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-06]
FF Extension: Adblock Plus Pop-up Addon - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\adblockpopups@jessehakanen.net.xpi [2014-09-05]
FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\elemhidehelper@adblockplus.org.xpi [2014-09-05]
FF Extension: SQLite Manager - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\SQLiteManager@mrinalkant.blogspot.com.xpi [2014-11-17]
FF Extension: Adblock Plus Filter Uploader - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\uploader@adblockfilters.mozdev.org.xpi [2014-09-05]
FF Extension: ImTranslator - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2014-09-06]
FF Extension: Adblock Plus - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-05]
FF Extension: Adblock Edge - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2014-09-05]

Chrome:
=======
CHR Profile: C:\Users\hannibla34\AppData\Local\Google\Chrome\User Data\Default

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [893216 2014-08-18] (IObit)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2013-08-28] ()
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 Device Handle Service; C:\Windows\SysWOW64\AsHookDevice.exe [207160 2013-08-08] ()
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1349576 2014-10-01] (ESET)
R2 Everything; C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] () [File not signed]
R2 hmpalertsvc; C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe [1876816 2014-06-09] (SurfRight B.V.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-19] (Intel Corporation)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2282272 2014-08-19] (IObit)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-10-01] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [968504 2014-10-01] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
S3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [821096 2014-08-13] (Mister Group)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 A2DDA; C:\EEK\RUN\a2ddax64.sys [26176 2013-08-19] (Emsisoft GmbH)
R3 AiChargerDT; C:\Windows\SysWow64\drivers\AiChargerDT.sys [14880 2012-10-18] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 cleanhlp; C:\EEK\Run\cleanhlp64.sys [57024 2014-05-20] (Emsisoft GmbH)
S3 cpuz136; C:\Program Files (x86)\CPUID\PC Wizard 2013\pcwiz_x64.sys [25320 2013-08-24] (CPUID)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [469264 2013-06-26] (Intel Corporation)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-09-22] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [241368 2014-09-22] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [169280 2014-09-22] (ESET)
R2 epfw; C:\Windows\system32\DRIVERS\epfw.sys [222280 2014-09-22] (ESET)
R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [44632 2014-09-22] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [63160 2014-09-22] (ESET)
R2 hmpalert; C:\Windows\System32\drivers\hmpalert.sys [93144 2014-06-09] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-10-01] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-20] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-10-01] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-19] (Intel Corporation)
S3 MEMSWEEP2; C:\Windows\system32\2284.tmp [6144 2009-06-18] (Sophos Plc) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-20 15:15 - 2014-11-20 15:15 - 00019324 _____ () C:\Users\hannibla34\Downloads\FRST.txt
2014-11-20 15:13 - 2014-11-20 15:15 - 00000000 ____D () C:\FRST
2014-11-20 15:13 - 2014-11-20 15:13 - 02117120 _____ (Farbar) C:\Users\hannibla34\Downloads\FRST64.exe
2014-11-20 14:15 - 2014-11-20 14:15 - 20897443 _____ () C:\Users\hannibla34\Downloads\b j 480_300_jL2pT-G595-.mp4
2014-11-20 13:20 - 2014-11-20 13:20 - 00000482 _____ () C:\Users\hannibla34\Desktop\defogger_disable.log
2014-11-20 00:11 - 2014-11-20 00:23 - 00000482 _____ () C:\Users\hannibla34\Downloads\defogger_disable.log
2014-11-20 00:11 - 2014-11-20 00:11 - 00000000 _____ () C:\Users\hannibla34\defogger_reenable
2014-11-20 00:09 - 2014-11-20 00:09 - 00050477 _____ () C:\Users\hannibla34\Downloads\Defogger.exe
2014-11-19 18:56 - 2014-10-30 12:25 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-19 18:55 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 18:55 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 18:55 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 18:55 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-19 18:05 - 2014-11-19 18:05 - 02347384 _____ (ESET) C:\Users\hannibla34\Downloads\esetsmartinstaller_deu.exe
2014-11-19 17:15 - 2014-11-19 17:15 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\ESET
2014-11-19 17:15 - 2014-11-19 17:15 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\ESET
2014-11-19 17:13 - 2014-11-19 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2014-11-19 17:13 - 2014-11-19 17:13 - 00000000 ____D () C:\ProgramData\ESET
2014-11-19 17:13 - 2014-11-19 17:13 - 00000000 ____D () C:\Program Files\ESET
2014-11-19 17:06 - 2014-11-19 17:06 - 01660616 _____ (ESET) C:\Users\hannibla34\Downloads\eset_smart_security_live_installer_.exe
2014-11-19 17:06 - 2014-11-19 17:06 - 01132704 _____ (ESET spol. s r.o.) C:\Users\hannibla34\Downloads\eset_av_remover.exe
2014-11-19 16:36 - 2014-11-19 16:36 - 00182422 _____ () C:\Users\hannibla34\Downloads\19.11.2014 OTL.Txt
2014-11-19 16:19 - 2014-11-19 16:19 - 00001400 _____ () C:\Users\hannibla34\Downloads\Eset Online Scan vom 19.11.2014
2014-11-18 20:32 - 2014-11-18 20:32 - 00000000 __SHD () C:\Users\hannibla34\AppData\Local\EmieBrowserModeList
2014-11-18 18:33 - 2014-11-18 18:33 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-11-18 13:09 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\2284.tmp
2014-11-18 13:06 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\ADF9.tmp
2014-11-17 16:27 - 2014-11-17 16:27 - 00178666 _____ () C:\Users\hannibla34\Downloads\OTL 17.11.2014.txt
2014-11-17 00:57 - 2014-11-19 19:25 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Solvusoft
2014-11-16 23:40 - 2014-11-20 13:41 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-16 23:40 - 2014-11-16 23:40 - 00001121 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-16 23:40 - 2014-11-16 23:40 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-11-16 23:40 - 2014-11-16 23:40 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-16 23:40 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-16 23:40 - 2014-10-01 11:11 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-16 23:40 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-16 23:39 - 2014-11-16 23:39 - 01125200 _____ () C:\Users\hannibla34\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer.exe
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\ProgramData\XDMessagingv4
2014-11-16 18:26 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\CC15.tmp
2014-11-16 18:23 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\6385.tmp
2014-11-16 18:22 - 2014-11-16 18:22 - 01125200 _____ () C:\Users\hannibla34\Downloads\Sophos Anti Rootkit - CHIP-Installer.exe
2014-11-16 18:22 - 2014-11-16 18:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2014-11-16 18:22 - 2014-11-16 18:22 - 00000000 ____D () C:\Program Files (x86)\Sophos
2014-11-15 15:32 - 2014-11-15 15:45 - 123159913 _____ () C:\Users\hannibla34\Downloads\cpl 3751316.flv
2014-11-15 14:42 - 2014-11-15 14:43 - 48967526 _____ () C:\Users\hannibla34\Downloads\cumgur my neigbour 480_794_qH65S-G795-.mp4
2014-11-13 18:03 - 2014-11-13 18:05 - 109097010 _____ () C:\Users\hannibla34\Downloads\Audiofiles_DIE_ZEIT_47.zip
2014-11-12 17:52 - 2014-10-31 06:28 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 17:52 - 2014-10-31 04:42 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 17:52 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-11-12 17:52 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 17:52 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 17:52 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-11-12 17:52 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-11-12 17:52 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-11-12 17:52 - 2014-10-08 06:32 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-11-12 17:52 - 2014-10-08 06:19 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-11-12 17:52 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2014-11-12 17:52 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2014-11-12 17:52 - 2014-09-27 04:38 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 17:52 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2014-11-12 17:52 - 2014-09-27 04:17 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 17:52 - 2014-09-22 05:38 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2014-11-12 17:52 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2014-11-12 17:52 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2014-11-12 17:52 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2014-11-12 17:52 - 2014-09-19 01:16 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2014-11-12 17:52 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2014-11-12 17:52 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2014-11-12 17:51 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-11-12 17:51 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-11-12 17:51 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-11-12 17:51 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-11-12 17:51 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-11-12 17:51 - 2014-10-31 06:06 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 17:51 - 2014-10-31 06:05 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 17:51 - 2014-10-31 06:05 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-11-12 17:51 - 2014-10-31 06:04 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 17:51 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 17:51 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 17:51 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-11-12 17:51 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 17:51 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2014-11-12 17:51 - 2014-10-31 05:51 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-11-12 17:51 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 17:51 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 17:51 - 2014-10-31 05:50 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 17:51 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 17:51 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-11-12 17:51 - 2014-10-31 05:38 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 17:51 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 17:51 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-11-12 17:51 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-11-12 17:51 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-11-12 17:51 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 17:51 - 2014-10-31 05:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 17:51 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-11-12 17:51 - 2014-10-31 05:23 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-11-12 17:51 - 2014-10-31 05:21 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 17:51 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-11-12 17:51 - 2014-10-31 05:15 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-11-12 17:51 - 2014-10-31 05:08 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-11-12 17:51 - 2014-10-31 05:06 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 17:51 - 2014-10-31 05:05 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 17:51 - 2014-10-31 05:05 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 17:51 - 2014-10-31 05:03 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 17:51 - 2014-10-31 04:59 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 17:51 - 2014-10-31 04:45 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 17:51 - 2014-10-31 04:44 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2014-11-12 17:51 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-11-12 17:51 - 2014-10-31 04:32 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 17:51 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-11-12 17:51 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-11-12 17:51 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-11-12 17:51 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-11-12 17:51 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-11-12 17:51 - 2014-10-31 04:24 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 17:51 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-11-12 17:51 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 17:51 - 2014-10-31 04:23 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-11-12 17:51 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 17:51 - 2014-10-31 04:22 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 17:51 - 2014-10-31 04:20 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 17:51 - 2014-10-31 04:18 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 17:51 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 17:51 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 17:51 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-11-12 17:51 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 17:51 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2014-11-12 17:51 - 2014-10-31 04:12 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-11-12 17:51 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 17:51 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 17:51 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-11-12 17:51 - 2014-10-31 04:02 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 17:51 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-11-12 17:51 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 17:51 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-11-12 17:51 - 2014-10-31 03:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 17:51 - 2014-10-31 03:51 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-11-12 17:51 - 2014-10-31 03:50 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 17:51 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-11-12 17:51 - 2014-10-31 03:46 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 17:51 - 2014-10-31 03:46 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-11-12 17:51 - 2014-10-31 03:42 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-11-12 17:51 - 2014-10-31 03:40 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 17:51 - 2014-10-31 03:40 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 17:51 - 2014-10-31 03:39 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 17:51 - 2014-10-31 03:30 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 17:51 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2014-11-12 17:51 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-11-12 17:51 - 2014-10-31 03:17 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 17:51 - 2014-10-31 03:13 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 17:51 - 2014-10-31 03:11 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 17:51 - 2014-10-18 10:55 - 00055776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-11-12 17:51 - 2014-10-18 09:09 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-11-12 17:51 - 2014-10-18 09:09 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-11-12 17:51 - 2014-10-18 08:25 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-11-12 17:51 - 2014-10-18 07:50 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll
2014-11-12 17:51 - 2014-10-18 07:38 - 03557376 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-11-12 17:51 - 2014-10-18 07:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-11-12 17:51 - 2014-10-18 07:26 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-11-12 17:51 - 2014-10-18 07:23 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2014-11-12 17:51 - 2014-10-18 07:23 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-11-12 17:51 - 2014-10-18 07:21 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-11-12 17:51 - 2014-10-18 07:20 - 01714176 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-11-12 17:51 - 2014-10-18 07:14 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-11-12 17:51 - 2014-10-18 07:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-11-12 17:51 - 2014-10-18 07:12 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-11-12 17:51 - 2014-10-18 07:11 - 00723968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-11-12 17:51 - 2014-10-17 08:01 - 00789184 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 17:51 - 2014-10-17 07:58 - 00602768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-12 17:51 - 2014-10-10 02:58 - 00177472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 17:51 - 2014-10-10 02:58 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-11-12 17:51 - 2014-10-10 02:44 - 00563976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-11-12 17:51 - 2014-10-08 08:37 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 17:51 - 2014-10-08 08:37 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 17:51 - 2014-10-08 08:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-11-12 17:51 - 2014-10-08 08:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2014-11-12 17:51 - 2014-10-08 07:56 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2014-11-12 17:51 - 2014-10-08 07:51 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 17:51 - 2014-10-08 07:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 17:51 - 2014-10-08 07:18 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2014-11-12 17:51 - 2014-10-08 07:17 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 17:51 - 2014-10-08 06:23 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-11-12 17:50 - 2014-11-05 00:38 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-12 17:50 - 2014-11-04 01:10 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-12 17:50 - 2014-10-31 05:53 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-11-12 17:50 - 2014-10-31 05:49 - 00537088 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-12 17:50 - 2014-10-31 05:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-11-12 17:50 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 17:50 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 17:50 - 2014-10-07 07:28 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 17:50 - 2014-10-07 07:27 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 17:50 - 2014-10-07 07:27 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 17:50 - 2014-10-07 07:27 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2014-11-12 17:50 - 2014-10-07 04:34 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 17:50 - 2014-10-07 04:34 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 17:50 - 2014-10-07 04:30 - 04182016 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 17:50 - 2014-10-07 02:54 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2014-11-12 17:50 - 2014-10-07 02:46 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 17:50 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-11-12 17:50 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-11-12 17:50 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-11-12 17:50 - 2014-09-07 23:08 - 00389176 _____ () C:\Windows\system32\ApnDatabase.xml
2014-11-12 17:50 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-11-12 17:50 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-11-12 17:50 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2014-11-12 17:50 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2014-11-12 17:50 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2014-11-12 17:50 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2014-11-12 17:50 - 2014-08-31 01:17 - 00148800 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2014-11-12 17:50 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-11-12 17:50 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-11-12 17:50 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2014-11-12 17:50 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2014-11-12 17:50 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2014-11-12 17:50 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll
2014-11-12 17:50 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2014-11-12 17:50 - 2014-08-28 03:55 - 07484224 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-11-12 17:50 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-11-12 17:50 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-11-12 17:50 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 17:50 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2014-11-12 17:50 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2014-11-12 17:50 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 17:50 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2014-11-12 17:50 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2014-11-12 17:50 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2014-11-12 17:49 - 2014-10-07 07:27 - 00108432 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 17:49 - 2014-10-07 04:33 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 13:15 - 2014-11-12 13:16 - 141165145 _____ () C:\Users\hannibla34\Downloads\Rot-rot-grün - heute Erfurt, morgenBerlin 141023_phx_runde_414k_p20v9.mp4
2014-11-12 13:11 - 2014-11-12 13:13 - 141184159 _____ () C:\Users\hannibla34\Downloads\Steuertricks in Luxemburg -Junkers unter Druck 141111_phx_runde_414k_p20v9.mp4
2014-11-12 12:54 - 2014-11-12 12:54 - 64529579 _____ () C:\Users\hannibla34\Downloads\sulazodechaval polih fat cock 480_800_cu70g-G295-.mp4
2014-11-12 12:43 - 2014-11-12 12:48 - 270976369 _____ () C:\Users\hannibla34\Downloads\lazing on a sunny afternoon 480_800_s5bYM-G883-.mp4
2014-11-11 16:21 - 2014-11-15 14:18 - 00000000 ____D () C:\Users\hannibla34\Downloads\Sicherheit im Internet- Onlinekurs des hasso-Plattner-Instituts
2014-11-10 17:24 - 2014-11-10 17:24 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\WindowsAppBoss
2014-11-10 16:40 - 2014-11-10 16:40 - 00988339 _____ () C:\Users\hannibla34\Downloads\Everything-1.3.4.686.x64.Multilingual-Setup.exe
2014-11-10 16:30 - 2014-11-17 17:57 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Everything
2014-11-10 16:30 - 2014-11-17 16:57 - 00000000 ____D () C:\Program Files\Everything
2014-11-09 13:45 - 2014-11-15 23:25 - 00002782 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-08 21:08 - 2014-11-08 21:11 - 168401304 _____ () C:\Users\hannibla34\Downloads\Die Würde ist antastbar.wma
2014-11-08 15:23 - 2014-11-18 17:21 - 00072640 _____ () C:\Users\hannibla34\Documents\Malware.odt
2014-11-08 00:43 - 2014-11-08 00:48 - 212653971 _____ () C:\Users\hannibla34\Downloads\Suizid im alter 141106_sendung_suizid_scobel_446k_p20v11.mp4
2014-11-08 00:43 - 2014-11-08 00:47 - 218337076 _____ () C:\Users\hannibla34\Downloads\Bewusst essen Scobel 141023_ganze_sendung_scobel_446k_p20v11.mp4
2014-11-07 18:43 - 2014-11-07 18:43 - 14592501 _____ () C:\Users\hannibla34\Downloads\s und f 480_800_hmxUZ-G195-.mp4
2014-11-07 18:32 - 2014-11-07 18:38 - 00000000 ____D () C:\Users\hannibla34\Downloads\Tarifverträge für Tiermedizinishce Fachangestellte
2014-11-06 17:59 - 2014-11-06 18:01 - 89338442 _____ () C:\Users\hannibla34\Downloads\suck 480_800_psNUx-G795-.mp4
2014-11-05 18:54 - 2014-11-05 19:00 - 42620327 _____ () C:\Users\hannibla34\Downloads\paki cpl 3661462.flv
2014-11-02 21:37 - 2014-11-02 21:41 - 234021342 _____ () C:\Users\hannibla34\Downloads\cagli 76 cuba ric o 480_800_nkJaB-S477-.mp4
2014-11-02 21:36 - 2014-11-02 21:38 - 66318603 _____ () C:\Users\hannibla34\Downloads\cagli76 cuban straight having sex inrented apt - it hurts 480_600_RXc3t-S570-.mp4
2014-10-30 18:06 - 2014-10-30 18:10 - 152402358 _____ () C:\Users\hannibla34\Downloads\evergreenguys hot couple sunday sex 480_688_ntsxa-G794-.mp4
2014-10-30 18:01 - 2014-10-30 18:03 - 103579104 _____ () C:\Users\hannibla34\Downloads\chadluvs suxking 480_800_x0jhz-G694-.mp4
2014-10-30 17:45 - 2014-10-30 17:45 - 15769557 _____ () C:\Users\hannibla34\Downloads\raisei homecumming 480_800_Gmk58-G594-.mp4
2014-10-30 17:36 - 2014-10-30 17:36 - 17041145 _____ () C:\Users\hannibla34\Downloads\lovemusicnudefreedom 480_567_DIONb-G594-.mp4
2014-10-30 16:40 - 2014-11-08 00:25 - 00000000 ____D () C:\Users\hannibla34\Documents\My Digital Editions
2014-10-29 13:37 - 2014-10-29 13:40 - 182023917 _____ () C:\Users\hannibla34\Downloads\Edelschimmel und Scheibletten - die Wissenschaft vom Käse wdr_fernsehen_quarks_und_co_20140909.mp4
2014-10-29 13:35 - 2014-10-29 13:38 - 181354002 _____ () C:\Users\hannibla34\Downloads\Die letzte Geschichte des Urang-Utan wdr_fernsehen_quarks_und_co_20140916.mp4
2014-10-29 13:32 - 2014-10-29 13:37 - 203582457 _____ () C:\Users\hannibla34\Downloads\Alles unverträglich - wenn Lebensmittel krank machen wdr_fernsehen_quarks_und_co_20140923.mp4
2014-10-29 13:31 - 2014-10-29 13:35 - 182470424 _____ () C:\Users\hannibla34\Downloads\Geld regiert - regieren wir mit. wdr_fernsehen_quarks_und_co_20140930.mp4
2014-10-29 13:28 - 2014-10-29 13:32 - 171505679 _____ () C:\Users\hannibla34\Downloads\Heimliche Herrscher - die wundersame Welt der Pilze wdr_fernsehen_quarks_und_co_20141007.mp4
2014-10-29 13:27 - 2014-10-29 13:31 - 170323950 _____ () C:\Users\hannibla34\Downloads\Die Eifel wdr_fernsehen_quarks_und_co_20141028.mp4
2014-10-28 19:04 - 2014-10-28 19:05 - 00000000 ____D () C:\Users\hannibla34\Downloads\Das Internet  - Netz der Neze
2014-10-28 13:29 - 2014-10-28 13:31 - 169488764 _____ () C:\Users\hannibla34\Downloads\Doku_Unser_T_glich_Tier_-_Morden_f_r_die_Rendite_Dokumentatin_Deutsch_2014.mp4
2014-10-26 15:03 - 2014-10-26 15:04 - 58325413 _____ () C:\Users\hannibla34\Downloads\bertus 82 sucking a friend 480_800_c4iDW-C794-.mp4
2014-10-26 14:53 - 2014-10-26 14:56 - 179107001 _____ () C:\Users\hannibla34\Downloads\das ich sexy slave 480_800_AhElW-G394-.mp4
2014-10-22 17:26 - 2014-10-22 17:26 - 00000000 ____D () C:\ProgramData\Sun
2014-10-22 17:25 - 2014-10-22 17:26 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-22 17:08 - 2014-10-22 17:08 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Tracker Software
2014-10-21 15:56 - 2014-10-28 17:55 - 00000258 _____ () C:\Windows\Tasks\ASC7_SkipUac_hannibla34.job
2014-10-21 15:56 - 2014-10-26 18:55 - 00002370 _____ () C:\Windows\System32\Tasks\ASC7_SkipUac_hannibla34
2014-10-21 13:24 - 2014-10-21 13:30 - 227014672 _____ () C:\Users\hannibla34\Downloads\Die_Wasserkunst_von_Wilhelmshö_he.mp4

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-20 15:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2014-11-20 14:39 - 2014-08-05 11:28 - 01357933 ____N () C:\Windows\WindowsUpdate.log
2014-11-20 14:15 - 2014-05-16 04:10 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\vlc
2014-11-20 13:53 - 2014-06-09 00:40 - 00000000 ____D () C:\Windows\CryptoGuard
2014-11-20 13:02 - 2014-10-16 17:26 - 00003594 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-903397656-3433550281-814490945-1002
2014-11-20 13:02 - 2014-05-14 21:43 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{08EFB189-B037-4AB9-A7C2-4ACFAED22B82}
2014-11-20 00:56 - 2014-05-19 03:05 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\TV-Browser
2014-11-20 00:11 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34
2014-11-19 23:41 - 2014-01-15 13:59 - 00000025 ___SH () C:\Windows\SysWOW64\ReadTag.ini
2014-11-19 23:41 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-19 18:56 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-11-19 17:58 - 2014-05-16 03:59 - 00000000 ___RD () C:\Users\hannibla34\Documents\Eigene Dateien
2014-11-19 17:08 - 2014-05-15 02:19 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-11-19 17:07 - 2014-05-15 02:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-11-19 17:07 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-11-17 16:44 - 2014-06-14 18:34 - 03220480 ___SH () C:\Users\hannibla34\Downloads\Thumbs.db
2014-11-17 16:03 - 2014-01-09 10:06 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-17 16:03 - 2013-09-13 21:22 - 00763218 _____ () C:\Windows\system32\perfh007.dat
2014-11-17 16:03 - 2013-09-13 21:22 - 00159364 _____ () C:\Windows\system32\perfc007.dat
2014-11-17 15:14 - 2014-05-20 22:23 - 00000000 ____D () C:\EEK
2014-11-17 15:12 - 2013-08-22 15:44 - 00481072 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-17 15:11 - 2013-08-22 20:11 - 00000000 ____D () C:\Windows\SKB
2014-11-17 15:11 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-11-17 00:47 - 2014-01-15 13:55 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS
2014-11-17 00:47 - 2014-01-09 10:02 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-16 15:04 - 2014-05-20 22:25 - 00000100 _____ () C:\index.ini
2014-11-13 22:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-11-12 17:57 - 2014-07-09 20:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-11-12 17:55 - 2014-05-15 01:57 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-12 17:52 - 2014-05-15 01:57 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-12 11:52 - 2014-05-14 21:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-10 17:32 - 2014-10-19 23:30 - 00015223 _____ () C:\Users\hannibla34\Documents\nachforschen.odt
2014-11-10 17:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2014-11-10 17:08 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Packages
2014-11-10 17:01 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\ASUS
2014-11-10 16:25 - 2014-05-14 21:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-09 23:49 - 2014-08-05 11:40 - 00000000 ____D () C:\ProgramData\Package Cache
2014-11-05 19:08 - 2014-05-17 07:22 - 00002228 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-10-30 01:55 - 2013-08-22 16:38 - 00714208 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-10-30 01:55 - 2013-08-22 16:38 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-29 18:30 - 2014-09-06 17:58 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Adobe
2014-10-25 11:12 - 2014-05-15 03:11 - 00000841 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-10-25 11:12 - 2014-05-15 03:11 - 00000000 ____D () C:\Program Files\CCleaner
2014-10-23 15:53 - 2014-05-19 03:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-10-22 17:26 - 2014-05-19 03:04 - 00000000 ____D () C:\Program Files\Java
2014-10-22 17:25 - 2014-05-19 03:04 - 00320936 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-10-22 17:25 - 2014-05-19 03:04 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-10-22 17:25 - 2014-05-19 03:04 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-10-22 17:25 - 2014-05-19 03:04 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-10-21 13:23 - 2014-05-21 19:44 - 00000000 ____D () C:\Users\hannibla34\dwhelper

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-12 02:51

==================== End Of Log ============================

--- --- ---

Hier dieAddition txt:FRST Additions Logfile:
Code:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-11-2014
Ran by hannibla34 at 2014-11-20 15:16:02
Running from C:\Users\hannibla34\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Smart Security 8.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 8.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personal Firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Digital Editions 2.0 (HKLM-x32\...\Adobe Digital Editions 2.0) (Version: 2.0.1 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.189 - Adobe Systems Incorporated)
Adobe Reader X (10.1.12) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.12 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.3.153 - Adobe Systems, Inc.)
Advanced SystemCare 7 (HKLM-x32\...\Advanced SystemCare 7_is1) (Version: 7.4.0 - IObit)
Alcor Micro USB Card Reader Driver (HKLM-x32\...\AmUStor) (Version: 20.15.6362.54439 - Alcor Micro Corp.)
Alcor Micro USB Card Reader Driver (x32 Version: 20.15.6362.54439 - Alcor Micro Corp.) Hidden
Allzeit Atomzeit 2.00 (HKLM-x32\...\Allzeit Atomzeit 2.00) (Version: 2.00 - Philipp Winterberg)
ASUS Launcher (HKLM-x32\...\{40376CD0-67E0-4190-86CA-8BD8CBAC331C}) (Version: 2.00.11 - ASUSTeK Computer Inc.)
ASUS Manager - Ai Booting (HKLM-x32\...\{2DCE446C-D090-4458-8782-8F16DF94351E}) (Version: 2.01.11 - ASUSTeK Computer Inc.)
ASUS Manager - Power Manager (HKLM-x32\...\{DD248BEE-E925-4720-A775-9A42276BB6EA}) (Version: 2.01.03 - ASUSTeK Computer Inc.)
ASUS Manager - Recovery (HKLM-x32\...\{CF4A14CB-C4CB-4241-B659-7C58517515CF}) (Version: 2.00.08 - ASUSTeK Computer Inc.)
ASUS Manager - Update (HKLM-x32\...\{675BBE8A-0ED3-4048-8723-BA51EAB8E1A8}) (Version: 2.02.02 - ASUSTeK Computer Inc.)
ASUS Manager - USB Lock (HKLM-x32\...\{1931C916-6CB8-4E4D-8561-EA20C426AE19}) (Version: 2.00.10 - ASUSTeK Computer Inc.)
ASUS Manager (HKLM-x32\...\{F5E5AD85-4A90-4604-A887-464D3818D8FD}) (Version: 2.06.02 - ASUSTeK Computer Inc.)
Atomuhr (HKLM-x32\...\{F5CEAB8C-19F8-4A29-9977-FED8D5DE6D31}) (Version: 1.0.1 - A. Weintrub)
Auslogics DiskDefrag (HKLM-x32\...\{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1) (Version: 4.5.4.0 - Auslogics Labs Pty Ltd)
Avira (HKLM-x32\...\{9480d4af-12b9-4e56-8034-4031ef6ab39d}) (Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG) Hidden
CyberLink PhotoDirector 3 (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.4428 - CyberLink Corp.)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.2810 - CyberLink Corp.)
eManual (HKLM-x32\...\{0C84E634-EB68-4A54-B21E-A05EC87A4CC5}) (Version: 1.00.07 - ASUSTeK Computer Inc.)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
ESET Smart Security (HKLM\...\{75F06437-40F4-4A65-BC65-FC194D6B7EBA}) (Version: 8.0.304.4 - ESET, spol s r. o.)
Everything 1.3.4.686 (x64) (HKLM\...\Everything) (Version:  - )
Free Studio version 2014 (HKLM-x32\...\Free Studio_is1) (Version: 6.3.4.530 - DVDVideoSoft Ltd.)
Galeria de Fotografias (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Galería de fotos (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Galerie de photos (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
HitmanPro.Alert (HKLM\...\HitmanPro.Alert) (Version: 2.6.5.77 - SurfRight B.V.)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
LibreOffice 4.2.6.3 (HKLM-x32\...\{14DB1822-00B5-4820-86B5-EF893CA46B53}) (Version: 4.2.6.3 - The Document Foundation)
LibreOffice 4.3 Help Pack (German) (HKLM-x32\...\{1560A369-7C63-4D4E-AA09-494C4BD47256}) (Version: 4.3.1.2 - The Document Foundation)
Malwarebytes Anti-Malware Version 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\OneDriveSetup.exe) (Version: 17.0.4041.0512 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version:  - Pavel Cvrcek)
Mozilla Firefox 33.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.1 (x86 de)) (Version: 33.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.5.0 - Mozilla)
Mozilla Thunderbird 31.2.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.2.0 (x86 de)) (Version: 31.2.0 - Mozilla)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MyMicroBalance (HKLM-x32\...\{4B393BCF-3540-4B42-92BA-50E795066E9E}) (Version: 1.0.8 - G4BI)
PC Wizard 2013.2.12 (HKLM-x32\...\PC Wizard 2013_is1) (Version:  - CPUID)
Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Power8 (HKLM-x32\...\{AEE2067B-73CC-4322-AF5A-1DA86E448E26}) (Version: 1.4.4.628 - Power8 team)
Raccolta foto (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7035 - Realtek Semiconductor Corp.)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 1.05.32.00(01.04.2014) - Samsung Electronics Co., Ltd.)
Samsung Scan Assistant (HKLM-x32\...\Samsung Scan Assistant) (Version: 1.05.07 (20.07.2012) - Samsung Electronics Co., Ltd.)
Sophos Anti-Rootkit 1.5.0 (HKLM-x32\...\Sophos-AntiRootkit) (Version: 1.5.0 - Sophos Plc)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Explorer 5.9.3 (HKLM-x32\...\{40F485F7-6478-4896-B0D5-F94BE677EB78}_is1) (Version:  - Mister Group)
TV-Browser 3.3.3 (HKLM-x32\...\tvbrowser) (Version: 3.3.3 - TV-Browser Team)
WISO Steuer-Sparbuch 2014 (HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\{AF2519A0-3640-41DB-BF30-DB6C108A99C9}) (Version: 21.00.8480 - Buhl Data Service GmbH)
Συλλογή φωτογραφιών (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
影像中心 (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
照片库 (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

19-11-2014 17:55:57 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {050A52CE-4CFB-4967-9869-6AC9BB563AC4} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-903397656-3433550281-814490945-1002 => %localappdata%\Microsoft\SkyDrive\SkyDrive.exe
Task: {11A106BC-5E5D-4789-BBAB-CD159B4C10B6} - System32\Tasks\ASUS\ASUS Manager HotKey Service => C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe [2013-09-18] (ASUSTeK Computer Inc.)
Task: {21D6D3B5-D251-4415-865E-9B31DEC47CD7} - System32\Tasks\ASC7_SkipUac_hannibla34 => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe [2014-08-22] (IObit)
Task: {3982CA3E-4EEE-41B7-8D2D-6CDB1FADF12F} - System32\Tasks\ASUS\Power_Manager_background => C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe [2013-09-06] (ASUSTeK)
Task: {3D794281-38B0-461B-82BA-E2A1CD5DE3B5} - System32\Tasks\ASUS\ASUS Updater => C:\Program Files (x86)\ASUS\ASUS Manager\Application Update\ASUSFourceUpdater.exe [2013-11-28] ()
Task: {67BCD63F-C426-48B9-AB83-F4958604E0A3} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe
Task: {682ED690-9AA9-4011-8360-8CD47E349B7E} - System32\Tasks\ASUS\ASUS Manager BackgroundWindow => C:\Program Files (x86)\ASUS\ASUS Manager\BackgroundWindow.exe [2013-08-23] ()
Task: {6E466F9E-5FED-4FD8-A296-794E0119CCBE} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-11-12] (Microsoft Corporation)
Task: {A9F02C50-0AFA-4774-B298-FC5361AB621B} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files (x86)\CHIP Updater\CHIPUpdater.exe
Task: {F000F819-307A-4023-B2F2-518FC8F572A8} - System32\Tasks\ASUS\ASUS Update Checker => C:\Program Files (x86)\ASUS\ASUS Manager\Application Update\ASUSUpdateChecker.exe [2013-11-27] ()
Task: {F864D454-FAE6-44B2-9614-84F00066E8DD} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-10-23] (Piriform Ltd)
Task: C:\Windows\Tasks\ASC7_SkipUac_hannibla34.job => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe

==================== Loaded Modules (whitelisted) =============

2014-01-15 13:55 - 2013-08-08 19:00 - 00207160 _____ () C:\Windows\SysWOW64\AsHookDevice.exe
2014-11-10 16:30 - 2014-08-06 02:04 - 01441792 _____ () C:\Program Files\Everything\Everything.exe
2014-01-09 10:33 - 2012-04-24 11:43 - 00390632 ____R () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
2014-01-15 13:55 - 2013-08-28 16:24 - 00920736 ____N () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
2011-05-04 09:22 - 2011-05-04 09:22 - 00323072 _____ () C:\Windows\system32\SaMinDrv.dll
2013-11-26 10:05 - 2013-11-26 10:05 - 00091136 _____ () C:\Windows\system32\ssdevm64.dll
2014-01-15 13:51 - 2014-07-02 19:55 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-10-23 20:19 - 2014-10-23 20:19 - 00053248 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2014-05-17 07:22 - 2013-10-25 11:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\sqlite3.dll
2014-01-15 13:55 - 2014-11-19 23:43 - 00026624 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll
2014-01-15 13:55 - 2010-06-29 03:58 - 00104448 ____N () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll
2014-01-15 13:50 - 2013-08-19 20:10 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2014-08-27 22:02 - 2014-08-27 22:02 - 01042232 _____ () C:\Program Files (x86)\LibreOffice 4\program\libxml2.dll
2014-08-27 22:02 - 2014-08-27 22:02 - 00183096 _____ () C:\Program Files (x86)\LibreOffice 4\program\libxslt.dll
2014-05-14 21:45 - 2014-11-10 16:25 - 03649648 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-05-14 22:50 - 2014-10-16 11:14 - 03339376 _____ () C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll
2014-05-14 22:50 - 2014-10-16 11:14 - 00158832 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll
2014-05-14 22:50 - 2014-10-16 11:14 - 00023152 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\06257141.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\06257141.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run: => "CDAServer"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "Everything"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKLM\...\StartupApproved\Run32: => "ASUSPRP"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "NvBackend"
HKLM\...\StartupApproved\Run32: => "IAStorIcon"
HKCU\...\StartupApproved\StartupFolder: => "WISO Mein Steuer-Sparbuch heute.lnk"
HKCU\...\StartupApproved\StartupFolder: => "Mediencenter.lnk"
HKCU\...\StartupApproved\Run: => "Advanced SystemCare 7"
HKCU\...\StartupApproved\Run: => "CCleaner Monitoring"

========================= Accounts: ==========================

Administrator (S-1-5-21-903397656-3433550281-814490945-500 - Administrator - Disabled)
Guest (S-1-5-21-903397656-3433550281-814490945-501 - Limited - Disabled)
hannibla34 (S-1-5-21-903397656-3433550281-814490945-1002 - Administrator - Enabled) => C:\Users\hannibla34
HomeGroupUser$ (S-1-5-21-903397656-3433550281-814490945-1004 - Limited - Enabled)

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (11/20/2014 03:15:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eebd22
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000038299
ID des fehlerhaften Prozesses: 0x38e1c
Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0
Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1
Pfad des fehlerhaften Moduls: nvstreamsvc.exe2
Berichtskennung: nvstreamsvc.exe3
Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5

Error: (11/20/2014 03:09:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eebd22
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000038299
ID des fehlerhaften Prozesses: 0x37df4
Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0
Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1
Pfad des fehlerhaften Moduls: nvstreamsvc.exe2
Berichtskennung: nvstreamsvc.exe3
Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5

Error: (11/20/2014 03:09:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eebd22
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000038299
ID des fehlerhaften Prozesses: 0x37bc0
Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0
Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1
Pfad des fehlerhaften Moduls: nvstreamsvc.exe2
Berichtskennung: nvstreamsvc.exe3
Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5

Error: (11/20/2014 03:09:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eebd22
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000038299
ID des fehlerhaften Prozesses: 0x37a00
Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0
Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1
Pfad des fehlerhaften Moduls: nvstreamsvc.exe2
Berichtskennung: nvstreamsvc.exe3
Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5

Error: (11/20/2014 03:07:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eebd22
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000038299
ID des fehlerhaften Prozesses: 0x36bcc
Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0
Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1
Pfad des fehlerhaften Moduls: nvstreamsvc.exe2
Berichtskennung: nvstreamsvc.exe3
Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5

Error: (11/20/2014 03:07:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eebd22
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000038299
ID des fehlerhaften Prozesses: 0x3727c
Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0
Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1
Pfad des fehlerhaften Moduls: nvstreamsvc.exe2
Berichtskennung: nvstreamsvc.exe3
Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5

Error: (11/20/2014 03:06:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eebd22
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000038299
ID des fehlerhaften Prozesses: 0x37048
Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0
Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1
Pfad des fehlerhaften Moduls: nvstreamsvc.exe2
Berichtskennung: nvstreamsvc.exe3
Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5

Error: (11/20/2014 03:06:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eebd22
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000038299
ID des fehlerhaften Prozesses: 0x36dc4
Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0
Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1
Pfad des fehlerhaften Moduls: nvstreamsvc.exe2
Berichtskennung: nvstreamsvc.exe3
Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5

Error: (11/20/2014 03:06:15 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eebd22
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000038299
ID des fehlerhaften Prozesses: 0x36c8c
Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0
Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1
Pfad des fehlerhaften Moduls: nvstreamsvc.exe2
Berichtskennung: nvstreamsvc.exe3
Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5

Error: (11/20/2014 03:06:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: nvstreamsvc.exe, Version: 3.1.100.0, Zeitstempel: 0x53d25804
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17278, Zeitstempel: 0x53eebd22
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000038299
ID des fehlerhaften Prozesses: 0x36c04
Startzeit der fehlerhaften Anwendung: 0xnvstreamsvc.exe0
Pfad der fehlerhaften Anwendung: nvstreamsvc.exe1
Pfad des fehlerhaften Moduls: nvstreamsvc.exe2
Berichtskennung: nvstreamsvc.exe3
Vollständiger Name des fehlerhaften Pakets: nvstreamsvc.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: nvstreamsvc.exe5


System errors:
=============
Error: (11/20/2014 01:08:51 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definition Update for Windows Defender - KB2267602 (Definition 1.189.311.0)

Error: (11/20/2014 01:08:38 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definition Update for Windows Defender - KB2267602 (Definition 1.189.311.0)

Error: (11/20/2014 01:02:51 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Definition Update for Windows Defender - KB2267602 (Definition 1.189.311.0)

Error: (11/20/2014 00:58:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Software Protection" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053

Error: (11/20/2014 00:58:28 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Software Protection erreicht.

Error: (11/19/2014 11:42:18 PM) (Source: DCOM) (EventID: 10005) (User: wo)
Description: 1053WSearchUnavailable{9E175B68-F52A-11D8-B9A5-505054503030}

Error: (11/19/2014 11:42:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053

Error: (11/19/2014 11:42:18 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Search erreicht.

Error: (11/19/2014 11:42:17 PM) (Source: DCOM) (EventID: 10005) (User: wo)
Description: 1053WSearchUnavailable{9E175B68-F52A-11D8-B9A5-505054503030}

Error: (11/19/2014 11:42:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053


Microsoft Office Sessions:
=========================
Error: (11/20/2014 03:15:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1727853eebd22c0000005000000000003829938e1c01d004cc70e608ceC:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dllaf1acfed-70bf-11e4-8316-e03f494be62f

Error: (11/20/2014 03:09:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1727853eebd22c0000005000000000003829937df401d004cbaa5d34a0C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dlle890ac56-70be-11e4-8316-e03f494be62f

Error: (11/20/2014 03:09:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1727853eebd22c0000005000000000003829937bc001d004cba08f2f24C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dlldec2cf89-70be-11e4-8316-e03f494be62f

Error: (11/20/2014 03:09:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1727853eebd22c0000005000000000003829937a0001d004cb9552359eC:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dlld3859138-70be-11e4-8316-e03f494be62f

Error: (11/20/2014 03:07:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1727853eebd22c0000005000000000003829936bcc01d004cb50945940C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dll8ec75b68-70be-11e4-8316-e03f494be62f

Error: (11/20/2014 03:07:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1727853eebd22c000000500000000000382993727c01d004cb46d83683C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dll850c52d1-70be-11e4-8316-e03f494be62f

Error: (11/20/2014 03:06:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1727853eebd22c000000500000000000382993704801d004cb3e5c0f55C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dll7c8f7265-70be-11e4-8316-e03f494be62f

Error: (11/20/2014 03:06:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1727853eebd22c0000005000000000003829936dc401d004cb295391ecC:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dll6786cb0e-70be-11e4-8316-e03f494be62f

Error: (11/20/2014 03:06:15 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1727853eebd22c0000005000000000003829936c8c01d004cb252098d3C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dll635522f0-70be-11e4-8316-e03f494be62f

Error: (11/20/2014 03:06:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: nvstreamsvc.exe3.1.100.053d25804ntdll.dll6.3.9600.1727853eebd22c0000005000000000003829936c0401d004cb22528fcfC:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exeC:\Windows\SYSTEM32\ntdll.dll608504d7-70be-11e4-8316-e03f494be62f


CodeIntegrity Errors:
===================================
  Date: 2014-11-20 14:56:05.884
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-20 14:49:14.092
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-20 14:29:44.036
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-20 14:29:40.869
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\hmpalert.dll that did not meet the Windows signing level requirements.

  Date: 2014-11-20 13:54:26.421
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-20 13:20:38.812
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-20 13:06:33.037
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-20 13:00:45.554
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\hmpalert.dll that did not meet the Windows signing level requirements.

  Date: 2014-11-20 12:58:29.887
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system.

  Date: 2014-11-20 00:57:33.251
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i7-4770 CPU @ 3.40GHz
Percentage of memory in use: 44%
Total physical RAM: 8131.95 MB
Available physical RAM: 4481.99 MB
Total Pagefile: 9411.95 MB
Available Pagefile: 5193.57 MB
Total Virtual: 131072 MB
Available Virtual: 131071.79 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:150 GB) (Free:29.64 GB) NTFS
Drive d: (Data) (Fixed) (Total:764.71 GB) (Free:764.48 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 74A7F63F)

Partition: GPT Partition Type.

==================== End Of Log ============================

--- --- ---

schrauber 21.11.2014 16:09

Und was für Probleme bestehen mit dem Rechner?

krautsand 21.11.2014 18:30

Hallo Schrauber,

es sind Viren und Trojaner auf meinem Rechner.

Ich habe einen ASUS-Rechner. Dort läuft als Hintergrundprozess ASHookDivice for USB Lock. Der beansprucht auf dem Rechner im Laufe einer Sitzung immer mehr Kapazität des Arbeitsspeichers. Auch der Firefox -Browser benötigt überduchschnittlich viel.

Schließlich habe ich mit dem dem ESeT-Online Scanner den Rechner abgescannt Dort wurde folgendes gefunden:

Win32/DownloadSponsor
Win32/Toolbar.Conduit.R
Win32/Systweak
Win32/Systweak.J
Toolbar.Widgi.B
Adcanced System Protector D.

Ich war allzu naiv zu gauben, dass mit der Installation von ESET Smart Security diese Probleme aus er Welt zu schaffen seien. Nun bin ich am Endemit meinem Latein.

Viele Grüße

krautsand

schrauber 22.11.2014 13:46

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.

krautsand 22.11.2014 15:58

Hallo Schrauber,

malewarebytes hatte ich schon auf dem Rechner. Er findet nichts. möglicherweide ist das Programm auch kompromittiert.

Der logfile von adwarecleaner ist:AdwCleaner Logfile:
Code:

# AdwCleaner v4.101 - Report created 22/11/2014 at 15:28:44
# Updated 09/11/2014 by Xplode
# Database : 2014-11-16.1 [Live]
# Operating System : Windows 8.1  (64 bits)
# Username : hannibla34 - WO
# Running from : C:\Users\hannibla34\Downloads\adwcleaner_4.101.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\hannibla34\AppData\Roaming\Solvusoft
Folder Deleted : C:\Users\hannibla34\AppData\Roaming\WebExtend

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
Key Deleted : HKCU\Software\OCS
Key Deleted : HKLM\SOFTWARE\Tuneup Pro
Key Deleted : HKLM\SOFTWARE\Tutorials

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v33.1 (x86 de)


-\\ Google Chrome v

[C:\Users\hannibla34\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : nfengeggddojhakldhlpjdlddgkkjkdd

*************************

AdwCleaner[R0].txt - [1618 octets] - [09/06/2014 14:31:01]
AdwCleaner[R1].txt - [1229 octets] - [09/06/2014 14:36:01]
AdwCleaner[R2].txt - [1504 octets] - [22/11/2014 15:26:34]
AdwCleaner[S0].txt - [1658 octets] - [09/06/2014 14:32:40]
AdwCleaner[S1].txt - [1404 octets] - [22/11/2014 15:28:44]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1464 octets] ##########

--- --- ---
JRT.txt:AdwCleaner Logfile:
Code:

# AdwCleaner v4.101 - Report created 22/11/2014 at 15:28:44
# Updated 09/11/2014 by Xplode
# Database : 2014-11-16.1 [Live]
# Operating System : Windows 8.1  (64 bits)
# Username : hannibla34 - WO
# Running from : C:\Users\hannibla34\Downloads\adwcleaner_4.101.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\hannibla34\AppData\Roaming\Solvusoft
Folder Deleted : C:\Users\hannibla34\AppData\Roaming\WebExtend

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
Key Deleted : HKCU\Software\OCS
Key Deleted : HKLM\SOFTWARE\Tuneup Pro
Key Deleted : HKLM\SOFTWARE\Tutorials

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v33.1 (x86 de)


-\\ Google Chrome v

[C:\Users\hannibla34\AppData\Local\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : nfengeggddojhakldhlpjdlddgkkjkdd

*************************

AdwCleaner[R0].txt - [1618 octets] - [09/06/2014 14:31:01]
AdwCleaner[R1].txt - [1229 octets] - [09/06/2014 14:36:01]
AdwCleaner[R2].txt - [1504 octets] - [22/11/2014 15:26:34]
AdwCleaner[S0].txt - [1658 octets] - [09/06/2014 14:32:40]
AdwCleaner[S1].txt - [1404 octets] - [22/11/2014 15:28:44]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1464 octets] ##########

--- --- ---
FRST lob:
FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-11-2014
Ran by hannibla34 (administrator) on WO on 22-11-2014 15:50:00
Running from C:\Users\hannibla34\Downloads
Loaded Profile: hannibla34 (Available profiles: hannibla34)
Platform: Windows 8.1 (X64) OS Language: Englisch (Vereinigte Staaten)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
(SurfRight B.V.) C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\SysWOW64\AsHookDevice.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
() C:\Program Files\Everything\Everything.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(ASUSTeK) C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7199448 2013-09-05] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-30] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] ()
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5595336 2014-10-01] (ESET)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3216032 2014-01-09] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Run: [Advanced SystemCare 7] => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2281248 2014-08-22] (IObit)
HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-23] (Piriform Ltd)
Startup: C:\Users\hannibla34\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk
ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe ()
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-903397656-3433550281-814490945-1002\Software\Microsoft\Internet Explorer\Main,Start Page = Google
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Google
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = Google
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\.DEFAULT -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> DefaultScope {F7FA0E18-88F4-47FD-97EF-19FE83C440CC} URL = https://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> {F7FA0E18-88F4-47FD-97EF-19FE83C440CC} URL = https://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292
FF SelectedSearchEngine: Google
FF Homepage: about:home
FF Keyword.URL: https://de.search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=198484&p=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-903397656-3433550281-814490945-1002: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\duckduckgo.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\dudende-suche.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\google-maps.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\metager.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\wikipedia-en-ssl.xml
FF Extension: Avira Browser Safety - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\abs@avira.com [2014-11-20]
FF Extension: FoxyProxy Standard - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\foxyproxy@eric.h.jung [2014-09-06]
FF Extension: EPUBReader - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F} [2014-09-05]
FF Extension: DownloadHelper - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-06]
FF Extension: Adblock Plus Pop-up Addon - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\adblockpopups@jessehakanen.net.xpi [2014-09-05]
FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\elemhidehelper@adblockplus.org.xpi [2014-09-05]
FF Extension: SQLite Manager - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\SQLiteManager@mrinalkant.blogspot.com.xpi [2014-11-17]
FF Extension: Adblock Plus Filter Uploader - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\uploader@adblockfilters.mozdev.org.xpi [2014-09-05]
FF Extension: ImTranslator - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2014-09-06]
FF Extension: Adblock Plus - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-05]
FF Extension: Adblock Edge - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2014-09-05]
FF HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\extensions\cliqz@cliqz.com

Chrome:
=======
CHR Profile: C:\Users\hannibla34\AppData\Local\Google\Chrome\User Data\Default

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [893216 2014-08-18] (IObit)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2013-08-28] ()
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 Device Handle Service; C:\Windows\SysWOW64\AsHookDevice.exe [207160 2013-08-08] ()
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1349576 2014-10-01] (ESET)
R2 Everything; C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] () [File not signed]
R2 hmpalertsvc; C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe [1876816 2014-06-09] (SurfRight B.V.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-19] (Intel Corporation)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2282272 2014-08-19] (IObit)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-10-01] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [968504 2014-10-01] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
S3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [821096 2014-08-13] (Mister Group)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 A2DDA; C:\EEK\RUN\a2ddax64.sys [26176 2013-08-19] (Emsisoft GmbH)
R3 AiChargerDT; C:\Windows\SysWow64\drivers\AiChargerDT.sys [14880 2012-10-18] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 cleanhlp; C:\EEK\Run\cleanhlp64.sys [57024 2014-05-20] (Emsisoft GmbH)
S3 cpuz136; C:\Program Files (x86)\CPUID\PC Wizard 2013\pcwiz_x64.sys [25320 2013-08-24] (CPUID)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [469264 2013-06-26] (Intel Corporation)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-09-22] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [241368 2014-09-22] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [169280 2014-09-22] (ESET)
R2 epfw; C:\Windows\system32\DRIVERS\epfw.sys [222280 2014-09-22] (ESET)
R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [44632 2014-09-22] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [63160 2014-09-22] (ESET)
R2 hmpalert; C:\Windows\System32\drivers\hmpalert.sys [93144 2014-06-09] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-10-01] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-22] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-10-01] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-19] (Intel Corporation)
S3 MEMSWEEP2; C:\Windows\system32\2284.tmp [6144 2009-06-18] (Sophos Plc) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-22 15:50 - 2014-11-22 15:50 - 00019312 _____ () C:\Users\hannibla34\Downloads\FRST.txt
2014-11-22 15:49 - 2014-11-22 15:50 - 00000000 ____D () C:\FRST
2014-11-22 15:49 - 2014-11-22 15:49 - 02118144 _____ (Farbar) C:\Users\hannibla34\Downloads\FRST64.exe
2014-11-22 15:47 - 2014-11-22 15:47 - 00000093 ____H () C:\Users\hannibla34\Downloads\.~lock.junkware Rmoval tool vom 222.11.14JRT.txt#
2014-11-22 15:40 - 2014-11-22 15:40 - 00000619 _____ () C:\Users\hannibla34\Desktop\JRT.txt
2014-11-22 15:35 - 2014-11-22 15:35 - 01707532 _____ (Thisisu) C:\Users\hannibla34\Downloads\JRT_6.3.9(1).exe
2014-11-22 15:29 - 2014-11-22 15:29 - 00000318 _____ () C:\Windows\PFRO.log
2014-11-22 15:25 - 2014-11-22 15:25 - 02140160 _____ () C:\Users\hannibla34\Downloads\adwcleaner_4.101.exe
2014-11-22 15:17 - 2014-11-22 15:17 - 00000897 _____ () C:\Users\hannibla34\Downloads\junkware Rmoval tool vom 222.11.14JRT.txt
2014-11-22 15:09 - 2014-11-22 15:09 - 01707532 _____ (Thisisu) C:\Users\hannibla34\Downloads\JRT_6.3.9.exe
2014-11-22 15:09 - 2014-11-22 15:09 - 00000000 ____D () C:\Windows\ERUNT
2014-11-22 14:32 - 2014-11-22 14:32 - 19669382 _____ () C:\Users\hannibla34\Downloads\krieol47 f 480_800_cInUP-G295-.mp4
2014-11-21 19:43 - 2014-11-21 19:43 - 00000000 ____D () C:\NVIDIA Corporation
2014-11-21 11:23 - 2014-11-21 11:23 - 00180434 _____ () C:\Users\hannibla34\Downloads\21.11.2014 OTL.Txt
2014-11-20 18:15 - 2014-11-20 18:17 - 102899288 _____ () C:\Users\hannibla34\Downloads\Audiofiles_DIE_ZEIT_48.zip
2014-11-20 15:29 - 2014-11-20 15:29 - 00031924 _____ () C:\Users\hannibla34\Downloads\Farbor Scan Addition txt Addition.txt
2014-11-20 15:24 - 2014-11-20 15:24 - 00057675 _____ () C:\Users\hannibla34\Downloads\Farbor Scan 19.11.2014FRST.txt
2014-11-20 15:16 - 2014-11-20 15:16 - 00031924 _____ () C:\Users\hannibla34\Downloads\Addition.txt
2014-11-20 14:15 - 2014-11-20 14:15 - 20897443 _____ () C:\Users\hannibla34\Downloads\b j 480_300_jL2pT-G595-.mp4
2014-11-20 00:11 - 2014-11-20 00:11 - 00000000 _____ () C:\Users\hannibla34\defogger_reenable
2014-11-19 18:56 - 2014-10-30 12:25 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-19 18:55 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 18:55 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 18:55 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 18:55 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-19 18:05 - 2014-11-19 18:05 - 02347384 _____ (ESET) C:\Users\hannibla34\Downloads\esetsmartinstaller_deu.exe
2014-11-19 17:15 - 2014-11-19 17:15 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\ESET
2014-11-19 17:15 - 2014-11-19 17:15 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\ESET
2014-11-19 17:13 - 2014-11-19 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2014-11-19 17:13 - 2014-11-19 17:13 - 00000000 ____D () C:\ProgramData\ESET
2014-11-19 17:13 - 2014-11-19 17:13 - 00000000 ____D () C:\Program Files\ESET
2014-11-19 17:06 - 2014-11-19 17:06 - 01660616 _____ (ESET) C:\Users\hannibla34\Downloads\eset_smart_security_live_installer_.exe
2014-11-19 17:06 - 2014-11-19 17:06 - 01132704 _____ (ESET spol. s r.o.) C:\Users\hannibla34\Downloads\eset_av_remover.exe
2014-11-19 16:36 - 2014-11-19 16:36 - 00182422 _____ () C:\Users\hannibla34\Downloads\19.11.2014 OTL.Txt
2014-11-19 16:19 - 2014-11-21 19:43 - 00001400 _____ () C:\Users\hannibla34\Downloads\Eset Online Scan vom 19.11.2014
2014-11-18 20:32 - 2014-11-18 20:32 - 00000000 __SHD () C:\Users\hannibla34\AppData\Local\EmieBrowserModeList
2014-11-18 18:33 - 2014-11-18 18:33 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-11-18 13:09 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\2284.tmp
2014-11-18 13:06 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\ADF9.tmp
2014-11-17 16:27 - 2014-11-17 16:27 - 00178666 _____ () C:\Users\hannibla34\Downloads\OTL 17.11.2014.txt
2014-11-16 23:40 - 2014-11-22 15:43 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-16 23:40 - 2014-11-16 23:40 - 00001121 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-16 23:40 - 2014-11-16 23:40 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-11-16 23:40 - 2014-11-16 23:40 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-16 23:40 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-16 23:40 - 2014-10-01 11:11 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-16 23:40 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-16 23:39 - 2014-11-16 23:39 - 01125200 _____ () C:\Users\hannibla34\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer.exe
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\ProgramData\XDMessagingv4
2014-11-16 18:26 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\CC15.tmp
2014-11-16 18:23 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\6385.tmp
2014-11-16 18:22 - 2014-11-21 19:21 - 00000000 ____D () C:\Program Files (x86)\Sophos
2014-11-16 18:22 - 2014-11-16 18:22 - 01125200 _____ () C:\Users\hannibla34\Downloads\Sophos Anti Rootkit - CHIP-Installer.exe
2014-11-15 15:32 - 2014-11-15 15:45 - 123159913 _____ () C:\Users\hannibla34\Downloads\cpl 3751316.flv
2014-11-15 14:42 - 2014-11-15 14:43 - 48967526 _____ () C:\Users\hannibla34\Downloads\cumgur my neigbour 480_794_qH65S-G795-.mp4
2014-11-13 18:03 - 2014-11-13 18:05 - 109097010 _____ () C:\Users\hannibla34\Downloads\Audiofiles_DIE_ZEIT_47.zip
2014-11-12 17:52 - 2014-10-31 06:28 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 17:52 - 2014-10-31 04:42 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 17:52 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-11-12 17:52 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 17:52 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 17:52 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-11-12 17:52 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-11-12 17:52 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-11-12 17:52 - 2014-10-08 06:32 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-11-12 17:52 - 2014-10-08 06:19 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-11-12 17:52 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2014-11-12 17:52 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2014-11-12 17:52 - 2014-09-27 04:38 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 17:52 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2014-11-12 17:52 - 2014-09-27 04:17 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 17:52 - 2014-09-22 05:38 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2014-11-12 17:52 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2014-11-12 17:52 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2014-11-12 17:52 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2014-11-12 17:52 - 2014-09-19 01:16 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2014-11-12 17:52 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2014-11-12 17:52 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2014-11-12 17:51 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-11-12 17:51 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-11-12 17:51 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-11-12 17:51 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-11-12 17:51 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-11-12 17:51 - 2014-10-31 06:06 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 17:51 - 2014-10-31 06:05 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 17:51 - 2014-10-31 06:05 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-11-12 17:51 - 2014-10-31 06:04 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 17:51 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 17:51 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 17:51 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-11-12 17:51 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 17:51 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2014-11-12 17:51 - 2014-10-31 05:51 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-11-12 17:51 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 17:51 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 17:51 - 2014-10-31 05:50 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 17:51 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 17:51 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-11-12 17:51 - 2014-10-31 05:38 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 17:51 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 17:51 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-11-12 17:51 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-11-12 17:51 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-11-12 17:51 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 17:51 - 2014-10-31 05:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 17:51 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-11-12 17:51 - 2014-10-31 05:23 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-11-12 17:51 - 2014-10-31 05:21 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 17:51 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-11-12 17:51 - 2014-10-31 05:15 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-11-12 17:51 - 2014-10-31 05:08 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-11-12 17:51 - 2014-10-31 05:06 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 17:51 - 2014-10-31 05:05 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 17:51 - 2014-10-31 05:05 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 17:51 - 2014-10-31 05:03 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 17:51 - 2014-10-31 04:59 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 17:51 - 2014-10-31 04:45 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 17:51 - 2014-10-31 04:44 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2014-11-12 17:51 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-11-12 17:51 - 2014-10-31 04:32 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 17:51 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-11-12 17:51 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-11-12 17:51 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-11-12 17:51 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-11-12 17:51 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-11-12 17:51 - 2014-10-31 04:24 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 17:51 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-11-12 17:51 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 17:51 - 2014-10-31 04:23 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-11-12 17:51 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 17:51 - 2014-10-31 04:22 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 17:51 - 2014-10-31 04:20 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 17:51 - 2014-10-31 04:18 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 17:51 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 17:51 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 17:51 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-11-12 17:51 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 17:51 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2014-11-12 17:51 - 2014-10-31 04:12 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-11-12 17:51 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 17:51 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 17:51 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-11-12 17:51 - 2014-10-31 04:02 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 17:51 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-11-12 17:51 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 17:51 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-11-12 17:51 - 2014-10-31 03:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 17:51 - 2014-10-31 03:51 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-11-12 17:51 - 2014-10-31 03:50 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 17:51 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-11-12 17:51 - 2014-10-31 03:46 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 17:51 - 2014-10-31 03:46 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-11-12 17:51 - 2014-10-31 03:42 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-11-12 17:51 - 2014-10-31 03:40 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 17:51 - 2014-10-31 03:40 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 17:51 - 2014-10-31 03:39 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 17:51 - 2014-10-31 03:30 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 17:51 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2014-11-12 17:51 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-11-12 17:51 - 2014-10-31 03:17 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 17:51 - 2014-10-31 03:13 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 17:51 - 2014-10-31 03:11 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 17:51 - 2014-10-18 10:55 - 00055776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-11-12 17:51 - 2014-10-18 09:09 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-11-12 17:51 - 2014-10-18 09:09 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-11-12 17:51 - 2014-10-18 08:25 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-11-12 17:51 - 2014-10-18 07:50 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll
2014-11-12 17:51 - 2014-10-18 07:38 - 03557376 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-11-12 17:51 - 2014-10-18 07:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-11-12 17:51 - 2014-10-18 07:26 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-11-12 17:51 - 2014-10-18 07:23 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2014-11-12 17:51 - 2014-10-18 07:23 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-11-12 17:51 - 2014-10-18 07:21 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-11-12 17:51 - 2014-10-18 07:20 - 01714176 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-11-12 17:51 - 2014-10-18 07:14 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-11-12 17:51 - 2014-10-18 07:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-11-12 17:51 - 2014-10-18 07:12 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-11-12 17:51 - 2014-10-18 07:11 - 00723968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-11-12 17:51 - 2014-10-17 08:01 - 00789184 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 17:51 - 2014-10-17 07:58 - 00602768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-12 17:51 - 2014-10-10 02:58 - 00177472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 17:51 - 2014-10-10 02:58 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-11-12 17:51 - 2014-10-10 02:44 - 00563976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-11-12 17:51 - 2014-10-08 08:37 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 17:51 - 2014-10-08 08:37 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 17:51 - 2014-10-08 08:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-11-12 17:51 - 2014-10-08 08:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2014-11-12 17:51 - 2014-10-08 07:56 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2014-11-12 17:51 - 2014-10-08 07:51 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 17:51 - 2014-10-08 07:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 17:51 - 2014-10-08 07:18 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2014-11-12 17:51 - 2014-10-08 07:17 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 17:51 - 2014-10-08 06:23 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-11-12 17:50 - 2014-11-05 00:38 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-12 17:50 - 2014-11-04 01:10 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-12 17:50 - 2014-10-31 05:53 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-11-12 17:50 - 2014-10-31 05:49 - 00537088 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-12 17:50 - 2014-10-31 05:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-11-12 17:50 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 17:50 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 17:50 - 2014-10-07 07:28 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 17:50 - 2014-10-07 07:27 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 17:50 - 2014-10-07 07:27 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 17:50 - 2014-10-07 07:27 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2014-11-12 17:50 - 2014-10-07 04:34 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 17:50 - 2014-10-07 04:34 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 17:50 - 2014-10-07 04:30 - 04182016 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 17:50 - 2014-10-07 02:54 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2014-11-12 17:50 - 2014-10-07 02:46 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 17:50 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-11-12 17:50 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-11-12 17:50 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-11-12 17:50 - 2014-09-07 23:08 - 00389176 _____ () C:\Windows\system32\ApnDatabase.xml
2014-11-12 17:50 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-11-12 17:50 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-11-12 17:50 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2014-11-12 17:50 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2014-11-12 17:50 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2014-11-12 17:50 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2014-11-12 17:50 - 2014-08-31 01:17 - 00148800 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2014-11-12 17:50 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-11-12 17:50 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-11-12 17:50 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2014-11-12 17:50 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2014-11-12 17:50 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2014-11-12 17:50 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll
2014-11-12 17:50 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2014-11-12 17:50 - 2014-08-28 03:55 - 07484224 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-11-12 17:50 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-11-12 17:50 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-11-12 17:50 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 17:50 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2014-11-12 17:50 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2014-11-12 17:50 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 17:50 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2014-11-12 17:50 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2014-11-12 17:50 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2014-11-12 17:49 - 2014-10-07 07:27 - 00108432 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 17:49 - 2014-10-07 04:33 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 13:15 - 2014-11-12 13:16 - 141165145 _____ () C:\Users\hannibla34\Downloads\Rot-rot-grün - heute Erfurt, morgenBerlin 141023_phx_runde_414k_p20v9.mp4
2014-11-12 13:11 - 2014-11-12 13:13 - 141184159 _____ () C:\Users\hannibla34\Downloads\Steuertricks in Luxemburg -Junkers unter Druck 141111_phx_runde_414k_p20v9.mp4
2014-11-12 12:54 - 2014-11-12 12:54 - 64529579 _____ () C:\Users\hannibla34\Downloads\sulazodechaval polih fat cock 480_800_cu70g-G295-.mp4
2014-11-12 12:43 - 2014-11-12 12:48 - 270976369 _____ () C:\Users\hannibla34\Downloads\lazing on a sunny afternoon 480_800_s5bYM-G883-.mp4
2014-11-11 16:21 - 2014-11-15 14:18 - 00000000 ____D () C:\Users\hannibla34\Downloads\Sicherheit im Internet- Onlinekurs des hasso-Plattner-Instituts
2014-11-10 17:24 - 2014-11-10 17:24 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\WindowsAppBoss
2014-11-10 16:40 - 2014-11-10 16:40 - 00988339 _____ () C:\Users\hannibla34\Downloads\Everything-1.3.4.686.x64.Multilingual-Setup.exe
2014-11-10 16:30 - 2014-11-17 17:57 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Everything
2014-11-10 16:30 - 2014-11-17 16:57 - 00000000 ____D () C:\Program Files\Everything
2014-11-09 13:45 - 2014-11-15 23:25 - 00002782 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-08 21:08 - 2014-11-08 21:11 - 168401304 _____ () C:\Users\hannibla34\Downloads\Die Würde ist antastbar.wma
2014-11-08 15:23 - 2014-11-18 17:21 - 00072640 _____ () C:\Users\hannibla34\Documents\Malware.odt
2014-11-08 00:43 - 2014-11-08 00:48 - 212653971 _____ () C:\Users\hannibla34\Downloads\Suizid im alter 141106_sendung_suizid_scobel_446k_p20v11.mp4
2014-11-08 00:43 - 2014-11-08 00:47 - 218337076 _____ () C:\Users\hannibla34\Downloads\Bewusst essen Scobel 141023_ganze_sendung_scobel_446k_p20v11.mp4
2014-11-07 18:43 - 2014-11-07 18:43 - 14592501 _____ () C:\Users\hannibla34\Downloads\s und f 480_800_hmxUZ-G195-.mp4
2014-11-07 18:32 - 2014-11-07 18:38 - 00000000 ____D () C:\Users\hannibla34\Downloads\Tarifverträge für Tiermedizinishce Fachangestellte
2014-11-06 17:59 - 2014-11-06 18:01 - 89338442 _____ () C:\Users\hannibla34\Downloads\suck 480_800_psNUx-G795-.mp4
2014-11-05 18:54 - 2014-11-05 19:00 - 42620327 _____ () C:\Users\hannibla34\Downloads\paki cpl 3661462.flv
2014-11-02 21:37 - 2014-11-02 21:41 - 234021342 _____ () C:\Users\hannibla34\Downloads\cagli 76 cuba ric o 480_800_nkJaB-S477-.mp4
2014-11-02 21:36 - 2014-11-02 21:38 - 66318603 _____ () C:\Users\hannibla34\Downloads\cagli76 cuban straight having sex inrented apt - it hurts 480_600_RXc3t-S570-.mp4
2014-10-30 18:06 - 2014-10-30 18:10 - 152402358 _____ () C:\Users\hannibla34\Downloads\evergreenguys hot couple sunday sex 480_688_ntsxa-G794-.mp4
2014-10-30 18:01 - 2014-10-30 18:03 - 103579104 _____ () C:\Users\hannibla34\Downloads\chadluvs suxking 480_800_x0jhz-G694-.mp4
2014-10-30 17:45 - 2014-10-30 17:45 - 15769557 _____ () C:\Users\hannibla34\Downloads\raisei homecumming 480_800_Gmk58-G594-.mp4
2014-10-30 17:36 - 2014-10-30 17:36 - 17041145 _____ () C:\Users\hannibla34\Downloads\lovemusicnudefreedom 480_567_DIONb-G594-.mp4
2014-10-30 16:40 - 2014-11-21 15:12 - 00000000 ____D () C:\Users\hannibla34\Documents\My Digital Editions
2014-10-29 13:37 - 2014-10-29 13:40 - 182023917 _____ () C:\Users\hannibla34\Downloads\Edelschimmel und Scheibletten - die Wissenschaft vom Käse wdr_fernsehen_quarks_und_co_20140909.mp4
2014-10-29 13:35 - 2014-10-29 13:38 - 181354002 _____ () C:\Users\hannibla34\Downloads\Die letzte Geschichte des Urang-Utan wdr_fernsehen_quarks_und_co_20140916.mp4
2014-10-29 13:32 - 2014-10-29 13:37 - 203582457 _____ () C:\Users\hannibla34\Downloads\Alles unverträglich - wenn Lebensmittel krank machen wdr_fernsehen_quarks_und_co_20140923.mp4
2014-10-29 13:31 - 2014-10-29 13:35 - 182470424 _____ () C:\Users\hannibla34\Downloads\Geld regiert - regieren wir mit. wdr_fernsehen_quarks_und_co_20140930.mp4
2014-10-29 13:28 - 2014-10-29 13:32 - 171505679 _____ () C:\Users\hannibla34\Downloads\Heimliche Herrscher - die wundersame Welt der Pilze wdr_fernsehen_quarks_und_co_20141007.mp4
2014-10-29 13:27 - 2014-10-29 13:31 - 170323950 _____ () C:\Users\hannibla34\Downloads\Die Eifel wdr_fernsehen_quarks_und_co_20141028.mp4
2014-10-28 19:04 - 2014-10-28 19:05 - 00000000 ____D () C:\Users\hannibla34\Downloads\Das Internet  - Netz der Neze
2014-10-28 13:29 - 2014-10-28 13:31 - 169488764 _____ () C:\Users\hannibla34\Downloads\Doku_Unser_T_glich_Tier_-_Morden_f_r_die_Rendite_Dokumentatin_Deutsch_2014.mp4
2014-10-26 15:03 - 2014-10-26 15:04 - 58325413 _____ () C:\Users\hannibla34\Downloads\bertus 82 sucking a friend 480_800_c4iDW-C794-.mp4
2014-10-26 14:53 - 2014-10-26 14:56 - 179107001 _____ () C:\Users\hannibla34\Downloads\das ich sexy slave 480_800_AhElW-G394-.mp4

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-22 15:46 - 2014-06-09 14:30 - 00000000 ____D () C:\AdwCleaner
2014-11-22 15:44 - 2014-08-05 11:28 - 01663378 _____ () C:\Windows\WindowsUpdate.log
2014-11-22 15:32 - 2014-06-09 00:40 - 00000000 ____D () C:\Windows\CryptoGuard
2014-11-22 15:29 - 2014-01-15 13:59 - 00000025 ___SH () C:\Windows\SysWOW64\ReadTag.ini
2014-11-22 15:29 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-22 15:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2014-11-22 12:42 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-11-22 00:59 - 2014-10-16 17:26 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-903397656-3433550281-814490945-1002
2014-11-22 00:18 - 2014-05-14 21:43 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{08EFB189-B037-4AB9-A7C2-4ACFAED22B82}
2014-11-21 23:52 - 2014-05-20 22:25 - 00000100 _____ () C:\index.ini
2014-11-21 23:51 - 2014-05-20 22:23 - 00000000 ____D () C:\EEK
2014-11-21 23:38 - 2014-05-16 05:15 - 00000000 ____D () C:\ProgramData\SystemExplorer
2014-11-21 23:31 - 2014-05-19 03:05 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\TV-Browser
2014-11-21 21:20 - 2014-05-17 07:22 - 00002228 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-11-20 14:15 - 2014-05-16 04:10 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\vlc
2014-11-20 00:11 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34
2014-11-19 18:56 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-11-19 17:58 - 2014-05-16 03:59 - 00000000 ___RD () C:\Users\hannibla34\Documents\Eigene Dateien
2014-11-19 17:08 - 2014-05-15 02:19 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-11-19 17:07 - 2014-05-15 02:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-11-17 16:44 - 2014-06-14 18:34 - 03220480 ___SH () C:\Users\hannibla34\Downloads\Thumbs.db
2014-11-17 16:03 - 2014-01-09 10:06 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-17 16:03 - 2013-09-13 21:22 - 00763218 _____ () C:\Windows\system32\perfh007.dat
2014-11-17 16:03 - 2013-09-13 21:22 - 00159364 _____ () C:\Windows\system32\perfc007.dat
2014-11-17 15:12 - 2013-08-22 15:44 - 00481072 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-17 15:11 - 2013-08-22 20:11 - 00000000 ____D () C:\Windows\SKB
2014-11-17 15:11 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-11-17 00:47 - 2014-01-15 13:55 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS
2014-11-17 00:47 - 2014-01-09 10:02 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-13 22:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-11-12 17:57 - 2014-07-09 20:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-11-12 17:55 - 2014-05-15 01:57 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-12 17:52 - 2014-05-15 01:57 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-12 11:52 - 2014-05-14 21:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-10 17:32 - 2014-10-19 23:30 - 00015223 _____ () C:\Users\hannibla34\Documents\nachforschen.odt
2014-11-10 17:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2014-11-10 17:08 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Packages
2014-11-10 17:01 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\ASUS
2014-11-10 16:25 - 2014-05-14 21:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-09 23:49 - 2014-08-05 11:40 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-30 01:55 - 2013-08-22 16:38 - 00714208 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-10-30 01:55 - 2013-08-22 16:38 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-29 18:30 - 2014-09-06 17:58 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Adobe
2014-10-28 17:55 - 2014-10-21 15:56 - 00000258 _____ () C:\Windows\Tasks\ASC7_SkipUac_hannibla34.job
2014-10-26 18:55 - 2014-10-21 15:56 - 00002370 _____ () C:\Windows\System32\Tasks\ASC7_SkipUac_hannibla34
2014-10-25 11:12 - 2014-05-15 03:11 - 00000841 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-10-25 11:12 - 2014-05-15 03:11 - 00000000 ____D () C:\Program Files\CCleaner
2014-10-23 15:53 - 2014-05-19 03:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java

Some content of TEMP:
====================
C:\Users\hannibla34\AppData\Local\Temp\Quarantine.exe
C:\Users\hannibla34\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-22 02:39

==================== End Of Log ============================

--- --- ---
Grüße

krautsand

schrauber 23.11.2014 08:22


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme? :)

krautsand 23.11.2014 18:23

Hallo Schrauber,

hier die Ergebnisse.

Vor dem Einsetzen habe ich die Firewall und das Virenschutzprogramm ausgeschaltet, da ich aber ESET Smart Security Pro installiert habe,wiß ich nicht, ob dies nicht doch den Online Scanner tangiert.

ESeT Online Scanner:

ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=46de920865468441b35f90675b7574cb
# engine=21227
# end=stopped
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2014-11-23 05:00:38
# local_time=2014-11-23 06:00:38 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 94 105492 7066357 0 0
# compatibility_mode_1='ESET Smart Security 8.0'
# compatibility_mode=8228 16777213 100 100 160969 5391632 0 0
# scanned=51524
# found=0
# cleaned=0
# scan_time=937
# nod_component=V3 Build:0x30000000

Security Check:

Results of screen317's Security Check version 0.99.90
x64 (UAC is enabled)
Internet Explorer 11
``````````````Antivirus/Firewall Check:``````````````
ESET Smart Security 8.0
Windows Defender
Antivirus up to date!
`````````Anti-malware/Other Utilities Check:`````````
Java version out of Date!
Adobe Flash Player 15.0.0.189
Adobe Reader 10.1.12 Adobe Reader out of Date!
Mozilla Firefox (33.1)
Mozilla Thunderbird (31.2.0)
````````Process Check: objlist.exe by Laurent````````
ESET NOD32 Antivirus egui.exe
ESET NOD32 Antivirus ekrn.exe
Malwarebytes Anti-Malware mbamservice.exe
Malwarebytes Anti-Malware mbam.exe
ESET ESET Online Scanner OnlineScannerApp.exe
Malwarebytes Anti-Malware mbamscheduler.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: %
````````````````````End of Log``````````````````````

Farbar:
FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-11-2014
Ran by hannibla34 (administrator) on WO on 23-11-2014 18:09:35
Running from C:\Users\hannibla34\Downloads
Loaded Profile: hannibla34 (Available profiles: hannibla34)
Platform: Windows 8.1 (X64) OS Language: Englisch (Vereinigte Staaten)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
(SurfRight B.V.) C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\SysWOW64\AsHookDevice.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe
(ASUSTeK) C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\swriter.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Farbar) C:\Users\hannibla34\Downloads\FRST64(1).exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7199448 2013-09-05] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-30] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] ()
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5595336 2014-10-01] (ESET)
HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] ()
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3216032 2014-01-09] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Run: [Advanced SystemCare 7] => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2281248 2014-08-22] (IObit)
HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [6501656 2014-10-23] (Piriform Ltd)
Startup: C:\Users\hannibla34\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk
ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe ()
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-903397656-3433550281-814490945-1002\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\.DEFAULT -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> DefaultScope {F7FA0E18-88F4-47FD-97EF-19FE83C440CC} URL = https://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=ASJB
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> {F7FA0E18-88F4-47FD-97EF-19FE83C440CC} URL = https://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292
FF SelectedSearchEngine: Google
FF Homepage: about:home
FF Keyword.URL: https://de.search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=198484&p=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_189.dll ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_189.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-903397656-3433550281-814490945-1002: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\duckduckgo.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\dudende-suche.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\google-maps.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\metager.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\searchplugins\wikipedia-en-ssl.xml
FF Extension: Avira Browser Safety - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\abs@avira.com [2014-11-20]
FF Extension: FoxyProxy Standard - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\foxyproxy@eric.h.jung [2014-09-06]
FF Extension: EPUBReader - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F} [2014-09-05]
FF Extension: DownloadHelper - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-06]
FF Extension: Adblock Plus Pop-up Addon - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\adblockpopups@jessehakanen.net.xpi [2014-09-05]
FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\elemhidehelper@adblockplus.org.xpi [2014-09-05]
FF Extension: SQLite Manager - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\SQLiteManager@mrinalkant.blogspot.com.xpi [2014-11-17]
FF Extension: Adblock Plus Filter Uploader - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\uploader@adblockfilters.mozdev.org.xpi [2014-09-05]
FF Extension: ImTranslator - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2014-09-06]
FF Extension: Adblock Plus - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-05]
FF Extension: Adblock Edge - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2014-09-05]
FF HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\0ttgmzek.default-1409921577292\extensions\cliqz@cliqz.com

Chrome:
=======
CHR Profile: C:\Users\hannibla34\AppData\Local\Google\Chrome\User Data\Default

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [893216 2014-08-18] (IObit)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2013-08-28] ()
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 Device Handle Service; C:\Windows\SysWOW64\AsHookDevice.exe [207160 2013-08-08] ()
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1349576 2014-10-01] (ESET)
R2 hmpalertsvc; C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe [1876816 2014-06-09] (SurfRight B.V.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-19] (Intel Corporation)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2282272 2014-08-19] (IObit)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-10-01] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [968504 2014-10-01] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
S3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [821096 2014-08-13] (Mister Group)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 A2DDA; C:\EEK\RUN\a2ddax64.sys [26176 2013-08-19] (Emsisoft GmbH)
R3 AiChargerDT; C:\Windows\SysWow64\drivers\AiChargerDT.sys [14880 2012-10-18] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 cleanhlp; C:\EEK\Run\cleanhlp64.sys [57024 2014-05-20] (Emsisoft GmbH)
S3 cpuz136; C:\Program Files (x86)\CPUID\PC Wizard 2013\pcwiz_x64.sys [25320 2013-08-24] (CPUID)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [469264 2013-06-26] (Intel Corporation)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-09-22] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [241368 2014-09-22] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [169280 2014-09-22] (ESET)
R2 epfw; C:\Windows\system32\DRIVERS\epfw.sys [222280 2014-09-22] (ESET)
R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [44632 2014-09-22] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [63160 2014-09-22] (ESET)
R2 hmpalert; C:\Windows\System32\drivers\hmpalert.sys [93144 2014-06-09] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-10-01] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-23] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-10-01] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-19] (Intel Corporation)
S3 MEMSWEEP2; C:\Windows\system32\2284.tmp [6144 2009-06-18] (Sophos Plc) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-23 18:08 - 2014-11-23 18:09 - 02118144 _____ (Farbar) C:\Users\hannibla34\Downloads\FRST64(1).exe
2014-11-23 18:06 - 2014-11-23 18:06 - 00001058 _____ () C:\Users\hannibla34\Documents\security check checkup.txt
2014-11-23 18:05 - 2014-11-23 18:05 - 00854414 _____ () C:\Users\hannibla34\Downloads\SecurityCheck.exe
2014-11-23 18:04 - 2014-11-23 18:04 - 00000093 ____H () C:\Users\hannibla34\Downloads\.~lock.ESET online scan log vom 24.11.14 2. Scan.txt#
2014-11-23 16:54 - 2014-11-23 16:54 - 02347384 _____ (ESET) C:\Users\hannibla34\Downloads\esetsmartinstaller_deu(3).exe
2014-11-23 16:49 - 2014-11-23 16:49 - 02347384 _____ (ESET) C:\Users\hannibla34\Downloads\esetsmartinstaller_deu(2).exe
2014-11-23 16:46 - 2014-11-23 16:46 - 02347384 _____ (ESET) C:\Users\hannibla34\Downloads\esetsmartinstaller_deu(1).exe
2014-11-23 16:27 - 2014-11-23 16:27 - 00000617 _____ () C:\Users\hannibla34\Downloads\Eset Online Scan vom 24.11.2014
2014-11-22 17:50 - 2014-11-22 17:50 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\22083245.sys
2014-11-22 16:04 - 2014-11-22 16:04 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything
2014-11-22 15:51 - 2014-11-22 15:51 - 00058053 _____ () C:\Users\hannibla34\Downloads\22.11.14 Frabar s RecoverScan Tool. txt.txt
2014-11-22 15:50 - 2014-11-23 18:09 - 00019706 _____ () C:\Users\hannibla34\Downloads\FRST.txt
2014-11-22 15:49 - 2014-11-23 18:09 - 00000000 ____D () C:\FRST
2014-11-22 15:49 - 2014-11-22 15:49 - 02118144 _____ (Farbar) C:\Users\hannibla34\Downloads\FRST64.exe
2014-11-22 15:40 - 2014-11-22 15:40 - 00000619 _____ () C:\Users\hannibla34\Desktop\JRT.txt
2014-11-22 15:25 - 2014-11-22 15:25 - 02140160 _____ () C:\Users\hannibla34\Downloads\adwcleaner_4.101.exe
2014-11-22 15:17 - 2014-11-22 16:12 - 00001608 _____ () C:\Users\hannibla34\Downloads\junkware Rmoval tool vom 222.11.14JRT.txt
2014-11-22 15:09 - 2014-11-22 15:09 - 01707532 _____ (Thisisu) C:\Users\hannibla34\Downloads\JRT_6.3.9.exe
2014-11-22 15:09 - 2014-11-22 15:09 - 00000000 ____D () C:\Windows\ERUNT
2014-11-22 14:32 - 2014-11-22 14:32 - 19669382 _____ () C:\Users\hannibla34\Downloads\krieol47 f 480_800_cInUP-G295-.mp4
2014-11-21 19:43 - 2014-11-21 19:43 - 00000000 ____D () C:\NVIDIA Corporation
2014-11-21 11:23 - 2014-11-21 11:23 - 00180434 _____ () C:\Users\hannibla34\Downloads\21.11.2014 OTL.Txt
2014-11-20 15:29 - 2014-11-20 15:29 - 00031924 _____ () C:\Users\hannibla34\Downloads\Farbor Scan Addition txt Addition.txt
2014-11-20 15:24 - 2014-11-20 15:24 - 00057675 _____ () C:\Users\hannibla34\Downloads\Farbor Scan 19.11.2014FRST.txt
2014-11-20 15:16 - 2014-11-22 15:54 - 00030942 _____ () C:\Users\hannibla34\Downloads\Addition.txt
2014-11-20 14:15 - 2014-11-20 14:15 - 20897443 _____ () C:\Users\hannibla34\Downloads\b j 480_300_jL2pT-G595-.mp4
2014-11-20 00:11 - 2014-11-20 00:11 - 00000000 _____ () C:\Users\hannibla34\defogger_reenable
2014-11-19 18:56 - 2014-10-30 12:25 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-19 18:55 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 18:55 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 18:55 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 18:55 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-19 18:05 - 2014-11-19 18:05 - 02347384 _____ (ESET) C:\Users\hannibla34\Downloads\esetsmartinstaller_deu.exe
2014-11-19 17:15 - 2014-11-19 17:15 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\ESET
2014-11-19 17:15 - 2014-11-19 17:15 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\ESET
2014-11-19 17:13 - 2014-11-19 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2014-11-19 17:13 - 2014-11-19 17:13 - 00000000 ____D () C:\ProgramData\ESET
2014-11-19 17:13 - 2014-11-19 17:13 - 00000000 ____D () C:\Program Files\ESET
2014-11-19 17:06 - 2014-11-19 17:06 - 01660616 _____ (ESET) C:\Users\hannibla34\Downloads\eset_smart_security_live_installer_.exe
2014-11-19 16:36 - 2014-11-19 16:36 - 00182422 _____ () C:\Users\hannibla34\Downloads\19.11.2014 OTL.Txt
2014-11-19 16:19 - 2014-11-21 19:43 - 00001400 _____ () C:\Users\hannibla34\Downloads\Eset Online Scan vom 19.11.2014
2014-11-18 20:32 - 2014-11-18 20:32 - 00000000 __SHD () C:\Users\hannibla34\AppData\Local\EmieBrowserModeList
2014-11-18 18:33 - 2014-11-18 18:33 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-11-18 13:09 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\2284.tmp
2014-11-18 13:06 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\ADF9.tmp
2014-11-17 16:27 - 2014-11-17 16:27 - 00178666 _____ () C:\Users\hannibla34\Downloads\OTL 17.11.2014.txt
2014-11-16 23:40 - 2014-11-23 16:57 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-16 23:40 - 2014-11-16 23:40 - 00001121 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-16 23:40 - 2014-11-16 23:40 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-11-16 23:40 - 2014-11-16 23:40 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-16 23:40 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-16 23:40 - 2014-10-01 11:11 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-16 23:40 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-16 23:39 - 2014-11-16 23:39 - 01125200 _____ () C:\Users\hannibla34\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer.exe
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\ProgramData\XDMessagingv4
2014-11-16 18:26 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\CC15.tmp
2014-11-16 18:23 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\6385.tmp
2014-11-16 18:22 - 2014-11-21 19:21 - 00000000 ____D () C:\Program Files (x86)\Sophos
2014-11-16 18:22 - 2014-11-16 18:22 - 01125200 _____ () C:\Users\hannibla34\Downloads\Sophos Anti Rootkit - CHIP-Installer.exe
2014-11-15 15:32 - 2014-11-15 15:45 - 123159913 _____ () C:\Users\hannibla34\Downloads\cpl 3751316.flv
2014-11-15 14:42 - 2014-11-15 14:43 - 48967526 _____ () C:\Users\hannibla34\Downloads\cumgur my neigbour 480_794_qH65S-G795-.mp4
2014-11-12 17:52 - 2014-10-31 06:28 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 17:52 - 2014-10-31 04:42 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 17:52 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-11-12 17:52 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 17:52 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 17:52 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-11-12 17:52 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-11-12 17:52 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-11-12 17:52 - 2014-10-08 06:32 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-11-12 17:52 - 2014-10-08 06:19 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-11-12 17:52 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2014-11-12 17:52 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2014-11-12 17:52 - 2014-09-27 04:38 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 17:52 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2014-11-12 17:52 - 2014-09-27 04:17 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 17:52 - 2014-09-22 05:38 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2014-11-12 17:52 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2014-11-12 17:52 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2014-11-12 17:52 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2014-11-12 17:52 - 2014-09-19 01:16 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2014-11-12 17:52 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2014-11-12 17:52 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2014-11-12 17:51 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-11-12 17:51 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-11-12 17:51 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-11-12 17:51 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-11-12 17:51 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-11-12 17:51 - 2014-10-31 06:06 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 17:51 - 2014-10-31 06:05 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 17:51 - 2014-10-31 06:05 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-11-12 17:51 - 2014-10-31 06:04 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 17:51 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 17:51 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 17:51 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-11-12 17:51 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 17:51 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2014-11-12 17:51 - 2014-10-31 05:51 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-11-12 17:51 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 17:51 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 17:51 - 2014-10-31 05:50 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 17:51 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 17:51 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-11-12 17:51 - 2014-10-31 05:38 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 17:51 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 17:51 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-11-12 17:51 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-11-12 17:51 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-11-12 17:51 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 17:51 - 2014-10-31 05:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 17:51 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-11-12 17:51 - 2014-10-31 05:23 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-11-12 17:51 - 2014-10-31 05:21 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 17:51 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-11-12 17:51 - 2014-10-31 05:15 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-11-12 17:51 - 2014-10-31 05:08 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-11-12 17:51 - 2014-10-31 05:06 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 17:51 - 2014-10-31 05:05 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 17:51 - 2014-10-31 05:05 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 17:51 - 2014-10-31 05:03 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 17:51 - 2014-10-31 04:59 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 17:51 - 2014-10-31 04:45 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 17:51 - 2014-10-31 04:44 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2014-11-12 17:51 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-11-12 17:51 - 2014-10-31 04:32 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 17:51 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-11-12 17:51 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-11-12 17:51 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-11-12 17:51 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-11-12 17:51 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-11-12 17:51 - 2014-10-31 04:24 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 17:51 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-11-12 17:51 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 17:51 - 2014-10-31 04:23 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-11-12 17:51 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 17:51 - 2014-10-31 04:22 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 17:51 - 2014-10-31 04:20 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 17:51 - 2014-10-31 04:18 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 17:51 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 17:51 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 17:51 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-11-12 17:51 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 17:51 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2014-11-12 17:51 - 2014-10-31 04:12 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-11-12 17:51 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 17:51 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 17:51 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-11-12 17:51 - 2014-10-31 04:02 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 17:51 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-11-12 17:51 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 17:51 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-11-12 17:51 - 2014-10-31 03:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 17:51 - 2014-10-31 03:51 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-11-12 17:51 - 2014-10-31 03:50 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 17:51 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-11-12 17:51 - 2014-10-31 03:46 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 17:51 - 2014-10-31 03:46 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-11-12 17:51 - 2014-10-31 03:42 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-11-12 17:51 - 2014-10-31 03:40 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 17:51 - 2014-10-31 03:40 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 17:51 - 2014-10-31 03:39 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 17:51 - 2014-10-31 03:30 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 17:51 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2014-11-12 17:51 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-11-12 17:51 - 2014-10-31 03:17 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 17:51 - 2014-10-31 03:13 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 17:51 - 2014-10-31 03:11 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 17:51 - 2014-10-18 10:55 - 00055776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-11-12 17:51 - 2014-10-18 09:09 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-11-12 17:51 - 2014-10-18 09:09 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-11-12 17:51 - 2014-10-18 08:25 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-11-12 17:51 - 2014-10-18 07:50 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll
2014-11-12 17:51 - 2014-10-18 07:38 - 03557376 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-11-12 17:51 - 2014-10-18 07:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-11-12 17:51 - 2014-10-18 07:26 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-11-12 17:51 - 2014-10-18 07:23 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2014-11-12 17:51 - 2014-10-18 07:23 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-11-12 17:51 - 2014-10-18 07:21 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-11-12 17:51 - 2014-10-18 07:20 - 01714176 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-11-12 17:51 - 2014-10-18 07:14 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-11-12 17:51 - 2014-10-18 07:14 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-11-12 17:51 - 2014-10-18 07:12 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-11-12 17:51 - 2014-10-18 07:11 - 00723968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-11-12 17:51 - 2014-10-17 08:01 - 00789184 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 17:51 - 2014-10-17 07:58 - 00602768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-12 17:51 - 2014-10-10 02:58 - 00177472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 17:51 - 2014-10-10 02:58 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-11-12 17:51 - 2014-10-10 02:44 - 00563976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-11-12 17:51 - 2014-10-08 08:37 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 17:51 - 2014-10-08 08:37 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 17:51 - 2014-10-08 08:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-11-12 17:51 - 2014-10-08 08:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2014-11-12 17:51 - 2014-10-08 07:56 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2014-11-12 17:51 - 2014-10-08 07:51 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 17:51 - 2014-10-08 07:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 17:51 - 2014-10-08 07:18 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2014-11-12 17:51 - 2014-10-08 07:17 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 17:51 - 2014-10-08 06:23 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-11-12 17:50 - 2014-11-05 00:38 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-12 17:50 - 2014-11-04 01:10 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-12 17:50 - 2014-10-31 05:53 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-11-12 17:50 - 2014-10-31 05:49 - 00537088 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-12 17:50 - 2014-10-31 05:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-11-12 17:50 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 17:50 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 17:50 - 2014-10-07 07:28 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 17:50 - 2014-10-07 07:27 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 17:50 - 2014-10-07 07:27 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 17:50 - 2014-10-07 07:27 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2014-11-12 17:50 - 2014-10-07 04:34 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 17:50 - 2014-10-07 04:34 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 17:50 - 2014-10-07 04:30 - 04182016 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 17:50 - 2014-10-07 02:54 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2014-11-12 17:50 - 2014-10-07 02:46 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 17:50 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-11-12 17:50 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-11-12 17:50 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-11-12 17:50 - 2014-09-07 23:08 - 00389176 _____ () C:\Windows\system32\ApnDatabase.xml
2014-11-12 17:50 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-11-12 17:50 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-11-12 17:50 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2014-11-12 17:50 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2014-11-12 17:50 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2014-11-12 17:50 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2014-11-12 17:50 - 2014-08-31 01:17 - 00148800 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2014-11-12 17:50 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-11-12 17:50 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-11-12 17:50 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2014-11-12 17:50 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2014-11-12 17:50 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2014-11-12 17:50 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll
2014-11-12 17:50 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2014-11-12 17:50 - 2014-08-28 03:55 - 07484224 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-11-12 17:50 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-11-12 17:50 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-11-12 17:50 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 17:50 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2014-11-12 17:50 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2014-11-12 17:50 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 17:50 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2014-11-12 17:50 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2014-11-12 17:50 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2014-11-12 17:49 - 2014-10-07 07:27 - 00108432 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 17:49 - 2014-10-07 04:33 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 13:15 - 2014-11-12 13:16 - 141165145 _____ () C:\Users\hannibla34\Downloads\Rot-rot-grün - heute Erfurt, morgenBerlin 141023_phx_runde_414k_p20v9.mp4
2014-11-12 13:11 - 2014-11-12 13:13 - 141184159 _____ () C:\Users\hannibla34\Downloads\Steuertricks in Luxemburg -Junkers unter Druck 141111_phx_runde_414k_p20v9.mp4
2014-11-12 12:54 - 2014-11-12 12:54 - 64529579 _____ () C:\Users\hannibla34\Downloads\sulazodechaval polih fat cock 480_800_cu70g-G295-.mp4
2014-11-12 12:43 - 2014-11-12 12:48 - 270976369 _____ () C:\Users\hannibla34\Downloads\lazing on a sunny afternoon 480_800_s5bYM-G883-.mp4
2014-11-11 16:21 - 2014-11-15 14:18 - 00000000 ____D () C:\Users\hannibla34\Downloads\Sicherheit im Internet- Onlinekurs des hasso-Plattner-Instituts
2014-11-10 17:24 - 2014-11-10 17:24 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\WindowsAppBoss
2014-11-10 16:40 - 2014-11-10 16:40 - 00988339 _____ () C:\Users\hannibla34\Downloads\Everything-1.3.4.686.x64.Multilingual-Setup.exe
2014-11-10 16:30 - 2014-11-22 16:41 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Everything
2014-11-10 16:30 - 2014-11-22 16:04 - 00000000 ____D () C:\Program Files\Everything
2014-11-09 13:45 - 2014-11-15 23:25 - 00002782 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-08 21:08 - 2014-11-08 21:11 - 168401304 _____ () C:\Users\hannibla34\Downloads\Die Würde ist antastbar.wma
2014-11-08 15:23 - 2014-11-18 17:21 - 00072640 _____ () C:\Users\hannibla34\Documents\Malware.odt
2014-11-08 00:43 - 2014-11-08 00:48 - 212653971 _____ () C:\Users\hannibla34\Downloads\Suizid im alter 141106_sendung_suizid_scobel_446k_p20v11.mp4
2014-11-08 00:43 - 2014-11-08 00:47 - 218337076 _____ () C:\Users\hannibla34\Downloads\Bewusst essen Scobel 141023_ganze_sendung_scobel_446k_p20v11.mp4
2014-11-07 18:43 - 2014-11-07 18:43 - 14592501 _____ () C:\Users\hannibla34\Downloads\s und f 480_800_hmxUZ-G195-.mp4
2014-11-07 18:32 - 2014-11-07 18:38 - 00000000 ____D () C:\Users\hannibla34\Downloads\Tarifverträge für Tiermedizinishce Fachangestellte
2014-11-06 17:59 - 2014-11-06 18:01 - 89338442 _____ () C:\Users\hannibla34\Downloads\suck 480_800_psNUx-G795-.mp4
2014-11-05 18:54 - 2014-11-05 19:00 - 42620327 _____ () C:\Users\hannibla34\Downloads\paki cpl 3661462.flv
2014-11-02 21:37 - 2014-11-02 21:41 - 234021342 _____ () C:\Users\hannibla34\Downloads\cagli 76 cuba ric o 480_800_nkJaB-S477-.mp4
2014-11-02 21:36 - 2014-11-02 21:38 - 66318603 _____ () C:\Users\hannibla34\Downloads\cagli76 cuban straight having sex inrented apt - it hurts 480_600_RXc3t-S570-.mp4
2014-10-30 18:06 - 2014-10-30 18:10 - 152402358 _____ () C:\Users\hannibla34\Downloads\evergreenguys hot couple sunday sex 480_688_ntsxa-G794-.mp4
2014-10-30 18:01 - 2014-10-30 18:03 - 103579104 _____ () C:\Users\hannibla34\Downloads\chadluvs suxking 480_800_x0jhz-G694-.mp4
2014-10-30 17:45 - 2014-10-30 17:45 - 15769557 _____ () C:\Users\hannibla34\Downloads\raisei homecumming 480_800_Gmk58-G594-.mp4
2014-10-30 17:36 - 2014-10-30 17:36 - 17041145 _____ () C:\Users\hannibla34\Downloads\lovemusicnudefreedom 480_567_DIONb-G594-.mp4
2014-10-30 16:40 - 2014-11-21 15:12 - 00000000 ____D () C:\Users\hannibla34\Documents\My Digital Editions
2014-10-29 13:37 - 2014-10-29 13:40 - 182023917 _____ () C:\Users\hannibla34\Downloads\Edelschimmel und Scheibletten - die Wissenschaft vom Käse wdr_fernsehen_quarks_und_co_20140909.mp4
2014-10-29 13:35 - 2014-10-29 13:38 - 181354002 _____ () C:\Users\hannibla34\Downloads\Die letzte Geschichte des Urang-Utan wdr_fernsehen_quarks_und_co_20140916.mp4
2014-10-29 13:32 - 2014-10-29 13:37 - 203582457 _____ () C:\Users\hannibla34\Downloads\Alles unverträglich - wenn Lebensmittel krank machen wdr_fernsehen_quarks_und_co_20140923.mp4
2014-10-29 13:31 - 2014-10-29 13:35 - 182470424 _____ () C:\Users\hannibla34\Downloads\Geld regiert - regieren wir mit. wdr_fernsehen_quarks_und_co_20140930.mp4
2014-10-29 13:28 - 2014-10-29 13:32 - 171505679 _____ () C:\Users\hannibla34\Downloads\Heimliche Herrscher - die wundersame Welt der Pilze wdr_fernsehen_quarks_und_co_20141007.mp4
2014-10-29 13:27 - 2014-10-29 13:31 - 170323950 _____ () C:\Users\hannibla34\Downloads\Die Eifel wdr_fernsehen_quarks_und_co_20141028.mp4
2014-10-28 19:04 - 2014-10-28 19:05 - 00000000 ____D () C:\Users\hannibla34\Downloads\Das Internet  - Netz der Neze
2014-10-28 13:29 - 2014-10-28 13:31 - 169488764 _____ () C:\Users\hannibla34\Downloads\Doku_Unser_T_glich_Tier_-_Morden_f_r_die_Rendite_Dokumentatin_Deutsch_2014.mp4
2014-10-26 15:03 - 2014-10-26 15:04 - 58325413 _____ () C:\Users\hannibla34\Downloads\bertus 82 sucking a friend 480_800_c4iDW-C794-.mp4
2014-10-26 14:53 - 2014-10-26 14:56 - 179107001 _____ () C:\Users\hannibla34\Downloads\das ich sexy slave 480_800_AhElW-G394-.mp4

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-23 18:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2014-11-23 17:28 - 2014-01-09 10:06 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-23 17:28 - 2013-09-13 21:22 - 00763218 _____ () C:\Windows\system32\perfh007.dat
2014-11-23 17:28 - 2013-09-13 21:22 - 00159364 _____ () C:\Windows\system32\perfc007.dat
2014-11-23 16:12 - 2014-06-09 00:40 - 00000000 ____D () C:\Windows\CryptoGuard
2014-11-23 15:49 - 2014-10-16 17:26 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-903397656-3433550281-814490945-1002
2014-11-23 15:10 - 2014-05-17 07:22 - 00002228 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-11-23 15:04 - 2014-08-05 11:28 - 01796797 ____N () C:\Windows\WindowsUpdate.log
2014-11-23 14:04 - 2014-05-19 03:05 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\TV-Browser
2014-11-23 12:51 - 2014-05-14 21:43 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{08EFB189-B037-4AB9-A7C2-4ACFAED22B82}
2014-11-23 12:44 - 2014-01-15 13:59 - 00000025 ___SH () C:\Windows\SysWOW64\ReadTag.ini
2014-11-23 12:44 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-22 16:40 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-11-22 16:09 - 2014-06-14 18:34 - 03220480 ___SH () C:\Users\hannibla34\Downloads\Thumbs.db
2014-11-22 15:46 - 2014-06-09 14:30 - 00000000 ____D () C:\AdwCleaner
2014-11-22 12:42 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-11-21 23:52 - 2014-05-20 22:25 - 00000100 _____ () C:\index.ini
2014-11-21 23:51 - 2014-05-20 22:23 - 00000000 ____D () C:\EEK
2014-11-21 23:38 - 2014-05-16 05:15 - 00000000 ____D () C:\ProgramData\SystemExplorer
2014-11-20 14:15 - 2014-05-16 04:10 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\vlc
2014-11-20 00:11 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34
2014-11-19 17:58 - 2014-05-16 03:59 - 00000000 ___RD () C:\Users\hannibla34\Documents\Eigene Dateien
2014-11-19 17:08 - 2014-05-15 02:19 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-11-19 17:07 - 2014-05-15 02:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-11-17 15:12 - 2013-08-22 15:44 - 00481072 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-17 15:11 - 2013-08-22 20:11 - 00000000 ____D () C:\Windows\SKB
2014-11-17 15:11 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-11-17 00:47 - 2014-01-15 13:55 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS
2014-11-17 00:47 - 2014-01-09 10:02 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-13 22:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-11-12 17:57 - 2014-07-09 20:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-11-12 17:55 - 2014-05-15 01:57 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-12 17:52 - 2014-05-15 01:57 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-12 11:52 - 2014-05-14 21:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-10 17:32 - 2014-10-19 23:30 - 00015223 _____ () C:\Users\hannibla34\Documents\nachforschen.odt
2014-11-10 17:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2014-11-10 17:08 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Packages
2014-11-10 17:01 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\ASUS
2014-11-10 16:25 - 2014-05-14 21:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-09 23:49 - 2014-08-05 11:40 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-30 01:55 - 2013-08-22 16:38 - 00714208 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-10-30 01:55 - 2013-08-22 16:38 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-29 18:30 - 2014-09-06 17:58 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Adobe
2014-10-28 17:55 - 2014-10-21 15:56 - 00000258 _____ () C:\Windows\Tasks\ASC7_SkipUac_hannibla34.job
2014-10-26 18:55 - 2014-10-21 15:56 - 00002370 _____ () C:\Windows\System32\Tasks\ASC7_SkipUac_hannibla34
2014-10-25 11:12 - 2014-05-15 03:11 - 00000841 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-10-25 11:12 - 2014-05-15 03:11 - 00000000 ____D () C:\Program Files\CCleaner

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-22 02:39

==================== End Of Log ============================

--- --- ---

Ob alles in Ordnung ist. Das glaube ich nicht.

Grüße

krautsand

schrauber 24.11.2014 17:56

Zitat:

Ob alles in Ordnung ist. Das glaube ich nicht.
geht das genauer? :)

krautsand 24.11.2014 18:27

Hallo Schrauber,

Der Hintergrundprozess ASHookDivice for USB Lock beansprucht auf dem Rechner im Laufe einer Sitzung immer mehr Kapazität des Arbeitsspeichers. Auch der Firefox-Browser benötigt überduchschnittlich viel und immer mehr im Laufe einer Sitzung.

Der Browser öffent sich ruckelig. Anfangs blinkt die Menüleiste dauernd und es finden Ladeprozesse statt. Tortz Webeblocker erhalte ich Webeeinblendungen und werde auf Seiten geleitet, die ich gar nicht kenne.

Das Hoch- und Runterfahren des Rechner dauert länger als sonst.

Ich habe den System Explorer auf dem Rechner installiert. Dort werden die Prozesse

mvstreamsvc.exe 4-5mal aufgeführt und und rot hinterlegt.
wermgr.exe 2X, die Anzeige wechselt dauernd zwidchen rot und grün.

Die Anzeigen im SystemExplorer und im Task Manager bleiben nicht ruhig stehen, sondern wackeln dauernd hin und her.

Das sind hauptsächlich die Symptome.

Grüße

krautsand

schrauber 25.11.2014 16:13

Deinstalliere bitte Avira, IOBIT Advanced Systemcare und ESET. Reboote und installiere bitte nur ein AV Programm, und keinen Tuning Schrott, erst recht nichts von IOBIT.

Revo Uninstaller - Download - Filepony
damit Firefox deinstallieren, keine Daten behalten, Reste entfernen lassen, neu installieren.

Dann:
https://support.mozilla.org/de/kb/fi...einfach-loesen


Dann zusätzlich in FF die Hardwarebeschleunigung deaktivieren.


Nun bitte deine Probleme nochmal durchtesten und frische FRST logs anfertigen.

krautsand 28.11.2014 17:45

Hallo Schrauber,

dies ist jetzt der dritte Versuch einer Antwort.

Ich habe jetzt nur noch Antivir als AV-Programm, IOBIT habe ich gelöscht. Welche Schrott Programme meinst du denn sonst noch.

FF habe ich neu installiert und nicht übernehmen gewählt Dennoch waren nur die Add-ons weg, die alten Plugins und die Lesezeichen sind noch da.

FF öffnet sich jetzt deutlich schneller, Die Menüleiste blinkt nicht dauernd, dennoch ist der Verbrauch an Arbeitsspecher hoch und nimmt im Laufe einer Sitzung zu. Dasselbe gilt nach wie vor für AsHookDevice for USB Lock.

Die FRST logfile ist inzwischen zu lang. Ich kürze sie, weil weil ich mit der Anleitung "logfiles als Anhang posten nicht klarkomme.

Hallo Schrauber,

dies ist jetzt der dritte Versuch einer Antwort.

Ich habe jetzt nur noch Antivir als AV-Programm, IOBIT habe ich gelöscht. Welche Schrott Programme meinst du denn sonst noch.

FF habe ich neu installiert und nicht übernehmen gewählt Dennoch waren nur die Add-ons weg, die alten Plugins und die Lesezeichen sind noch da.

FF öffnet sich jetzt deutlich schneller, Die Menüleiste blinkt nicht dauernd, dennoch ist der Verbrauch an Arbeitsspecher hoch und nimmt im Laufe einer Sitzung zu. Dasselbe gilt nach wie vor für AsHookDevice for USB Lock.

Die FRST logfile ist inzwischen zu lang. Ich kürze sie, weil weil ich mit der Anleitung "logfiles als Anhang posten nicht klarkomme.

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by hannibla34 (administrator) on WO on 28-11-2014 16:36:54
Running from C:\Users\hannibla34\Downloads

Das halt ich jetzt nicht mehr aus. Mit der Anleitung logfile als Anhang posten komme ich nicht klar.
Wie kann ich 7zip nach der Installation öffnen? ich krieg das nicht hin

Grüße

krautsand

schrauber 29.11.2014 18:22

POste das Log doch einfach wie immer in Codetags. Wenn es zu lang ist in Stücke teilen und mehrere Antworten nutzen.

Zitat:

FF öffnet sich jetzt deutlich schneller, Die Menüleiste blinkt nicht dauernd, dennoch ist der Verbrauch an Arbeitsspecher hoch und nimmt im Laufe einer Sitzung zu. Dasselbe gilt nach wie vor für AsHookDevice for USB Lock.
Hast Du nach neuinstallation auch zurückgesetzt und die Hardwarebeschleunigung in FF deaktiviert???

krautsand 01.12.2014 16:04

Hallo Schrauber,

Ja, ich hatte FF nach der Neuinstallation zurückgesetzt. Das ständige Blinken der Menüleiste setzte nach der Installation von AViRA Browserschutz wieder ein. Es war also alles wie vorher.

Gestern habe ich mir die BitBox installiert, um wenigstens das E-Banking halbwegs sicher durchführen zu können.

Zusätzlich habe ich heute UsbFix installiert. Ich habe alle esternen Festplatten angeschlossen, das Programm hat Infektionen auf zwei externen Festplatten erkannt und offensichtlich behoben.?

Im Task Manager laufen jetzt noch 39 Prozesse, sonst waren es über 70. Die Menüleiste im FF steht jetzt ruhig. Der Browser öffnet sich schneller..

Hier noch der UsbFix Report:

############################## | UsbFix V 7.806 | [Clean]

User: hannibla34 (Administrator) # WO
Updated 30/11/2014 by El Desaparecido - SosVirus
Started at 15:21:11 | 01/12/2014

Website : UsbFix - Official Website
Changelog : Changelog Archives ? UsbFix
Support : SosVirus ? SosVirus
Upload Malware : SosVirus ? Upload Malware
Live detection : How To Remove ? ? Clean your PC for free!
Contact : Contact El Desaparecido, UsbFix author

################## | System information |

MB: ASUSTeK COMPUTER INC. (K30AD_M31AD_M51AD)
CPU: Intel(R) Core(TM) i7-4770 CPU @ 3.40GHz
GC: NVIDIA GeForce GTX 650
RAM -> [Total : 8131 Mo | Free : 5936 Mo]
Bios: American Megatrends Inc.
Boot: Normal boot

OS: Microsoft™ Windows 8.1 (6.3.9600 64-Bit)
WB: Internet Explorer : 11.00.9600.16384
WB: Mozilla Firefox : 33.1.1

################## | Security Information |

AV: Avira Desktop [Enabled |Updated]
AV: Windows Defender [(!) Disabled |Updated]
AS: Avira Desktop [Enabled |Updated]
AS: Windows Defender [(!) Disabled |Updated]
AS: Malwarebytes Anti-Malware : 2.0.3.1025
FW: Windows Firewall [(!) Disabled]
SC: Security Center [Enabled]
WU: Windows Update [Enabled]

################## | Disk Information |

C:\ (%SystemDrive%) -> Fixed disk # 150 Gb (25 Gb free - 17%) [Windows] # NTFS
D:\ -> Fixed disk # 765 Gb (764 Gb free - 100%) [Data] # NTFS
I:\ -> CD-ROM # 319 Mb (0 Mb free - 0%) [VG2438 Series] # CDFS
J:\ -> Fixed disk # 932 Gb (656 Gb free - 70%) [TOSHIBA EXT] # NTFS
K:\ -> Fixed disk # 298 Gb (79 Gb free - 27%) [PLEXTOR] # FAT32
M:\ -> Fixed disk # 596 Gb (303 Gb free - 51%) [SAMSUNG] # FAT32

################## | Generic Research |

Not deleted ! ... Tentative au redémarrage... J:\Autorun.inf
Not deleted ! ... Tentative au redémarrage... M:\Autorun.inf

(!) Temporary files deleted. (18.9800252914429 MB)

################## | Registry |


################## | Regedit Run |

F2 - HKLM\..\Winlogon : [Shell] explorer.exe
F2 - [x64] HKLM\..\Winlogon : [Shell] explorer.exe
F2 - HKLM\..\Winlogon : [Userinit] userinit.exe
F2 - [x64] HKLM\..\Winlogon : [Userinit] C:\Windows\System32\Userinit.exe,
04 - HKCU\..\Run : [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
04 - HKLM\..\Run : [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
04 - HKLM\..\Run : [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
04 - HKLM\..\Run : [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
04 - HKLM\..\Run : [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
04 - HKLM\..\Run : [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
04 - HKLM\..\Run : [GDataUsbProtection] C:\Program Files (x86)\G DATA\USB KEYBOARD GUARD\GD2NDKBB.exe
04 - [x64] HKLM\..\Run : [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
04 - [x64] HKLM\..\Run : [RtHDVBg] "C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX4
04 - [x64] HKLM\..\Run : [IAStorIcon] "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
04 - [x64] HKLM\..\Run : [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
04 - [x64] HKLM\..\Run : [ShadowPlay] C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
04 - [x64] HKLM\..\Run : [CDAServer] C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
04 - [x64] HKLM\..\Run : [Everything] "C:\Program Files\Everything\Everything.exe" -startup
04 - HKU\S-1-5-21-903397656-3433550281-814490945-1002\..\Run : [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
04GS - WISO Mein Steuer-Sparbuch heute.lnk : C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe

################## | UsbFix - Information |

Info : How to remove shortcut virus on flash disk (Video)
Info : Shortcut virus on flash disk, What is it ?
Live detection : How To Remove ? ? Clean your PC for free!

################## | Hijack |


################## | C:\ %SystemDrive% - Fixed drive (NTFS) |

[01/12/2014 - 13:19:36 | ASH | 6661152 Ko] - C:\hiberfil.sys
[01/12/2014 - 13:19:47 | ASH | 1310720 Ko] - C:\pagefile.sys
[01/12/2014 - 13:19:47 | ASH | 262144 Ko] - C:\swapfile.sys
[14/05/2014 - 22:07:58 | A | 0 Ko] - C:\powerpack.log
[14/05/2014 - 22:09:40 | A | 0 Ko] - C:\setup.log
[27/09/2014 - 17:13:38 | A | 26 Ko] - C:\EamClean.log
[21/11/2014 - 23:52:29 | A | 0 Ko] - C:\index.ini
[25/11/2014 - 18:08:22 | SHD] - C:\$Recycle.Bin
[18/06/2013 - 13:18:29 | N | 0 Ko] - C:\BOOTNXT
[22/08/2013 - 15:45:52 | SHD] - C:\Documents and Settings
[22/08/2013 - 16:22:35 | D] - C:\PerfLogs
[09/01/2014 - 09:51:15 | RASH | 389 Ko] - C:\bootmgr
[09/01/2014 - 10:48:48 | SHD] - C:\Recovery
[15/01/2014 - 13:49:32 | D] - C:\Intel
[16/05/2014 - 20:25:16 | RD] - C:\Users
[07/06/2014 - 14:00:37 | D] - C:\AsusVibeData
[05/09/2014 - 11:35:45 | D] - C:\$SysReset
[21/11/2014 - 19:43:47 | D] - C:\NVIDIA Corporation
[21/11/2014 - 23:51:44 | D] - C:\EEK
[22/11/2014 - 15:46:51 | D] - C:\AdwCleaner
[28/11/2014 - 16:39:08 | D] - C:\FRST
[30/11/2014 - 00:13:48 | RD] - C:\Program Files
[01/12/2014 - 13:18:22 | HD] - C:\ProgramData
[01/12/2014 - 13:18:40 | RD] - C:\Program Files (x86)
[01/12/2014 - 15:18:30 | D] - C:\Windows
[01/12/2014 - 15:21:27 | D] - C:\UsbFix

################## | D:\ - Fixed drive (NTFS) |

[14/05/2014 - 21:40:41 | SHD] - D:\$RECYCLE.BIN

################## | J:\ - Fixed drive (NTFS) |

[13/11/2012 - 12:47:38 | A | 4625 Ko] - J:\TOSHIBA STOR.E BASICS.pdf
[22/07/2014 - 17:44:18 | A | 1363 Ko] - J:\Malmö.Gnadenhütte.jpg
[15/09/2011 - 05:12:14 | N | 0 Ko] - J:\autorun.inf
[16/05/2011 - 07:40:50 | N | 9 Ko] - J:\TMP.ico
[16/05/2011 - 07:40:50 | A | 1 Ko] - J:\Toshiba Places.html
[27/01/2012 - 07:28:54 | A | 16 Ko] - J:\Software Offer.hta
[22/07/2014 - 17:39:46 | SHD] - J:\$RECYCLE.BIN
[25/07/2014 - 16:49:39 | D] - J:\Röntgenbilder Krankenhaus Mühlhausen vom 14. - 15.02.2014 DICOM
[20/11/2012 - 09:21:00 | D] - J:\images
[20/11/2012 - 09:21:01 | D] - J:\lang
[25/07/2014 - 14:38:35 | D] - J:\Arbeit
[25/07/2014 - 14:41:30 | D] - J:\BAP
[25/07/2014 - 14:41:32 | D] - J:\Briefe
[25/07/2014 - 14:41:32 | D] - J:\BSUH
[25/07/2014 - 14:42:10 | D] - J:\Die Zeit - Zeit Magazin 2009
[25/07/2014 - 14:43:03 | D] - J:\Die Zeit 2004 Audio
[25/07/2014 - 14:43:51 | D] - J:\Die Zeit 2005
[25/07/2014 - 14:45:04 | D] - J:\Die Zeit 2005 Audio
[25/07/2014 - 14:46:57 | D] - J:\Die Zeit 2006
[25/07/2014 - 14:48:13 | D] - J:\Die Zeit 2006 Audio
[25/07/2014 - 14:50:44 | D] - J:\Die Zeit 2007
[25/07/2014 - 14:52:07 | D] - J:\Die Zeit 2007 Audio
[25/07/2014 - 14:55:16 | D] - J:\Die Zeit 2008
[25/07/2014 - 14:57:28 | D] - J:\Die Zeit 2008 Audio
[25/07/2014 - 15:01:25 | D] - J:\Die Zeit 2009
[25/07/2014 - 15:03:29 | D] - J:\Die Zeit 2009 Audio
[25/07/2014 - 15:06:00 | D] - J:\Die Zeit 2010
[25/07/2014 - 15:07:32 | D] - J:\Die Zeit 2011
[25/07/2014 - 15:09:17 | D] - J:\Die Zeit 2011 Audio
[25/07/2014 - 15:09:20 | D] - J:\Die Zeit 2011 epub
[25/07/2014 - 15:11:03 | D] - J:\Die Zeit 2012
[25/07/2014 - 15:11:06 | D] - J:\Die Zeit 2012 epub
[25/07/2014 - 15:12:35 | D] - J:\Die Zeit 2013
[25/07/2014 - 15:13:16 | D] - J:\Die Zeit 2014 epub
[25/07/2014 - 15:15:13 | D] - J:\Die Zeit Audio 2010
[25/07/2014 - 15:17:09 | D] - J:\Die Zeit Audio 2012
[25/07/2014 - 15:18:27 | D] - J:\Die Zeit Audio 2014
[25/07/2014 - 15:18:33 | D] - J:\Die Zeit Beilagen 2009
[25/07/2014 - 15:18:39 | D] - J:\Die Zeit Beilagen 2010
[25/07/2014 - 15:18:48 | D] - J:\Die Zeit Beilagen 2011
[25/07/2014 - 15:18:52 | D] - J:\Die Zeit Beilagen 2012
[25/07/2014 - 15:18:57 | D] - J:\Die Zeit Beilagen 2013
[25/07/2014 - 15:19:58 | D] - J:\Die Zeit Magazin 2011
[25/07/2014 - 15:20:21 | D] - J:\Die Zeit Magazin 2012
[25/07/2014 - 15:20:48 | D] - J:\Die Zeit Magazin 2013
[25/07/2014 - 15:20:59 | D] - J:\Die Zeit Magazin 2014
[25/07/2014 - 15:21:00 | D] - J:\Die Zeit Sachsen 2012
[25/07/2014 - 15:21:07 | D] - J:\Die Zeit Sachsen 2013
[25/07/2014 - 15:21:10 | D] - J:\Die Zeit Sachsen 2014
[25/07/2014 - 15:24:35 | D] - J:\Dokumente Ethik
[25/07/2014 - 15:39:03 | D] - J:\Dokumente Geschichte
[25/07/2014 - 15:42:29 | D] - J:\Dokumente Sozialkunde
[25/07/2014 - 15:43:04 | D] - J:\DVDVideoSoft
[25/07/2014 - 15:53:11 | D] - J:\dwhelper
[25/07/2014 - 15:56:31 | D] - J:\dwhelper 1
[25/07/2014 - 16:01:22 | D] - J:\dwhelper 2
[25/07/2014 - 16:04:59 | D] - J:\dwhelper 3
[25/07/2014 - 16:07:37 | D] - J:\dwhelper 4
[25/07/2014 - 16:10:41 | D] - J:\dwhelper 5
[25/07/2014 - 16:13:11 | D] - J:\dwhelper 6
[25/07/2014 - 16:15:24 | D] - J:\dwhelper 7
[25/07/2014 - 16:17:31 | D] - J:\dwhelper 8
[25/07/2014 - 16:32:09 | RD] - J:\Eigene Bilder
[25/07/2014 - 16:32:53 | RD] - J:\Eigene Dokumente
[25/07/2014 - 16:33:34 | D] - J:\Eigene eBooks
[25/07/2014 - 16:33:54 | RD] - J:\Eigene Musik
[25/07/2014 - 16:39:49 | RD] - J:\Eigene Videos
[25/07/2014 - 16:43:48 | RD] - J:\Eigene Videos, alte V, Übertrag aus D
[25/07/2014 - 16:43:50 | D] - J:\E-Mails
[25/07/2014 - 16:45:40 | D] - J:\Ex Downloads
[25/07/2014 - 16:46:49 | D] - J:\Film
[25/07/2014 - 16:49:24 | D] - J:\Geschichte
[25/07/2014 - 16:49:26 | D] - J:\Hörspiele
[25/07/2014 - 16:49:33 | D] - J:\Kino
[25/07/2014 - 16:49:38 | D] - J:\Mathematik
[25/07/2014 - 16:49:38 | D] - J:\My Microbalance
[25/07/2014 - 16:49:39 | D] - J:\Pflanzen
[25/07/2014 - 16:50:31 | D] - J:\Sparbuch
[25/07/2014 - 16:50:32 | D] - J:\Stundenpläne FST
[25/07/2014 - 16:50:32 | D] - J:\Textverarbeitung
[25/07/2014 - 16:50:47 | D] - J:\vdi nachrichten
[25/07/2014 - 17:00:12 | D] - J:\Videodokumentationen
[25/07/2014 - 17:01:04 | D] - J:\Warenwirtschaft
[25/07/2014 - 17:03:28 | D] - J:\WDR Die Story
[25/07/2014 - 17:03:32 | D] - J:\Wirtschaftslehre
[25/07/2014 - 17:03:32 | D] - J:\Wirtschaftsrecht
[25/07/2014 - 17:03:32 | D] - J:\Zeugnisse
[28/10/2014 - 12:52:08 | D] - J:\Filmkritiken
[28/10/2014 - 12:54:38 | D] - J:\Die Zeit Beilagen 2014
[28/10/2014 - 13:09:16 | D] - J:\Die Zeit 2014

################## | K:\ - Fixed drive (FAT32) |

[01/12/2014 - 15:21:28 | SHD] - K:\$RECYCLE.BIN
[31/10/2007 - 14:38:50 | D] - K:\PTP LE 3.16
[31/10/2007 - 14:38:52 | D] - K:\PTP XL 3.16
[27/05/2009 - 15:57:54 | RD] - K:\Eigene Dateien
[13/09/2009 - 18:24:36 | D] - K:\Recycled

################## | M:\ - Fixed drive (FAT32) |

[24/02/2011 - 11:11:26 | N | 0 Ko] - M:\Autorun.inf
[24/02/2011 - 11:11:26 | A | 4168 Ko] - [VirusTotal - (0/55)] - M:\AppInst.exe
[15/05/2014 - 20:49:38 | SHD] - M:\$RECYCLE.BIN
[16/02/2014 - 00:17:50 | D] - M:\Röntgenbilder Krankenhaus Mühlhausen vom 14. - 15.02.2014 DICOM
[24/02/2011 - 11:11:26 | D] - M:\SamsungSoftware
[15/05/2011 - 13:43:50 | RD] - M:\Eigene Bilder
[15/05/2011 - 15:20:20 | D] - M:\Recycled
[15/05/2011 - 15:21:38 | D] - M:\Wirtschaftsrecht
[15/05/2011 - 15:21:52 | D] - M:\Warenwirtschaft
[15/05/2011 - 15:22:08 | D] - M:\Textverarbeitung
[15/05/2011 - 15:22:28 | D] - M:\My Microbalance
[15/05/2011 - 15:23:26 | D] - M:\Mathematik
[15/05/2011 - 15:23:48 | D] - M:\Dokumente Sozialkunde
[15/05/2011 - 15:25:30 | D] - M:\BAP
[16/05/2011 - 17:56:14 | D] - M:\Videodokumentationen
[16/05/2011 - 18:01:52 | D] - M:\Kino
[16/05/2011 - 18:02:12 | D] - M:\Eigene eBooks
[16/05/2011 - 18:02:38 | RD] - M:\Eigene Dokumente
[16/05/2011 - 18:04:02 | RD] - M:\Eigene Musik
[16/05/2011 - 18:10:42 | D] - M:\Die Zeit 2010
[16/05/2011 - 18:20:48 | D] - M:\Die Zeit Audio 2010
[16/05/2011 - 18:27:44 | D] - M:\Wirtschaftslehre
[16/05/2011 - 18:27:56 | D] - M:\Zeugnisse
[16/05/2011 - 18:29:20 | D] - M:\WDR Die Story
[16/05/2011 - 18:37:10 | D] - M:\dwhelper
[17/05/2011 - 16:27:08 | D] - M:\Die Zeit 2004 Audio
[17/05/2011 - 16:29:04 | D] - M:\Die Zeit 2005
[17/05/2011 - 16:30:52 | D] - M:\Die Zeit 2005 Audio
[17/05/2011 - 16:36:22 | D] - M:\Die Zeit 2006
[17/05/2011 - 16:41:28 | D] - M:\Die Zeit 2006 Audio
[17/05/2011 - 16:44:34 | D] - M:\Die Zeit 2007
[17/05/2011 - 16:51:36 | D] - M:\Die Zeit 2007 Audio
[17/05/2011 - 17:02:14 | D] - M:\Die Zeit 2008
[17/05/2011 - 17:25:34 | D] - M:\Die Zeit 2008 Audio
[17/05/2011 - 17:30:30 | D] - M:\Die Zeit 2009
[17/05/2011 - 17:56:18 | D] - M:\Die Zeit 2009 Audio
[17/05/2011 - 18:03:02 | D] - M:\Die Zeit - Zeit Magazin 2009
[17/05/2011 - 18:06:38 | D] - M:\Die Zeit Beilagen 2009
[17/05/2011 - 18:07:14 | D] - M:\Die Zeit Beilagen 2010
[17/05/2011 - 18:07:36 | D] - M:\Die Zeit Magazin 2010
[06/07/2011 - 19:45:14 | RD] - M:\Eigene Videos
[06/07/2011 - 20:11:32 | D] - M:\Filmkritiken
[07/07/2011 - 14:14:44 | D] - M:\Die Zeit 2011
[07/07/2011 - 14:21:54 | D] - M:\Die Zeit 2011 Audio
[07/07/2011 - 14:32:00 | D] - M:\Die Zeit Magazin 2011
[07/07/2011 - 14:48:48 | D] - M:\Die Zeit Beilagen 2011
[07/07/2011 - 15:02:22 | D] - M:\Film
[25/07/2011 - 17:56:44 | D] - M:\dwhelper 1
[13/09/2011 - 17:01:18 | D] - M:\Briefe
[13/09/2011 - 17:01:38 | D] - M:\BSUH
[19/10/2011 - 19:51:40 | D] - M:\Audiodokumentationen
[03/11/2011 - 19:31:18 | D] - M:\ThunderbirdPortable
[20/11/2011 - 18:27:38 | D] - M:\DVDVideoSoft
[20/11/2011 - 18:36:32 | D] - M:\Sparbuch
[23/12/2011 - 17:06:58 | D] - M:\dwhelper 2
[26/12/2011 - 15:54:18 | D] - M:\Die Zeit 2011 epub
[08/01/2012 - 19:47:40 | D] - M:\Dokumente Geschichte
[19/01/2012 - 19:20:52 | D] - M:\Geschichte
[06/04/2012 - 19:41:06 | D] - M:\Ex Downloads
[21/04/2012 - 17:24:50 | D] - M:\vdi nachrichten
[25/05/2012 - 01:40:42 | D] - M:\607fd1c03add31a1ce
[26/05/2012 - 01:36:58 | D] - M:\673e2c038484682fbea65d273ca5422c
[18/09/2012 - 16:28:52 | D] - M:\dwhelper 4
[06/12/2012 - 14:31:08 | D] - M:\dwhelper 5
[20/12/2012 - 00:41:22 | D] - M:\Die Zeit 2012
[20/12/2012 - 00:51:58 | D] - M:\Die Zeit Magazin 2012
[20/12/2012 - 00:53:48 | D] - M:\Die Zeit Sachsen 2012
[20/12/2012 - 00:54:00 | D] - M:\Die Zeit Beilagen 2012
[20/12/2012 - 00:54:12 | D] - M:\Die Zeit 2012 epub
[20/12/2012 - 00:54:34 | D] - M:\Die Zeit Audio 2012
[24/12/2012 - 19:21:26 | D] - M:\Pflanzen
[04/01/2013 - 14:25:10 | RD] - M:\Eigene Videos, alte V, Übertrag aus D
[16/03/2013 - 21:52:38 | D] - M:\dwhelper 6
[18/05/2013 - 01:46:50 | D] - M:\22a9d81e1cd5b90dc71dad
[22/05/2013 - 18:36:08 | D] - M:\bebf7618e8ba284a647e82fc4242b4
[15/07/2013 - 18:01:08 | D] - M:\caf34d763b9b4af0641de5
[17/07/2013 - 18:21:16 | D] - M:\Hörspiele
[24/07/2013 - 15:16:02 | D] - M:\Stundenpläne FST
[03/10/2013 - 15:30:26 | D] - M:\dwhelper 7
[03/10/2013 - 17:18:20 | D] - M:\Dokumente Ethik
[23/12/2013 - 19:38:22 | D] - M:\Die Zeit 2013
[28/12/2013 - 23:46:40 | D] - M:\Die Zeit Beilagen 2013
[28/12/2013 - 23:58:40 | D] - M:\Die Zeit Magazin 2013
[29/12/2013 - 00:00:02 | D] - M:\Die Zeit Sachsen 2013
[20/04/2014 - 19:14:26 | D] - M:\dwhelper 8
[16/05/2014 - 05:04:16 | D] - M:\Die Zeit Beilagen 2014
[16/05/2014 - 05:14:24 | D] - M:\E-Mails
[18/06/2014 - 17:36:00 | D] - M:\Die Zeit 2014 epub
[24/06/2014 - 14:42:28 | D] - M:\Die Zeit 2014
[24/06/2014 - 14:45:56 | D] - M:\Die Zeit Magazin 2014
[24/06/2014 - 14:46:40 | D] - M:\Die Zeit Audio 2014
[24/06/2014 - 14:52:22 | D] - M:\Die Zeit Sachsen 2014
[25/07/2014 - 15:38:36 | D] - M:\Arbeit

################## | Vaccin |

C:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
J:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
K:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)
M:\Autorun.inf -> Vaccine created by UsbFix (El Desaparecido)

################## | E.O.F | SosVirus ? SosVirus | UsbFix - Official Website |

Grüße

krautsand

krautsand 01.12.2014 16:17

hier noch FRST (1)

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-12-2014
Ran by hannibla34 (administrator) on WO on 01-12-2014 16:05:22
Running from C:\Users\hannibla34\Downloads
Loaded Profile: hannibla34 (Available profiles: hannibla34)
Platform: Windows 8.1 (X64) OS Language: Englisch (Vereinigte Staaten)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Sirrix AG) C:\Program Files (x86)\Sirrix AG\BitBox\bin\BitBoxTrayapp.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7199448 2013-09-05] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-30] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] ()
HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] ()
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3216032 2014-01-09] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [703736 2014-10-23] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [GDataUsbProtection] => C:\Program Files (x86)\G DATA\USB KEYBOARD GUARD\GD2NDKBB.exe [1405560 2014-09-03] (G Data Software AG)
HKLM-x32\...\RunOnce: [] => [X]
HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
Startup: C:\Users\hannibla34\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk
ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-903397656-3433550281-814490945-1002\Software\Microsoft\Internet Explorer\Main,Start Page = Google
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Google
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = Google
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> DefaultScope {F7FA0E18-88F4-47FD-97EF-19FE83C440CC} URL = https://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> {F7FA0E18-88F4-47FD-97EF-19FE83C440CC} URL = https://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-903397656-3433550281-814490945-1002: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\google-images.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\google-maps.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\leo-en-de-ssl.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\metager.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\wikipedia-en-ssl.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\wikipedia-ssl-de.xml
FF Extension: Avira Browser Safety - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\abs@avira.com [2014-12-01]
FF Extension: German Dictionary - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\de-DE@dictionaries.addons.mozilla.org [2014-11-28]
FF Extension: FoxyProxy Standard - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\foxyproxy@eric.h.jung [2014-11-28]
FF Extension: EPUBReader - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F} [2014-11-28]
FF Extension: DownloadHelper - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-11-28]
FF Extension: Cliqz Beta - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\cliqz@cliqz.com.xpi [2014-12-01]
FF Extension: SQLite Manager - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\SQLiteManager@mrinalkant.blogspot.com.xpi [2014-11-29]
FF Extension: Adblock Plus - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-11-28]
FF HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\extensions\cliqz@cliqz.com

Chrome:
=======
CHR Profile: C:\Users\hannibla34\AppData\Local\Google\Chrome\User Data\Default

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [432888 2014-10-23] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [432888 2014-10-23] (Avira Operations GmbH & Co. KG)
S2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2013-08-28] ()
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
S2 BitBoxService; C:\Program Files (x86)\Sirrix AG\BitBox\bin\BitBoxService.exe [738304 2014-08-04] (Sirrix AG) [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
S2 Device Handle Service; C:\Windows\SysWOW64\AsHookDevice.exe [207160 2013-08-08] ()
S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-19] (Intel Corporation)
S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
S2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-24] ()
S3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [821096 2014-08-13] (Mister Group)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 A2DDA; C:\EEK\RUN\a2ddax64.sys [26176 2013-08-19] (Emsisoft GmbH)
R3 AiChargerDT; C:\Windows\SysWow64\drivers\AiChargerDT.sys [14880 2012-10-18] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-23] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131608 2014-10-23] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2014-10-23] (Avira Operations GmbH & Co. KG)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 cleanhlp; C:\EEK\Run\cleanhlp64.sys [57024 2014-05-20] (Emsisoft GmbH)
S3 cpuz136; C:\Program Files (x86)\CPUID\PC Wizard 2013\pcwiz_x64.sys [25320 2013-08-24] (CPUID)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [469264 2013-06-26] (Intel Corporation)
R3 GDKBBlocker; C:\Windows\system32\drivers\GDKBBlocker64.sys [30720 2014-12-01] (G Data Software AG)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-19] (Intel Corporation)
S3 MEMSWEEP2; C:\Windows\system32\2284.tmp [6144 2009-06-18] (Sophos Plc) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-01 16:05 - 2014-12-01 16:05 - 00000000 ____D () C:\Users\hannibla34\Downloads\FRST-OlderVersion
2014-12-01 15:21 - 2014-12-01 15:21 - 00016541 _____ () C:\Users\hannibla34\Desktop\UsbFix_Report.txt
2014-12-01 15:18 - 2014-12-01 15:24 - 00000897 _____ () C:\Windows\setupact.log
2014-12-01 15:18 - 2014-12-01 15:18 - 00000000 _____ () C:\Windows\setuperr.log
2014-12-01 15:16 - 2014-12-01 15:16 - 00004604 _____ () C:\Users\hannibla34\Downloads\01.12.2014. 2UsbFix_Report.txt
2014-12-01 15:16 - 2014-12-01 15:16 - 00000093 ____H () C:\Users\hannibla34\Downloads\.~lock.01.12.2014. 2UsbFix_Report.txt#
2014-12-01 13:59 - 2014-12-01 13:59 - 00059752 _____ () C:\Users\hannibla34\Downloads\USB Fiox 01.12.2014
2014-12-01 13:51 - 2014-12-01 15:22 - 00000000 ____D () C:\UsbFix
2014-12-01 13:51 - 2014-12-01 13:51 - 01174352 _____ () C:\Users\hannibla34\Downloads\UsbFix - CHIP-Installer.exe
2014-12-01 13:51 - 2014-12-01 13:51 - 00001463 _____ () C:\Users\hannibla34\Desktop\UsbFix.lnk
2014-12-01 13:51 - 2014-12-01 13:51 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Cliqz
2014-12-01 13:19 - 2014-12-01 13:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G DATA USB KEYBOARD GUARD
2014-12-01 13:18 - 2014-12-01 13:18 - 00030720 _____ (G Data Software AG) C:\Windows\system32\Drivers\GDKBBlocker64.sys
2014-12-01 13:18 - 2014-12-01 13:18 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_GDKBBlocker64_01007.Wdf
2014-12-01 13:18 - 2014-12-01 13:18 - 00000000 ____D () C:\ProgramData\G Data
2014-12-01 13:18 - 2014-12-01 13:18 - 00000000 ____D () C:\Program Files (x86)\G DATA
2014-12-01 13:17 - 2014-12-01 13:17 - 01174352 _____ () C:\Users\hannibla34\Downloads\G Data USB Keyboard Guard - CHIP-Installer.exe
2014-12-01 13:11 - 2014-12-01 13:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-12-01 13:10 - 2014-12-01 13:10 - 05162080 _____ (Piriform Ltd) C:\Users\hannibla34\Downloads\ccsetup500.exe
2014-11-30 17:27 - 2014-11-30 17:27 - 00001282 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Browser in the Box.lnk
2014-11-30 17:27 - 2014-11-30 17:27 - 00001270 _____ () C:\Users\Public\Desktop\Browser in the Box.lnk
2014-11-30 17:27 - 2014-11-30 17:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Browser in the Box
2014-11-30 17:19 - 2014-11-30 17:19 - 01174352 _____ () C:\Users\hannibla34\Downloads\BitBox Browser in the Box Firefox Edition - CHIP-Installer(3).exe
2014-11-30 17:18 - 2014-11-30 17:18 - 01174352 _____ () C:\Users\hannibla34\Downloads\BitBox Browser in the Box Firefox Edition - CHIP-Installer(2).exe
2014-11-30 16:55 - 2014-11-30 16:55 - 01174352 _____ () C:\Users\hannibla34\Downloads\BitBox Browser in the Box Firefox Edition - CHIP-Installer(1).exe
2014-11-30 15:10 - 2014-11-30 15:10 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Sirrix AG
2014-11-30 00:14 - 2014-11-30 17:27 - 00000000 ____D () C:\Program Files (x86)\Sirrix AG
2014-11-30 00:14 - 2014-11-30 00:14 - 00000000 ____D () C:\ProgramData\Sirrix AG
2014-11-30 00:13 - 2014-11-30 00:13 - 00000000 ____D () C:\Program Files\Oracle
2014-11-30 00:13 - 2014-03-13 16:45 - 00239392 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
2014-11-30 00:13 - 2014-03-13 16:44 - 00119072 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
2014-11-30 00:03 - 2014-11-30 00:03 - 01174352 _____ () C:\Users\hannibla34\Downloads\BitBox Browser in the Box Firefox Edition - CHIP-Installer.exe
2014-11-28 17:13 - 2014-11-28 17:13 - 01110476 _____ () C:\Users\hannibla34\Downloads\7z920.exe
2014-11-28 17:13 - 2014-11-28 17:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2014-11-28 17:13 - 2014-11-28 17:13 - 00000000 ____D () C:\Program Files (x86)\7-Zip
2014-11-28 16:43 - 2014-11-28 16:43 - 00500554 _____ () C:\Users\hannibla34\Downloads\28.11.2014 FRST.txt
2014-11-28 16:36 - 2014-12-01 16:05 - 02117120 _____ (Farbar) C:\Users\hannibla34\Downloads\FRST64.exe
2014-11-28 16:36 - 2014-12-01 16:05 - 00014713 _____ () C:\Users\hannibla34\Downloads\FRST.txt
2014-11-28 16:36 - 2014-12-01 16:05 - 00000000 ____D () C:\FRST
2014-11-28 16:13 - 2014-11-28 16:13 - 00000000 ____D () C:\Users\hannibla34\Desktop\Alte Firefox-Daten
2014-11-28 16:12 - 2014-11-28 16:12 - 00001178 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-11-28 16:12 - 2014-11-28 16:12 - 00001166 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-11-28 16:12 - 2014-11-28 16:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-27 18:02 - 2014-12-01 15:43 - 00378301 _____ () C:\Windows\WindowsUpdate.log
2014-11-27 17:10 - 2014-11-27 17:12 - 106223832 _____ () C:\Users\hannibla34\Downloads\das ich 480_800_riTcM-G695-
2014-11-26 15:35 - 2014-11-26 15:36 - 01717416 _____ () C:\Users\hannibla34\Downloads\26.11.2014 OTL.Txt
2014-11-26 13:14 - 2014-11-26 13:14 - 00504008 _____ () C:\Users\hannibla34\Downloads\Farbar vom 26.11.2014 FRST.txt
2014-11-25 23:56 - 2014-12-01 12:50 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-25 23:56 - 2014-11-25 23:56 - 00001121 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-11-25 23:56 - 2014-11-25 23:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-11-25 23:56 - 2014-11-25 23:56 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-25 23:56 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-25 23:56 - 2014-10-01 11:11 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-25 23:56 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-25 18:09 - 2014-11-25 18:08 - 00043064 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-11-25 18:08 - 2014-11-25 18:08 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Avira
2014-11-25 18:07 - 2014-10-23 14:02 - 00131608 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-11-25 18:07 - 2014-10-23 14:02 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-11-25 18:07 - 2014-10-23 14:01 - 00119272 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-11-25 18:05 - 2014-11-25 18:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-11-25 18:05 - 2014-11-25 18:07 - 00000000 ____D () C:\ProgramData\Avira
2014-11-25 18:05 - 2014-11-25 18:05 - 00001160 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-11-25 18:05 - 2014-11-25 18:05 - 00000000 ____D () C:\ProgramData\Package Cache
2014-11-25 17:42 - 2014-11-25 17:42 - 00001287 _____ () C:\Users\hannibla34\Desktop\Revo Uninstaller.lnk
2014-11-25 17:42 - 2014-11-25 17:42 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-11-25 16:53 - 2014-10-29 05:10 - 01816008 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2014-11-25 16:53 - 2014-10-29 05:04 - 01969912 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-11-25 16:53 - 2014-10-29 05:00 - 02314952 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-11-25 16:53 - 2014-10-29 05:00 - 02229168 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2014-11-25 16:53 - 2014-10-29 05:00 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-11-25 16:53 - 2014-10-29 05:00 - 01540696 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2014-11-25 16:53 - 2014-10-29 05:00 - 01390920 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2014-11-25 16:53 - 2014-10-29 05:00 - 01385216 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-11-25 16:53 - 2014-10-29 04:59 - 03460472 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2014-11-25 16:53 - 2014-10-29 04:59 - 02529856 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-11-25 16:53 - 2014-10-29 04:59 - 00055776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-11-25 16:53 - 2014-10-29 04:59 - 00014144 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys
2014-11-25 16:53 - 2014-10-29 04:58 - 00014528 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys
2014-11-25 16:53 - 2014-10-29 04:57 - 22295200 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-11-25 16:53 - 2014-10-29 04:57 - 03138720 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2014-11-25 16:53 - 2014-10-29 04:57 - 03118096 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe
2014-11-25 16:53 - 2014-10-29 04:57 - 02745160 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-11-25 16:53 - 2014-10-29 04:57 - 02501368 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-11-25 16:53 - 2014-10-29 04:57 - 02450216 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL
2014-11-25 16:53 - 2014-10-29 04:57 - 01576312 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2014-11-25 16:53 - 2014-10-29 04:57 - 01286048 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll
2014-11-25 16:53 - 2014-10-29 04:57 - 01210176 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2014-11-25 16:53 - 2014-10-29 04:57 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2014-11-25 16:53 - 2014-10-29 04:55 - 02174976 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2014-11-25 16:53 - 2014-10-29 04:55 - 01660528 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2014-11-25 16:53 - 2014-10-29 04:55 - 01543768 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2014-11-25 16:53 - 2014-10-29 04:55 - 01133200 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-11-25 16:53 - 2014-10-29 04:55 - 00789184 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-25 16:53 - 2014-10-29 04:54 - 07474496 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-11-25 16:53 - 2014-10-29 04:53 - 01733952 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 02485056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-11-25 16:53 - 2014-10-29 04:52 - 02334080 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 01518504 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 01509688 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 01288096 _____ (Microsoft Corporation) C:\Windows\system32\mfnetsrc.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 01165744 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 01064720 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 00988544 _____ (Microsoft Corporation) C:\Windows\system32\mfsrcsnk.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 00962216 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 00952384 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 00850656 _____ (Microsoft Corporation) C:\Windows\system32\mfnetcore.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 00821696 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 00634768 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-25 16:53 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-25 16:53 - 2014-10-29 04:51 - 01310912 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-11-25 16:53 - 2014-10-29 04:18 - 00016504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psapi.dll
2014-11-25 16:53 - 2014-10-29 04:15 - 01612480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-11-25 16:53 - 2014-10-29 04:13 - 01901240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-11-25 16:53 - 2014-10-29 04:12 - 01946144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-11-25 16:53 - 2014-10-29 04:12 - 01907384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2014-11-25 16:53 - 2014-10-29 04:12 - 01488552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-11-25 16:53 - 2014-10-29 04:12 - 01127976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2014-11-25 16:53 - 2014-10-29 04:11 - 02689392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVCORE.DLL
2014-11-25 16:53 - 2014-10-29 04:11 - 02528760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2014-11-25 16:53 - 2014-10-29 04:11 - 02447104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVENCOD.DLL
2014-11-25 16:53 - 2014-10-29 04:11 - 01024200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAudDecMFT.dll
2014-11-25 16:53 - 2014-10-29 04:10 - 19734424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-11-25 16:53 - 2014-10-29 04:10 - 02207488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2014-11-25 16:53 - 2014-10-29 04:10 - 01564464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2014-11-25 16:53 - 2014-10-29 04:10 - 01209624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2014-11-25 16:53 - 2014-10-29 04:10 - 01178104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll
2014-11-25 16:53 - 2014-10-29 04:08 - 00602768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 02324208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 01321192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 01115104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetsrc.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 00959112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 00857384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsrcsnk.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 00801584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 00785568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 00705008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 00700328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfnetcore.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-25 16:53 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-25 16:53 - 2014-10-29 04:06 - 01499376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-11-25 16:53 - 2014-10-29 04:05 - 00890128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2014-11-25 16:53 - 2014-10-29 03:59 - 03109376 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2014-11-25 16:53 - 2014-10-29 03:50 - 01192960 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2014-11-25 16:53 - 2014-10-29 03:48 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-11-25 16:53 - 2014-10-29 03:45 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-25 16:53 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2014-11-25 16:53 - 2014-10-29 03:31 - 00971264 _____ (Microsoft Corporation) C:\Windows\system32\sqlceqp40.dll
2014-11-25 16:53 - 2014-10-29 03:29 - 04483072 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2014-11-25 16:53 - 2014-10-29 03:28 - 01502208 _____ (Microsoft Corporation) C:\Windows\system32\xpssvcs.dll
2014-11-25 16:53 - 2014-10-29 03:25 - 00785920 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2014-11-25 16:53 - 2014-10-29 03:24 - 04418560 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2014-11-25 16:53 - 2014-10-29 03:19 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-25 16:53 - 2014-10-29 03:17 - 02003456 _____ (Microsoft Corporation) C:\Windows\system32\mmc.exe
2014-11-25 16:53 - 2014-10-29 03:10 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2014-11-25 16:53 - 2014-10-29 03:08 - 18822656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2014-11-25 16:53 - 2014-10-29 03:08 - 01540096 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll
2014-11-25 16:53 - 2014-10-29 03:00 - 02162176 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2014-11-25 16:53 - 2014-10-29 03:00 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-25 16:53 - 2014-10-29 02:57 - 02924032 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2014-11-25 16:53 - 2014-10-29 02:56 - 03754496 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2014-11-25 16:53 - 2014-10-29 02:56 - 01526784 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2014-11-25 16:53 - 2014-10-29 02:55 - 01697280 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2014-11-25 16:53 - 2014-10-29 02:53 - 01101824 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-11-25 16:53 - 2014-10-29 02:51 - 00941056 _____ (Microsoft Corporation) C:\Windows\system32\XpsFilt.dll
2014-11-25 16:53 - 2014-10-29 02:50 - 01289216 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2014-11-25 16:53 - 2014-10-29 02:48 - 01080832 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2014-11-25 16:53 - 2014-10-29 02:48 - 00780288 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2014-11-25 16:53 - 2014-10-29 02:47 - 02072064 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2014-11-25 16:53 - 2014-10-29 02:45 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-25 16:53 - 2014-10-29 02:45 - 00618496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2014-11-25 16:53 - 2014-10-29 02:45 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\rdpinput.exe
2014-11-25 16:53 - 2014-10-29 02:44 - 02984448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2014-11-25 16:53 - 2014-10-29 02:43 - 07075328 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll
2014-11-25 16:53 - 2014-10-29 02:43 - 01092608 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2014-11-25 16:53 - 2014-10-29 02:43 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2014-11-25 16:53 - 2014-10-29 02:42 - 03724800 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2014-11-25 16:53 - 2014-10-29 02:42 - 01999872 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-11-25 16:53 - 2014-10-29 02:40 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2014-11-25 16:53 - 2014-10-29 02:39 - 02896384 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2014-11-25 16:53 - 2014-10-29 02:38 - 04690432 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2014-11-25 16:53 - 2014-10-29 02:37 - 01563136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmc.exe
2014-11-25 16:53 - 2014-10-29 02:35 - 04709888 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-11-25 16:53 - 2014-10-29 02:35 - 03256320 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2014-11-25 16:53 - 2014-10-29 02:34 - 03097088 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2014-11-25 16:53 - 2014-10-29 02:34 - 01114624 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-25 16:53 - 2014-10-29 02:34 - 01037824 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-11-25 16:53 - 2014-10-29 02:33 - 15157760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2014-11-25 16:53 - 2014-10-29 02:33 - 01056768 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
2014-11-25 16:53 - 2014-10-29 02:32 - 01843712 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe
2014-11-25 16:53 - 2014-10-29 02:32 - 01390080 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-11-25 16:53 - 2014-10-29 02:31 - 02941952 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll
2014-11-25 16:53 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-25 16:53 - 2014-10-29 02:28 - 03820544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-11-25 16:53 - 2014-10-29 02:28 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\atlthunk.dll
2014-11-25 16:53 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2014-11-25 16:53 - 2014-10-29 02:26 - 03561984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll
2014-11-25 16:53 - 2014-10-29 02:25 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2014-11-25 16:53 - 2014-10-29 02:25 - 01534464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll
2014-11-25 16:53 - 2014-10-29 02:25 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-25 16:53 - 2014-10-29 02:24 - 02464768 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-11-25 16:53 - 2014-10-29 02:24 - 02364928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll
2014-11-25 16:53 - 2014-10-29 02:24 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2014-11-25 16:53 - 2014-10-29 02:23 - 01500672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2014-11-25 16:53 - 2014-10-29 02:22 - 03633664 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2014-11-25 16:53 - 2014-10-29 02:22 - 02410496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll
2014-11-25 16:53 - 2014-10-29 02:22 - 01084416 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-11-25 16:53 - 2014-10-29 02:21 - 01250816 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2014-11-25 16:53 - 2014-10-29 02:21 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll
2014-11-25 16:53 - 2014-10-29 02:20 - 01492480 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2014-11-25 16:53 - 2014-10-29 02:19 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2014-11-25 16:53 - 2014-10-29 02:18 - 04180480 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2014-11-25 16:53 - 2014-10-29 02:18 - 01753600 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2014-11-25 16:53 - 2014-10-29 02:18 - 01050624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMNetMgr.dll
2014-11-25 16:53 - 2014-10-29 02:17 - 01402368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpcServices.dll
2014-11-25 16:53 - 2014-10-29 02:17 - 01360896 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2014-11-25 16:53 - 2014-10-29 02:17 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2014-11-25 16:53 - 2014-10-29 02:17 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2014-11-25 16:53 - 2014-10-29 02:16 - 05267968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll
2014-11-25 16:53 - 2014-10-29 02:16 - 01696256 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2014-11-25 16:53 - 2014-10-29 02:15 - 02259456 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2014-11-25 16:53 - 2014-10-29 02:14 - 03553280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
2014-11-25 16:53 - 2014-10-29 02:14 - 00802816 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2014-11-25 16:53 - 2014-10-29 02:12 - 02749952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2014-11-25 16:53 - 2014-10-29 02:11 - 01639424 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
2014-11-25 16:53 - 2014-10-29 02:11 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2014-11-25 16:53 - 2014-10-29 02:10 - 02469888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll
2014-11-25 16:53 - 2014-10-29 02:10 - 02344960 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-25 16:53 - 2014-10-29 02:09 - 03557376 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-11-25 16:53 - 2014-10-29 02:09 - 01335296 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2014-11-25 16:53 - 2014-10-29 02:08 - 02608640 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2014-11-25 16:53 - 2014-10-29 02:08 - 02542080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2014-11-25 16:53 - 2014-10-29 02:08 - 02174976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-11-25 16:53 - 2014-10-29 02:08 - 01822720 _____ (Microsoft Corporation) C:\Windows\system32\dui70.dll
2014-11-25 16:53 - 2014-10-29 02:08 - 01560576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-11-25 16:53 - 2014-10-29 02:08 - 01478144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2014-11-25 16:53 - 2014-10-29 02:07 - 01247232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2014-11-25 16:53 - 2014-10-29 02:06 - 00747520 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2014-11-25 16:53 - 2014-10-29 02:05 - 03273216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2014-11-25 16:53 - 2014-10-29 02:04 - 01376256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2014-11-25 16:53 - 2014-10-29 02:03 - 04067840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-11-25 16:53 - 2014-10-29 02:03 - 02635264 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2014-11-25 16:53 - 2014-10-29 02:03 - 02487296 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2014-11-25 16:53 - 2014-10-29 02:03 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2014-11-25 16:53 - 2014-10-29 02:02 - 14354944 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2014-11-25 16:53 - 2014-10-29 02:02 - 02484736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2014-11-25 16:53 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-25 16:53 - 2014-10-29 02:02 - 00359936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-25 16:53 - 2014-10-29 02:01 - 01710592 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2014-11-25 16:53 - 2014-10-29 02:01 - 00843776 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2014-11-25 16:53 - 2014-10-29 02:00 - 01705984 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll
2014-11-25 16:53 - 2014-10-29 01:59 - 01636864 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2014-11-25 16:53 - 2014-10-29 01:59 - 01490944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2014-11-25 16:53 - 2014-10-29 01:59 - 01454080 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2014-11-25 16:53 - 2014-10-29 01:59 - 01021440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2014-11-25 16:53 - 2014-10-29 01:58 - 03442688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2014-11-25 16:53 - 2014-10-29 01:58 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-11-25 16:53 - 2014-10-29 01:57 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-11-25 16:53 - 2014-10-29 01:56 - 01337344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2014-11-25 16:53 - 2014-10-29 01:56 - 01248256 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2014-11-25 16:53 - 2014-10-29 01:56 - 01028608 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2014-11-25 16:53 - 2014-10-29 01:56 - 01001984 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2014-11-25 16:53 - 2014-10-29 01:54 - 07784960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2014-11-25 16:53 - 2014-10-29 01:54 - 01945600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2014-11-25 16:53 - 2014-10-29 01:54 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2014-11-25 16:53 - 2014-10-29 01:54 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-11-25 16:53 - 2014-10-29 01:52 - 15432704 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-11-25 16:53 - 2014-10-29 01:52 - 02554880 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2014-11-25 16:53 - 2014-10-29 01:52 - 02170368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2014-11-25 16:53 - 2014-10-29 01:52 - 01714176 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-11-25 16:53 - 2014-10-29 01:52 - 01461248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dui70.dll
2014-11-25 16:53 - 2014-10-29 01:52 - 01275904 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2014-11-25 16:53 - 2014-10-29 01:52 - 01265152 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2014-11-25 16:53 - 2014-10-29 01:52 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-11-25 16:53 - 2014-10-29 01:51 - 01554432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-25 16:53 - 2014-10-29 01:50 - 12749824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2014-11-25 16:53 - 2014-10-29 01:50 - 02317824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll
2014-11-25 16:53 - 2014-10-29 01:50 - 01482752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2014-11-25 16:53 - 2014-10-29 01:50 - 01092096 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2014-11-25 16:53 - 2014-10-29 01:48 - 03056128 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2014-11-25 16:53 - 2014-10-29 01:48 - 01344000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsvcs.dll
2014-11-25 16:53 - 2014-10-29 01:47 - 02090496 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2014-11-25 16:53 - 2014-10-29 01:46 - 09530368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2014-11-25 16:53 - 2014-10-29 01:46 - 01919488 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-11-25 16:53 - 2014-10-29 01:46 - 01348096 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2014-11-25 16:53 - 2014-10-29 01:46 - 01015808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2014-11-25 16:53 - 2014-10-29 01:46 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-11-25 16:53 - 2014-10-29 01:46 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-11-25 16:53 - 2014-10-29 01:45 - 13318144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2014-11-25 16:53 - 2014-10-29 01:45 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-11-25 16:53 - 2014-10-29 01:45 - 01725952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2014-11-25 16:53 - 2014-10-29 01:45 - 00887296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2014-11-25 16:53 - 2014-10-29 01:43 - 05264384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2014-11-25 16:53 - 2014-10-29 01:43 - 00723968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-11-25 16:53 - 2014-10-29 01:43 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-11-25 16:53 - 2014-10-29 01:42 - 01922560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2014-11-25 16:53 - 2014-10-29 01:42 - 01221120 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2014-11-25 16:53 - 2014-10-29 01:41 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2014-11-25 16:53 - 2014-10-29 01:41 - 01317376 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2014-11-25 16:53 - 2014-10-29 01:41 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2014-11-25 16:53 - 2014-10-29 01:40 - 02104832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsservices.dll
2014-11-25 16:53 - 2014-10-29 01:39 - 02814464 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2014-11-25 16:53 - 2014-10-29 01:39 - 01000448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2014-11-25 16:53 - 2014-10-29 01:38 - 07032320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-11-25 16:53 - 2014-10-29 01:38 - 01262080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-11-25 16:53 - 2014-10-29 01:37 - 06386176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2014-11-25 16:53 - 2014-10-29 01:37 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-11-25 16:53 - 2014-10-29 01:36 - 00954880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2014-11-25 16:53 - 2014-10-29 01:35 - 01668096 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2014-11-25 16:53 - 2014-10-29 01:34 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-11-25 16:53 - 2014-10-29 01:34 - 01544192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2014-11-25 16:53 - 2014-10-29 01:33 - 06213632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-11-25 16:53 - 2014-10-29 01:33 - 01102848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2014-11-25 16:53 - 2014-10-15 09:32 - 02025792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-11-25 16:53 - 2014-10-07 07:45 - 03307112 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-11-25 16:53 - 2014-10-07 04:44 - 02890296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-11-25 16:53 - 2014-09-25 04:42 - 00373568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-11-25 16:52 - 2014-10-29 05:10 - 00430728 _____ (Microsoft Corporation) C:\Windows\system32\wevtapi.dll
2014-11-25 16:52 - 2014-10-29 05:09 - 01950280 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2014-11-25 16:52 - 2014-10-29 05:09 - 01309744 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-11-25 16:52 - 2014-10-29 05:09 - 01239576 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2014-11-25 16:52 - 2014-10-29 05:09 - 00371304 _____ (Microsoft Corporation) C:\Windows\system32\verifier.dll
2014-11-25 16:52 - 2014-10-29 05:09 - 00315576 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2014-11-25 16:52 - 2014-10-29 05:09 - 00294880 _____ (Microsoft Corporation) C:\Windows\system32\bdeunlock.exe
2014-11-25 16:52 - 2014-10-29 05:09 - 00233448 _____ (Microsoft Corporation) C:\Windows\system32\ProximityUxHost.exe
2014-11-25 16:52 - 2014-10-29 05:09 - 00214360 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2014-11-25 16:52 - 2014-10-29 05:09 - 00155456 _____ (Microsoft Corporation) C:\Windows\system32\devobj.dll
2014-11-25 16:52 - 2014-10-29 05:09 - 00145144 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll
2014-11-25 16:52 - 2014-10-29 05:09 - 00017560 _____ (Microsoft Corporation) C:\Windows\system32\psapi.dll
2014-11-25 16:52 - 2014-10-29 05:04 - 00563976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-11-25 16:52 - 2014-10-29 05:04 - 00397192 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2014-11-25 16:52 - 2014-10-29 05:04 - 00324864 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-11-25 16:52 - 2014-10-29 05:04 - 00217912 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll
2014-11-25 16:52 - 2014-10-29 05:04 - 00196264 _____ (Microsoft Corporation) C:\Windows\system32\ntmarta.dll
2014-11-25 16:52 - 2014-10-29 05:04 - 00181816 _____ (Microsoft Corporation) C:\Windows\system32\AuthHost.exe
2014-11-25 16:52 - 2014-10-29 05:04 - 00136912 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-25 16:52 - 2014-10-29 05:04 - 00120384 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2014-11-25 16:52 - 2014-10-29 05:04 - 00105872 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2014-11-25 16:52 - 2014-10-29 05:03 - 00435008 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-25 16:52 - 2014-10-29 05:03 - 00177472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-25 16:52 - 2014-10-29 05:00 - 00740664 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-11-25 16:52 - 2014-10-29 05:00 - 00544408 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-11-25 16:52 - 2014-10-29 05:00 - 00530992 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-11-25 16:52 - 2014-10-29 05:00 - 00379568 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2014-11-25 16:52 - 2014-10-29 05:00 - 00297512 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2014-11-25 16:52 - 2014-10-29 05:00 - 00142000 _____ (Microsoft Corporation) C:\Windows\system32\dxva2.dll
2014-11-25 16:52 - 2014-10-29 04:59 - 00520536 _____ (Microsoft Corporation) C:\Windows\system32\WWanAPI.dll
2014-11-25 16:52 - 2014-10-29 04:59 - 00498496 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2014-11-25 16:52 - 2014-10-29 04:59 - 00415040 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2014-11-25 16:52 - 2014-10-29 04:59 - 00230816 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2014-11-25 16:52 - 2014-10-29 04:58 - 01797944 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll
2014-11-25 16:52 - 2014-10-29 04:57 - 01913128 _____ (Microsoft Corporation) C:\Windows\system32\DisplaySwitch.exe
2014-11-25 16:52 - 2014-10-29 04:57 - 01552704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-11-25 16:52 - 2014-10-29 04:57 - 01150208 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL
2014-11-25 16:52 - 2014-10-29 04:57 - 00767504 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll
2014-11-25 16:52 - 2014-10-29 04:57 - 00725672 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2014-11-25 16:52 - 2014-10-29 04:57 - 00662120 _____ (Microsoft Corporation) C:\Windows\system32\DMRServer.exe
2014-11-25 16:52 - 2014-10-29 04:57 - 00643064 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2014-11-25 16:52 - 2014-10-29 04:57 - 00629576 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL
2014-11-25 16:52 - 2014-10-29 04:57 - 00557832 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2014-11-25 16:52 - 2014-10-29 04:57 - 00447256 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2014-11-25 16:52 - 2014-10-29 04:57 - 00389952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-11-25 16:52 - 2014-10-29 04:57 - 00339312 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll
2014-11-25 16:52 - 2014-10-29 04:57 - 00295432 _____ (Microsoft Corporation) C:\Windows\system32\WMASF.DLL
2014-11-25 16:52 - 2014-10-29 04:57 - 00271152 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2014-11-25 16:52 - 2014-10-29 04:57 - 00256744 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MediaControl.dll
2014-11-25 16:52 - 2014-10-29 04:57 - 00217432 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2014-11-25 16:52 - 2014-10-29 04:57 - 00216920 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2014-11-25 16:52 - 2014-10-29 04:57 - 00034568 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountBroker.exe
2014-11-25 16:52 - 2014-10-29 04:57 - 00031496 _____ (Microsoft Corporation) C:\Windows\system32\CameraSettingsUIHost.exe
2014-11-25 16:52 - 2014-10-29 04:57 - 00029408 _____ (Microsoft Corporation) C:\Windows\system32\PickerHost.exe
2014-11-25 16:52 - 2014-10-29 04:57 - 00027360 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsRemoveDevice.exe
2014-11-25 16:52 - 2014-10-29 04:57 - 00022208 _____ (Microsoft Corporation) C:\Windows\system32\PurchaseWindowsLicense.exe
2014-11-25 16:52 - 2014-10-29 04:57 - 00018584 _____ (Microsoft Corporation) C:\Windows\system32\SlideToShutDown.exe
2014-11-25 16:52 - 2014-10-29 04:55 - 01063432 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
2014-11-25 16:52 - 2014-10-29 04:55 - 00730824 _____ (Microsoft Corporation) C:\Windows\system32\clbcatq.dll
2014-11-25 16:52 - 2014-10-29 04:55 - 00426120 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2014-11-25 16:52 - 2014-10-29 04:55 - 00359496 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-11-25 16:52 - 2014-10-29 04:55 - 00305192 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp.dll
2014-11-25 16:52 - 2014-10-29 04:55 - 00278392 _____ (Microsoft Corporation) C:\Windows\system32\wkspbroker.exe
2014-11-25 16:52 - 2014-10-29 04:55 - 00019264 _____ (Microsoft Corporation) C:\Windows\system32\dllhost.exe
2014-11-25 16:52 - 2014-10-29 04:54 - 00685408 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-11-25 16:52 - 2014-10-29 04:53 - 00687496 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2014-11-25 16:52 - 2014-10-29 04:53 - 00411128 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2014-11-25 16:52 - 2014-10-29 04:52 - 00734448 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00580024 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00497936 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00444728 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00405456 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00387872 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00356936 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00311448 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2014-11-25 16:52 - 2014-10-29 04:52 - 00244272 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00225696 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00161120 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00132232 _____ (Microsoft Corporation) C:\Windows\system32\RTWorkQ.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00108432 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-25 16:52 - 2014-10-29 04:52 - 00020160 _____ (Microsoft Corporation) C:\Windows\system32\CompPkgSup.dll
2014-11-25 16:52 - 2014-10-29 04:51 - 00363080 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2014-11-25 16:52 - 2014-10-29 04:51 - 00360992 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2014-11-25 16:52 - 2014-10-29 04:51 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-11-25 16:52 - 2014-10-29 04:51 - 00179736 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-11-25 16:52 - 2014-10-29 04:51 - 00159112 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL
2014-11-25 16:52 - 2014-10-29 04:18 - 01782912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll
2014-11-25 16:52 - 2014-10-29 04:18 - 01103768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2014-11-25 16:52 - 2014-10-29 04:18 - 00848568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll
2014-11-25 16:52 - 2014-10-29 04:18 - 00348048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\verifier.dll
2014-11-25 16:52 - 2014-10-29 04:18 - 00320736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtapi.dll
2014-11-25 16:52 - 2014-10-29 04:18 - 00241168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2014-11-25 16:52 - 2014-10-29 04:18 - 00164264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2014-11-25 16:52 - 2014-10-29 04:15 - 00340848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2014-11-25 16:52 - 2014-10-29 04:15 - 00340288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-25 16:52 - 2014-10-29 04:15 - 00245296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-11-25 16:52 - 2014-10-29 04:15 - 00192096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2014-11-25 16:52 - 2014-10-29 04:15 - 00154392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntmarta.dll
2014-11-25 16:52 - 2014-10-29 04:15 - 00119800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-25 16:52 - 2014-10-29 04:15 - 00089856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2014-11-25 16:52 - 2014-10-29 04:13 - 00185880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2014-11-25 16:52 - 2014-10-29 04:12 - 00616704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-11-25 16:52 - 2014-10-29 04:12 - 00444656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2014-11-25 16:52 - 2014-10-29 04:12 - 00430176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-11-25 16:52 - 2014-10-29 04:12 - 00416760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWanAPI.dll
2014-11-25 16:52 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2014-11-25 16:52 - 2014-10-29 04:12 - 00403776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2014-11-25 16:52 - 2014-10-29 04:12 - 00241680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqmapi.dll
2014-11-25 16:52 - 2014-10-29 04:12 - 00116696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxva2.dll
2014-11-25 16:52 - 2014-10-29 04:11 - 01037656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL
2014-11-25 16:52 - 2014-10-29 04:11 - 00914648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOE.DLL
2014-11-25 16:52 - 2014-10-29 04:11 - 00492704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL
2014-11-25 16:52 - 2014-10-29 04:11 - 00488064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll
2014-11-25 16:52 - 2014-10-29 04:11 - 00463744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP4SDECD.DLL
2014-11-25 16:52 - 2014-10-29 04:11 - 00275280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MPG4DECD.DLL
2014-11-25 16:52 - 2014-10-29 04:11 - 00274256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP43DECD.DLL
2014-11-25 16:52 - 2014-10-29 04:11 - 00245296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMASF.DLL
2014-11-25 16:52 - 2014-10-29 04:11 - 00191104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MediaControl.dll
2014-11-25 16:52 - 2014-10-29 04:11 - 00190048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2014-11-25 16:52 - 2014-10-29 04:11 - 00187488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2014-11-25 16:52 - 2014-10-29 04:11 - 00184888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COLORCNV.DLL
2014-11-25 16:52 - 2014-10-29 04:11 - 00183832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VIDRESZR.DLL
2014-11-25 16:52 - 2014-10-29 04:10 - 01906872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DisplaySwitch.exe
2014-11-25 16:52 - 2014-10-29 04:10 - 01287112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2014-11-25 16:52 - 2014-10-29 04:10 - 00569128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clbcatq.dll
2014-11-25 16:52 - 2014-10-29 04:10 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2014-11-25 16:52 - 2014-10-29 04:10 - 00547992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
2014-11-25 16:52 - 2014-10-29 04:10 - 00492232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2014-11-25 16:52 - 2014-10-29 04:10 - 00367248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2014-11-25 16:52 - 2014-10-29 04:10 - 00278352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shlwapi.dll
2014-11-25 16:52 - 2014-10-29 04:10 - 00276816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-11-25 16:52 - 2014-10-29 04:10 - 00272648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00584120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00551064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00482360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmdev.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00409040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00399752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00336680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00331048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00320256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00260800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00202440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00136840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00134280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll
2014-11-25 16:52 - 2014-10-29 04:07 - 00019096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksuser.dll
2014-11-25 16:52 - 2014-10-29 04:06 - 00800008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll
2014-11-25 16:52 - 2014-10-29 04:06 - 00507152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-11-25 16:52 - 2014-10-29 04:06 - 00111064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RTWorkQ.dll
2014-11-25 16:52 - 2014-10-29 04:05 - 00321248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2014-11-25 16:52 - 2014-10-29 04:05 - 00257216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2014-11-25 16:52 - 2014-10-29 03:56 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2014-11-25 16:52 - 2014-10-29 03:56 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\mfh264enc.dll
2014-11-25 16:52 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-25 16:52 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-25 16:52 - 2014-10-29 03:49 - 00604672 _____ (Microsoft Corporation) C:\Windows\system32\msvcp60.dll
2014-11-25 16:52 - 2014-10-29 03:48 - 00925696 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe
2014-11-25 16:52 - 2014-10-29 03:48 - 00636416 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx02000.dll
2014-11-25 16:52 - 2014-10-29 03:46 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2014-11-25 16:52 - 2014-10-29 03:45 - 01198080 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2014-11-25 16:52 - 2014-10-29 03:45 - 00653824 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-11-25 16:52 - 2014-10-29 03:45 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\glmf32.dll
2014-11-25 16:52 - 2014-10-29 03:45 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-11-25 16:52 - 2014-10-29 03:45 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WwaApi.dll
2014-11-25 16:52 - 2014-10-29 03:44 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2014-11-25 16:52 - 2014-10-29 03:43 - 00685056 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll
2014-11-25 16:52 - 2014-10-29 03:42 - 01091584 _____ (Microsoft Corporation) C:\Windows\system32\opengl32.dll
2014-11-25 16:52 - 2014-10-29 03:42 - 00480256 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2014-11-25 16:52 - 2014-10-29 03:42 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll
2014-11-25 16:52 - 2014-10-29 03:42 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\uudf.dll
2014-11-25 16:52 - 2014-10-29 03:41 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2014-11-25 16:52 - 2014-10-29 03:41 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2014-11-25 16:52 - 2014-10-29 03:41 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2014-11-25 16:52 - 2014-10-29 03:41 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2014-11-25 16:52 - 2014-10-29 03:41 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-11-25 16:52 - 2014-10-29 03:41 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-11-25 16:52 - 2014-10-29 03:40 - 00610816 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2014-11-25 16:52 - 2014-10-29 03:40 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\dinput8.dll
2014-11-25 16:52 - 2014-10-29 03:37 - 02329088 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data0404.dll
2014-11-25 16:52 - 2014-10-29 03:37 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\msctfui.dll
2014-11-25 16:52 - 2014-10-29 03:36 - 00546304 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese40.dll
2014-11-25 16:52 - 2014-10-29 03:36 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\cic.dll
2014-11-25 16:52 - 2014-10-29 03:36 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll
2014-11-25 16:52 - 2014-10-29 03:35 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\adsldp.dll
2014-11-25 16:52 - 2014-10-29 03:35 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\MSWB7.dll
2014-11-25 16:52 - 2014-10-29 03:34 - 03438592 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data0804.dll
2014-11-25 16:52 - 2014-10-29 03:33 - 07558144 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data0011.dll
2014-11-25 16:52 - 2014-10-29 03:33 - 00860672 _____ (Microsoft Corporation) C:\Windows\system32\NL7Data001E.dll
2014-11-25 16:52 - 2014-10-29 03:33 - 00799744 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll
2014-11-25 16:52 - 2014-10-29 03:33 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\scrobj.dll
2014-11-25 16:52 - 2014-10-29 03:32 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\migflt.dll
2014-11-25 16:52 - 2014-10-29 03:32 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\sqlceoledb40.dll
2014-11-25 16:52 - 2014-10-29 03:31 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2014-11-25 16:52 - 2014-10-29 03:31 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2014-11-25 16:52 - 2014-10-29 03:31 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2014-11-25 16:52 - 2014-10-29 03:31 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\WinSyncMetastore.dll
2014-11-25 16:52 - 2014-10-29 03:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB70804.dll
2014-11-25 16:52 - 2014-10-29 03:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB70404.dll
2014-11-25 16:52 - 2014-10-29 03:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB7001E.dll
2014-11-25 16:52 - 2014-10-29 03:30 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\MSWB70011.dll
2014-11-25 16:52 - 2014-10-29 03:30 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\SensorsClassExtension.dll
2014-11-25 16:52 - 2014-10-29 03:29 - 01246720 _____ (Microsoft Corporation) C:\Windows\system32\ogldrv.dll
2014-11-25 16:52 - 2014-10-29 03:29 - 00620544 _____ (Microsoft Corporation) C:\Windows\system32\dsound.dll
2014-11-25 16:52 - 2014-10-29 03:29 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\fhengine.dll
2014-11-25 16:52 - 2014-10-29 03:29 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe
2014-11-25 16:52 - 2014-10-29 03:29 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\dmusic.dll
2014-11-25 16:52 - 2014-10-29 03:28 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll
2014-11-25 16:52 - 2014-10-29 03:28 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2014-11-25 16:52 - 2014-10-29 03:28 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00899584 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\adsnt.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe
2014-11-25 16:52 - 2014-10-29 03:27 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\NAPSTAT.EXE
2014-11-25 16:52 - 2014-10-29 03:27 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dmdskmgr.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\mssha.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\sdiageng.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\wmvdspa.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\mfdvdec.dll
2014-11-25 16:52 - 2014-10-29 03:27 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.Workplace.WorkplaceSettings.dll
2014-11-25 16:52 - 2014-10-29 03:26 - 00771584 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2014-11-25 16:52 - 2014-10-29 03:26 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\SmartCardSimulator.dll
2014-11-25 16:52 - 2014-10-29 03:26 - 00431104 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll
2014-11-25 16:52 - 2014-10-29 03:26 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-11-25 16:52 - 2014-10-29 03:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2014-11-25 16:52 - 2014-10-29 03:26 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2014-11-25 16:52 - 2014-10-29 03:26 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\gpresult.exe
2014-11-25 16:52 - 2014-10-29 03:25 - 00995328 _____ (Microsoft Corporation) C:\Windows\system32\tapi3.dll
2014-11-25 16:52 - 2014-10-29 03:25 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\sdohlp.dll
2014-11-25 16:52 - 2014-10-29 03:25 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2014-11-25 16:52 - 2014-10-29 03:25 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2014-11-25 16:52 - 2014-10-29 03:24 - 00644608 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL
2014-11-25 16:52 - 2014-10-29 03:24 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\WmpDui.dll
2014-11-25 16:52 - 2014-10-29 03:24 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2014-11-25 16:52 - 2014-10-29 03:23 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\offfilt.dll
2014-11-25 16:52 - 2014-10-29 03:23 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpui.dll
2014-11-25 16:52 - 2014-10-29 03:22 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\recimg.exe
2014-11-25 16:52 - 2014-10-29 03:22 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-11-25 16:52 - 2014-10-29 03:22 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\sti.dll
2014-11-25 16:52 - 2014-10-29 03:22 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2014-11-25 16:52 - 2014-10-29 03:21 - 01664000 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL
2014-11-25 16:52 - 2014-10-29 03:21 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\iassdo.dll
2014-11-25 16:52 - 2014-10-29 03:21 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\iassam.dll
2014-11-25 16:52 - 2014-10-29 03:20 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL
2014-11-25 16:52 - 2014-10-29 03:20 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2014-11-25 16:52 - 2014-10-29 03:20 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2014-11-25 16:52 - 2014-10-29 03:19 - 09732096 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000a.dll
2014-11-25 16:52 - 2014-10-29 03:19 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL
2014-11-25 16:52 - 2014-10-29 03:19 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\dxdiag.exe
2014-11-25 16:52 - 2014-10-29 03:19 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll
2014-11-25 16:52 - 2014-10-29 03:19 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\softkbd.dll
2014-11-25 16:52 - 2014-10-29 03:18 - 06259712 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0009.dll
2014-11-25 16:52 - 2014-10-29 03:18 - 04616704 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001d.dll
2014-11-25 16:52 - 2014-10-29 03:18 - 02403328 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000c.dll
2014-11-25 16:52 - 2014-10-29 03:18 - 02140672 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0007.dll
2014-11-25 16:52 - 2014-10-29 03:18 - 01609216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0000.dll
2014-11-25 16:52 - 2014-10-29 03:18 - 00784384 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2014-11-25 16:52 - 2014-10-29 03:18 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\mscandui.dll
2014-11-25 16:52 - 2014-10-29 03:18 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll
2014-11-25 16:52 - 2014-10-29 03:18 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe
2014-11-25 16:52 - 2014-10-29 03:17 - 04621312 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0414.dll
2014-11-25 16:52 - 2014-10-29 03:17 - 04620288 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0816.dll
2014-11-25 16:52 - 2014-10-29 03:17 - 03231232 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004b.dll
2014-11-25 16:52 - 2014-10-29 03:17 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000d.dll
2014-11-25 16:52 - 2014-10-29 03:17 - 01926144 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0022.dll
2014-11-25 16:52 - 2014-10-29 03:17 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2014-11-25 16:52 - 2014-10-29 03:17 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\WinSyncProviders.dll
2014-11-25 16:52 - 2014-10-29 03:17 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe
2014-11-25 16:52 - 2014-10-29 03:16 - 04621312 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0010.dll
2014-11-25 16:52 - 2014-10-29 03:16 - 04616704 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0416.dll
2014-11-25 16:52 - 2014-10-29 03:16 - 03235840 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0039.dll
2014-11-25 16:52 - 2014-10-29 03:16 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004a.dll
2014-11-25 16:52 - 2014-10-29 03:16 - 00546816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.PointOfService.dll
2014-11-25 16:52 - 2014-10-29 03:16 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\comsnap.dll
2014-11-25 16:52 - 2014-10-29 03:16 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\lltdapi.dll
2014-11-25 16:52 - 2014-10-29 03:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004e.dll
2014-11-25 16:52 - 2014-10-29 03:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0049.dll
2014-11-25 16:52 - 2014-10-29 03:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0047.dll
2014-11-25 16:52 - 2014-10-29 03:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0046.dll
2014-11-25 16:52 - 2014-10-29 03:15 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0020.dll
2014-11-25 16:52 - 2014-10-29 03:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0026.dll
2014-11-25 16:52 - 2014-10-29 03:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0024.dll
2014-11-25 16:52 - 2014-10-29 03:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001b.dll
2014-11-25 16:52 - 2014-10-29 03:15 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0002.dll
2014-11-25 16:52 - 2014-10-29 03:15 - 01904640 _____ (Microsoft Corporation) C:\Windows\system32\NlsData002a.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData004c.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0045.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 02075136 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0027.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0c1a.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData081a.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData001a.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0018.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData000f.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 02073600 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0003.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 01904640 _____ (Microsoft Corporation) C:\Windows\system32\NlsData003e.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 01904640 _____ (Microsoft Corporation) C:\Windows\system32\NlsData0021.dll
2014-11-25 16:52 - 2014-10-29 03:14 - 00378880 ____C (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll
2014-11-25 16:52 - 2014-10-29 03:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll
2014-11-25 16:52 - 2014-10-29 03:13 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll
2014-11-25 16:52 - 2014-10-29 03:13 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll
2014-11-25 16:52 - 2014-10-29 03:12 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2014-11-25 16:52 - 2014-10-29 03:12 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2014-11-25 16:52 - 2014-10-29 03:12 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2014-11-25 16:52 - 2014-10-29 03:12 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\fhcat.dll
2014-11-25 16:52 - 2014-10-29 03:11 - 01070080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL
2014-11-25 16:52 - 2014-10-29 03:11 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2014-11-25 16:52 - 2014-10-29 03:11 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2014-11-25 16:52 - 2014-10-29 03:11 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\SnippingTool.exe
2014-11-25 16:52 - 2014-10-29 03:11 - 00435712 _____ (Microsoft Corporation) C:\Windows\system32\mswmdm.dll
2014-11-25 16:52 - 2014-10-29 03:11 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\sensrsvc.dll
2014-11-25 16:52 - 2014-10-29 03:11 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll
2014-11-25 16:52 - 2014-10-29 03:10 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2014-11-25 16:52 - 2014-10-29 03:10 - 00515072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfh264enc.dll
2014-11-25 16:52 - 2014-10-29 03:10 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2014-11-25 16:52 - 2014-10-29 03:09 - 00632320 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2014-11-25 16:52 - 2014-10-29 03:09 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\lltdsvc.dll
2014-11-25 16:52 - 2014-10-29 03:09 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll
2014-11-25 16:52 - 2014-10-29 03:09 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2014-11-25 16:52 - 2014-10-29 03:08 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll
2014-11-25 16:52 - 2014-10-29 03:08 - 00858624 _____ (Microsoft Corporation) C:\Windows\system32\comuid.dll
2014-11-25 16:52 - 2014-10-29 03:08 - 00670208 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-11-25 16:52 - 2014-10-29 03:08 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll
2014-11-25 16:52 - 2014-10-29 03:08 - 00390656 _____ (Microsoft Corporation) C:\Windows\system32\difxapi.dll
2014-11-25 16:52 - 2014-10-29 03:08 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\fdprint.dll
2014-11-25 16:52 - 2014-10-29 03:07 - 06692352 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe
2014-11-25 16:52 - 2014-10-29 03:07 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-11-25 16:52 - 2014-10-29 03:06 - 02902016 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2014-11-25 16:52 - 2014-10-29 03:06 - 02134528 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll
2014-11-25 16:52 - 2014-10-29 03:06 - 01313792 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2014-11-25 16:52 - 2014-10-29 03:06 - 00980480 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2014-11-25 16:52 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-25 16:52 - 2014-10-29 03:06 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2014-11-25 16:52 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-25 16:52 - 2014-10-29 03:05 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\wiaaut.dll
2014-11-25 16:52 - 2014-10-29 03:05 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll
2014-11-25 16:52 - 2014-10-29 03:04 - 00612864 _____ (Microsoft Corporation) C:\Windows\system32\IasMigPlugin.dll
2014-11-25 16:52 - 2014-10-29 03:04 - 00587264 _____ (Microsoft Corporation) C:\Windows\system32\filemgmt.dll
2014-11-25 16:52 - 2014-10-29 03:04 - 00517632 _____ (Microsoft Corporation) C:\Windows\system32\devmgr.dll
2014-11-25 16:52 - 2014-10-29 03:04 - 00471040 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2014-11-25 16:52 - 2014-10-29 03:04 - 00445440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp60.dll
2014-11-25 16:52 - 2014-10-29 03:04 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2014-11-25 16:52 - 2014-10-29 03:04 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll
2014-11-25 16:52 - 2014-10-29 03:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll
2014-11-25 16:52 - 2014-10-29 03:03 - 02334720 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2014-11-25 16:52 - 2014-10-29 03:03 - 00862720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-11-25 16:52 - 2014-10-29 03:03 - 00849408 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2014-11-25 16:52 - 2014-10-29 03:03 - 00832000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoconv.exe
2014-11-25 16:52 - 2014-10-29 03:03 - 00489472 _____ (Microsoft Corporation) C:\Windows\system32\dlnashext.dll
2014-11-25 16:52 - 2014-10-29 03:03 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\xwtpdui.dll
2014-11-25 16:52 - 2014-10-29 03:02 - 00520704 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll
2014-11-25 16:52 - 2014-10-29 03:02 - 00476672 _____ (Microsoft Corporation) C:\Windows\system32\xwizards.dll
2014-11-25 16:52 - 2014-10-29 03:02 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2014-11-25 16:52 - 2014-10-29 03:02 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\rasmontr.dll
2014-11-25 16:52 - 2014-10-29 03:02 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2014-11-25 16:52 - 2014-10-29 03:02 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2014-11-25 16:52 - 2014-10-29 03:01 - 00819200 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2014-11-25 16:52 - 2014-10-29 03:01 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2014-11-25 16:52 - 2014-10-29 03:01 - 00549888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2014-11-25 16:52 - 2014-10-29 03:01 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2014-11-25 16:52 - 2014-10-29 03:01 - 00453632 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll
2014-11-25 16:52 - 2014-10-29 03:01 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll
2014-11-25 16:52 - 2014-10-29 03:00 - 03814400 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll
2014-11-25 16:52 - 2014-10-29 03:00 - 01861632 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2014-11-25 16:52 - 2014-10-29 03:00 - 00652800 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2014-11-25 16:52 - 2014-10-29 03:00 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2014-11-25 16:52 - 2014-10-29 03:00 - 00435200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glmf32.dll
2014-11-25 16:52 - 2014-10-29 03:00 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2014-11-25 16:52 - 2014-10-29 03:00 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\nlhtml.dll
2014-11-25 16:52 - 2014-10-29 03:00 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-11-25 16:52 - 2014-10-29 03:00 - 00153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WwaApi.dll
2014-11-25 16:52 - 2014-10-29 03:00 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched32.dll
2014-11-25 16:52 - 2014-10-29 02:59 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2014-11-25 16:52 - 2014-10-29 02:59 - 00670720 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2014-11-25 16:52 - 2014-10-29 02:59 - 00564224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched20.dll
2014-11-25 16:52 - 2014-10-29 02:59 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\SyncInfrastructure.dll
2014-11-25 16:52 - 2014-10-29 02:59 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\certreq.exe
2014-11-25 16:52 - 2014-10-29 02:59 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2014-11-25 16:52 - 2014-10-29 02:59 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL
2014-11-25 16:52 - 2014-10-29 02:58 - 01040384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-11-25 16:52 - 2014-10-29 02:58 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2014-11-25 16:52 - 2014-10-29 02:58 - 00846848 _____ (Microsoft Corporation) C:\Windows\system32\Magnify.exe
2014-11-25 16:52 - 2014-10-29 02:58 - 00423424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll
2014-11-25 16:52 - 2014-10-29 02:58 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2014-11-25 16:52 - 2014-10-29 02:58 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\msrdc.dll
2014-11-25 16:52 - 2014-10-29 02:58 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uudf.dll
2014-11-25 16:52 - 2014-10-29 02:57 - 02592256 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2014-11-25 16:52 - 2014-10-29 02:57 - 01479168 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2014-11-25 16:52 - 2014-10-29 02:57 - 01431552 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll
2014-11-25 16:52 - 2014-10-29 02:57 - 01047040 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll
2014-11-25 16:52 - 2014-10-29 02:57 - 01038336 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2014-11-25 16:52 - 2014-10-29 02:57 - 00777728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\opengl32.dll
2014-11-25 16:52 - 2014-10-29 02:57 - 00515072 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2014-11-25 16:52 - 2014-10-29 02:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2014-11-25 16:52 - 2014-10-29 02:57 - 00248320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2014-11-25 16:52 - 2014-10-29 02:57 - 00169984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2014-11-25 16:52 - 2014-10-29 02:57 - 00161280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2014-11-25 16:52 - 2014-10-29 02:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-11-25 16:52 - 2014-10-29 02:56 - 00796160 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe
2014-11-25 16:52 - 2014-10-29 02:56 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2014-11-25 16:52 - 2014-10-29 02:56 - 00589312 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2014-11-25 16:52 - 2014-10-29 02:56 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll
2014-11-25 16:52 - 2014-10-29 02:56 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll
2014-11-25 16:52 - 2014-10-29 02:56 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2014-11-25 16:52 - 2014-10-29 02:56 - 00317440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll
2014-11-25 16:52 - 2014-10-29 02:55 - 00669184 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx
2014-11-25 16:52 - 2014-10-29 02:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2014-11-25 16:52 - 2014-10-29 02:55 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dinput8.dll
2014-11-25 16:52 - 2014-10-29 02:54 - 00833536 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-11-25 16:52 - 2014-10-29 02:54 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2014-11-25 16:52 - 2014-10-29 02:54 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\DfpCommon.dll
2014-11-25 16:52 - 2014-10-29 02:54 - 00401408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dim.dll
2014-11-25 16:52 - 2014-10-29 02:54 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe
2014-11-25 16:52 - 2014-10-29 02:54 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2014-11-25 16:52 - 2014-10-29 02:54 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\wmidx.dll
2014-11-25 16:52 - 2014-10-29 02:53 - 02238464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data0404.dll
2014-11-25 16:52 - 2014-10-29 02:53 - 01065984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8.dll
2014-11-25 16:52 - 2014-10-29 02:53 - 00924672 _____ (Microsoft Corporation) C:\Windows\system32\nettrace.dll
2014-11-25 16:52 - 2014-10-29 02:53 - 00881152 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe
2014-11-25 16:52 - 2014-10-29 02:53 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2014-11-25 16:52 - 2014-10-29 02:53 - 00449024 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll
2014-11-25 16:52 - 2014-10-29 02:53 - 00433152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlcese40.dll
2014-11-25 16:52 - 2014-10-29 02:53 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 03355136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data0804.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 02829312 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 00846848 _____ (Microsoft Corporation) C:\Windows\system32\ipsecsnp.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 00809984 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 00514048 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Usb.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 00224768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsldp.dll
2014-11-25 16:52 - 2014-10-29 02:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\rdvvmtransport.dll
2014-11-25 16:52 - 2014-10-29 02:51 - 07331840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data0011.dll
2014-11-25 16:52 - 2014-10-29 02:51 - 00782848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NL7Data001E.dll
2014-11-25 16:52 - 2014-10-29 02:51 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2014-11-25 16:52 - 2014-10-29 02:51 - 00285184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2014-11-25 16:52 - 2014-10-29 02:51 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\IdListen.dll
2014-11-25 16:52 - 2014-10-29 02:51 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrobj.dll
2014-11-25 16:52 - 2014-10-29 02:51 - 00122368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmstyle.dll
2014-11-25 16:52 - 2014-10-29 02:50 - 00711680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlsrv32.dll
2014-11-25 16:52 - 2014-10-29 02:50 - 00521728 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2014-11-25 16:52 - 2014-10-29 02:50 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlceoledb40.dll
2014-11-25 16:52 - 2014-10-29 02:49 - 02236416 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll
2014-11-25 16:52 - 2014-10-29 02:49 - 00771584 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2014-11-25 16:52 - 2014-10-29 02:49 - 00742400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlceqp40.dll
2014-11-25 16:52 - 2014-10-29 02:49 - 00479744 _____ (Microsoft Corporation) C:\Windows\system32\StikyNot.exe
2014-11-25 16:52 - 2014-10-29 02:49 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll
2014-11-25 16:52 - 2014-10-29 02:49 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL
2014-11-25 16:52 - 2014-10-29 02:49 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2014-11-25 16:52 - 2014-10-29 02:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-11-25 16:52 - 2014-10-29 02:49 - 00234496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2014-11-25 16:52 - 2014-10-29 02:49 - 00233984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2014-11-25 16:52 - 2014-10-29 02:49 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmime.dll
2014-11-25 16:52 - 2014-10-29 02:49 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSyncMetastore.dll
2014-11-25 16:52 - 2014-10-29 02:48 - 01364992 _____ (Microsoft Corporation) C:\Windows\system32\connect.dll
2014-11-25 16:52 - 2014-10-29 02:48 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll
2014-11-25 16:52 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB70804.dll
2014-11-25 16:52 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB70404.dll
2014-11-25 16:52 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB7001E.dll
2014-11-25 16:52 - 2014-10-29 02:48 - 00524800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB70011.dll
2014-11-25 16:52 - 2014-10-29 02:48 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Dxpserver.exe
2014-11-25 16:52 - 2014-10-29 02:48 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\deviceregistration.dll
2014-11-25 16:52 - 2014-10-29 02:48 - 00144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prntvpt.dll
2014-11-25 16:52 - 2014-10-29 02:47 - 01096192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ogldrv.dll
2014-11-25 16:52 - 2014-10-29 02:47 - 01041920 _____ (Microsoft Corporation) C:\Windows\system32\msdt.exe
2014-11-25 16:52 - 2014-10-29 02:47 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpssvcs.dll
2014-11-25 16:52 - 2014-10-29 02:47 - 00616960 _____ (Microsoft Corporation) C:\Windows\system32\msra.exe
2014-11-25 16:52 - 2014-10-29 02:47 - 00517120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsound.dll
2014-11-25 16:52 - 2014-10-29 02:47 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll
2014-11-25 16:52 - 2014-10-29 02:47 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\apprepsync.dll
2014-11-25 16:52 - 2014-10-29 02:47 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskpart.exe
2014-11-25 16:52 - 2014-10-29 02:46 - 01497600 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2014-11-25 16:52 - 2014-10-29 02:46 - 01001472 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2014-11-25 16:52 - 2014-10-29 02:46 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-11-25 16:52 - 2014-10-29 02:46 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\RADCUI.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdv.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00292352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsnt.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskraid.exe
2014-11-25 16:52 - 2014-10-29 02:46 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\msoeacct.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmdskmgr.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdiageng.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmvdspa.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfdvdec.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00148480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll
2014-11-25 16:52 - 2014-10-29 02:46 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2014-11-25 16:52 - 2014-10-29 02:45 - 00879104 _____ (Microsoft Corporation) C:\Windows\system32\rasdlg.dll
2014-11-25 16:52 - 2014-10-29 02:45 - 00738816 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll
2014-11-25 16:52 - 2014-10-29 02:45 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2014-11-25 16:52 - 2014-10-29 02:45 - 00672768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll
2014-11-25 16:52 - 2014-10-29 02:45 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe
2014-11-25 16:52 - 2014-10-29 02:45 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-11-25 16:52 - 2014-10-29 02:45 - 00429568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdohlp.dll
2014-11-25 16:52 - 2014-10-29 02:45 - 00378880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\termmgr.dll
2014-11-25 16:52 - 2014-10-29 02:45 - 00336896 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2014-11-25 16:52 - 2014-10-29 02:45 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2014-11-25 16:52 - 2014-10-29 02:45 - 00192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpresult.exe
2014-11-25 16:52 - 2014-10-29 02:44 - 00872960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapi3.dll
2014-11-25 16:52 - 2014-10-29 02:44 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll
2014-11-25 16:52 - 2014-10-29 02:44 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2014-11-25 16:52 - 2014-10-29 02:44 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2014-11-25 16:52 - 2014-10-29 02:44 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2014-11-25 16:52 - 2014-10-29 02:43 - 00960000 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2014-11-25 16:52 - 2014-10-29 02:43 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2014-11-25 16:52 - 2014-10-29 02:43 - 00736256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVXENCD.DLL
2014-11-25 16:52 - 2014-10-29 02:43 - 00524800 _____ (Microsoft Corporation) C:\Windows\system32\icsvc.dll
2014-11-25 16:52 - 2014-10-29 02:43 - 00289792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WmpDui.dll
2014-11-25 16:52 - 2014-10-29 02:43 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sti.dll
2014-11-25 16:52 - 2014-10-29 02:43 - 00228864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSNP.ax
2014-11-25 16:52 - 2014-10-29 02:43 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offfilt.dll
2014-11-25 16:52 - 2014-10-29 02:42 - 00852480 _____ (Microsoft Corporation) C:\Windows\system32\PurchaseWindowsLicense.dll
2014-11-25 16:52 - 2014-10-29 02:42 - 00712192 _____ (Microsoft Corporation) C:\Windows\system32\fhcfg.dll
2014-11-25 16:52 - 2014-10-29 02:42 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\vmrdvcore.dll
2014-11-25 16:52 - 2014-10-29 02:42 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-11-25 16:52 - 2014-10-29 02:42 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapi32.dll
2014-11-25 16:52 - 2014-10-29 02:42 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrecst.dll
2014-11-25 16:52 - 2014-10-29 02:41 - 01411584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOE.DLL
2014-11-25 16:52 - 2014-10-29 02:41 - 00381952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassdo.dll
2014-11-25 16:52 - 2014-10-29 02:41 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnp.dll
2014-11-25 16:52 - 2014-10-29 02:41 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\apds.dll
2014-11-25 16:52 - 2014-10-29 02:41 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassam.dll
2014-11-25 16:52 - 2014-10-29 02:40 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2014-11-25 16:52 - 2014-10-29 02:40 - 02036224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0007.dll
2014-11-25 16:52 - 2014-10-29 02:40 - 00380928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshipsec.dll
2014-11-25 16:52 - 2014-10-29 02:40 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiag.exe
2014-11-25 16:52 - 2014-10-29 02:40 - 00224256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll
2014-11-25 16:52 - 2014-10-29 02:39 - 09604608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000a.dll
2014-11-25 16:52 - 2014-10-29 02:39 - 04531712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0416.dll
2014-11-25 16:52 - 2014-10-29 02:39 - 04530688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData001d.dll
2014-11-25 16:52 - 2014-10-29 02:39 - 01571328 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2014-11-25 16:52 - 2014-10-29 02:39 - 00898048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2014-11-25 16:52 - 2014-10-29 02:39 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSENCD.DLL
2014-11-25 16:52 - 2014-10-29 02:39 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscandui.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 04945920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0009.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 04530688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0010.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 04530176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0414.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 04529664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0816.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 02387456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000d.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 02307072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000c.dll

krautsand 01.12.2014 16:28

(2)
2014-11-25 16:52 - 2014-10-29 02:38 - 02012160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0026.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 02012160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData000f.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 01548800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0000.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 00430592 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMPOSE.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 00363008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.PointOfService.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollUI.dll
2014-11-25 16:52 - 2014-10-29 02:38 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
2014-11-25 16:52 - 2014-10-29 02:37 - 03149824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0039.dll
2014-11-25 16:52 - 2014-10-29 02:37 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData002a.dll
2014-11-25 16:52 - 2014-10-29 02:37 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2014-11-25 16:52 - 2014-10-29 02:37 - 00236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comsnap.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004e.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004c.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004b.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData004a.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0049.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0047.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0046.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0045.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 03132928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0020.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01999360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0027.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0c1a.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData081a.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0024.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData001b.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData001a.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0018.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0003.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01997824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0002.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData003e.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0022.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01829376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsData0021.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01252864 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 01008128 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 00943616 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe
2014-11-25 16:52 - 2014-10-29 02:36 - 00787456 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 00609792 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
2014-11-25 16:52 - 2014-10-29 02:36 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\sbeio.dll
2014-11-25 16:52 - 2014-10-29 02:35 - 00532480 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2014-11-25 16:52 - 2014-10-29 02:35 - 00315904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll
2014-11-25 16:52 - 2014-10-29 02:35 - 00253440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scansetting.dll
2014-11-25 16:52 - 2014-10-29 02:35 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wavemsp.dll
2014-11-25 16:52 - 2014-10-29 02:34 - 00473600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnfldr.dll
2014-11-25 16:52 - 2014-10-29 02:34 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll
2014-11-25 16:52 - 2014-10-29 02:34 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
2014-11-25 16:52 - 2014-10-29 02:34 - 00414720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmdlgs.dll
2014-11-25 16:52 - 2014-10-29 02:34 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswmdm.dll
2014-11-25 16:52 - 2014-10-29 02:34 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll
2014-11-25 16:52 - 2014-10-29 02:34 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll
2014-11-25 16:52 - 2014-10-29 02:33 - 01291776 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2014-11-25 16:52 - 2014-10-29 02:33 - 00963072 _____ (Microsoft Corporation) C:\Windows\system32\rasgcw.dll
2014-11-25 16:52 - 2014-10-29 02:33 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2014-11-25 16:52 - 2014-10-29 02:33 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\WLanConn.dll
2014-11-25 16:52 - 2014-10-29 02:33 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2014-11-25 16:52 - 2014-10-29 02:32 - 00794624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroles.dll
2014-11-25 16:52 - 2014-10-29 02:32 - 00654848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comuid.dll
2014-11-25 16:52 - 2014-10-29 02:32 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psr.exe
2014-11-25 16:52 - 2014-10-29 02:32 - 00512512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll
2014-11-25 16:52 - 2014-10-29 02:32 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmnet.dll
2014-11-25 16:52 - 2014-10-29 02:31 - 01278464 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2014-11-25 16:52 - 2014-10-29 02:31 - 00761344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll
2014-11-25 16:52 - 2014-10-29 02:31 - 00561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-11-25 16:52 - 2014-10-29 02:31 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-11-25 16:52 - 2014-10-29 02:31 - 00318464 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll
2014-11-25 16:52 - 2014-10-29 02:31 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdprint.dll
2014-11-25 16:52 - 2014-10-29 02:30 - 06465536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe
2014-11-25 16:52 - 2014-10-29 02:30 - 01171456 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-11-25 16:52 - 2014-10-29 02:30 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-11-25 16:52 - 2014-10-29 02:30 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2014-11-25 16:52 - 2014-10-29 02:30 - 00579584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiaaut.dll
2014-11-25 16:52 - 2014-10-29 02:30 - 00484352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdial32.dll
2014-11-25 16:52 - 2014-10-29 02:30 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2014-11-25 16:52 - 2014-10-29 02:30 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2014-11-25 16:52 - 2014-10-29 02:30 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL
2014-11-25 16:52 - 2014-10-29 02:29 - 02848768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00833536 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IasMigPlugin.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\filemgmt.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devmgr.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dlnashext.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00365056 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00350720 _____ (Microsoft Corporation) C:\Windows\system32\ncryptprov.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00324608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-11-25 16:52 - 2014-10-29 02:29 - 00154624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 02213888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00812032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\localsec.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadefui.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00402944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsquery.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00357376 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe
2014-11-25 16:52 - 2014-10-29 02:28 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00241664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\audiodev.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00214528 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwtpdui.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00177664 _____ (Microsoft Corporation) C:\Windows\system32\ulib.dll
2014-11-25 16:52 - 2014-10-29 02:28 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\rasman.dll
2014-11-25 16:52 - 2014-10-29 02:27 - 00763392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2014-11-25 16:52 - 2014-10-29 02:27 - 00557568 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2014-11-25 16:52 - 2014-10-29 02:27 - 00422912 _____ (Microsoft Corporation) C:\Windows\system32\PCPTpm12.dll
2014-11-25 16:52 - 2014-10-29 02:27 - 00397824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwizards.dll
2014-11-25 16:52 - 2014-10-29 02:27 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\BCP47Langs.dll
2014-11-25 16:52 - 2014-10-29 02:27 - 00380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll
2014-11-25 16:52 - 2014-10-29 02:27 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2014-11-25 16:52 - 2014-10-29 02:27 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\authz.dll
2014-11-25 16:52 - 2014-10-29 02:27 - 00248320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmontr.dll
2014-11-25 16:52 - 2014-10-29 02:27 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll
2014-11-25 16:52 - 2014-10-29 02:26 - 03788288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll
2014-11-25 16:52 - 2014-10-29 02:26 - 00838656 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2014-11-25 16:52 - 2014-10-29 02:26 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2014-11-25 16:52 - 2014-10-29 02:26 - 00542208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSCOMEX.dll
2014-11-25 16:52 - 2014-10-29 02:26 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\w32time.dll
2014-11-25 16:52 - 2014-10-29 02:26 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\provthrd.dll
2014-11-25 16:52 - 2014-10-29 02:26 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2014-11-25 16:52 - 2014-10-29 02:26 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2014-11-25 16:52 - 2014-10-29 02:26 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll
2014-11-25 16:52 - 2014-10-29 02:26 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\ufat.dll
2014-11-25 16:52 - 2014-10-29 02:25 - 01058816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2014-11-25 16:52 - 2014-10-29 02:25 - 00336896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroleui.dll
2014-11-25 16:52 - 2014-10-29 02:25 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncInfrastructure.dll
2014-11-25 16:52 - 2014-10-29 02:25 - 00333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe
2014-11-25 16:52 - 2014-10-29 02:25 - 00316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certreq.exe
2014-11-25 16:52 - 2014-10-29 02:25 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll
2014-11-25 16:52 - 2014-10-29 02:25 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2014-11-25 16:52 - 2014-10-29 02:25 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\mibincodec.dll
2014-11-25 16:52 - 2014-10-29 02:25 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2014-11-25 16:52 - 2014-10-29 02:24 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DxpTaskSync.dll
2014-11-25 16:52 - 2014-10-29 02:24 - 01335296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2014-11-25 16:52 - 2014-10-29 02:24 - 00902144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2014-11-25 16:52 - 2014-10-29 02:24 - 00845312 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2014-11-25 16:52 - 2014-10-29 02:24 - 00779776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnify.exe
2014-11-25 16:52 - 2014-10-29 02:24 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2014-11-25 16:52 - 2014-10-29 02:24 - 00487424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll
2014-11-25 16:52 - 2014-10-29 02:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\wincorlib.dll
2014-11-25 16:52 - 2014-10-29 02:24 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Geolocation.dll
2014-11-25 16:52 - 2014-10-29 02:24 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2014-11-25 16:52 - 2014-10-29 02:23 - 01826304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2014-11-25 16:52 - 2014-10-29 02:23 - 00484352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2014-11-25 16:52 - 2014-10-29 02:23 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2014-11-25 16:52 - 2014-10-29 02:23 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\livessp.dll
2014-11-25 16:52 - 2014-10-29 02:23 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\winsku.dll
2014-11-25 16:52 - 2014-10-29 02:23 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDSp.dll
2014-11-25 16:52 - 2014-10-29 02:23 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2014-11-25 16:52 - 2014-10-29 02:22 - 02551808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll
2014-11-25 16:52 - 2014-10-29 02:22 - 00839680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2014-11-25 16:52 - 2014-10-29 02:22 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-11-25 16:52 - 2014-10-29 02:22 - 00543744 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2014-11-25 16:52 - 2014-10-29 02:22 - 00536576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx
2014-11-25 16:52 - 2014-10-29 02:22 - 00517120 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2014-11-25 16:52 - 2014-10-29 02:22 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\msdelta.dll
2014-11-25 16:52 - 2014-10-29 02:22 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
2014-11-25 16:52 - 2014-10-29 02:22 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2014-11-25 16:52 - 2014-10-29 02:22 - 00369152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2014-11-25 16:52 - 2014-10-29 02:22 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2014-11-25 16:52 - 2014-10-29 02:22 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll
2014-11-25 16:52 - 2014-10-29 02:22 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\sstpsvc.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00755712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-11-25 16:52 - 2014-10-29 02:21 - 00482304 _____ (Microsoft Corporation) C:\Windows\system32\tpmvsc.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-11-25 16:52 - 2014-10-29 02:21 - 00349696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00306176 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2014-11-25 16:52 - 2014-10-29 02:21 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2014-11-25 16:52 - 2014-10-29 02:21 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00250368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\CryptoWinRT.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmidx.dll
2014-11-25 16:52 - 2014-10-29 02:21 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00770048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsecsnp.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00558080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00524800 _____ (Microsoft Corporation) C:\Windows\system32\AppxApplicabilityEngine.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00517120 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00510464 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00310272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Usb.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00272384 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerServer.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00238592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\miutils.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00229376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netdiagfx.dll
2014-11-25 16:52 - 2014-10-29 02:20 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\biwinrt.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 02714624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 00754176 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\WinSync.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2014-11-25 16:52 - 2014-10-29 02:19 - 00621568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsFilt.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\wmitomi.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\srumsvc.dll
2014-11-25 16:52 - 2014-10-29 02:19 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\msched.dll
2014-11-25 16:52 - 2014-10-29 02:18 - 01984000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certmgr.dll
2014-11-25 16:52 - 2014-10-29 02:18 - 00743936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFWMAAEC.DLL
2014-11-25 16:52 - 2014-10-29 02:18 - 00329216 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2014-11-25 16:52 - 2014-10-29 02:18 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-11-25 16:52 - 2014-10-29 02:18 - 00281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2014-11-25 16:52 - 2014-10-29 02:18 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\deviceaccess.dll
2014-11-25 16:52 - 2014-10-29 02:18 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\fundisc.dll
2014-11-25 16:52 - 2014-10-29 02:18 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\IDStore.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 01296896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\connect.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 00981504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdt.exe
2014-11-25 16:52 - 2014-10-29 02:17 - 00945664 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 00471552 _____ (Microsoft Corporation) C:\Windows\system32\energy.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsmsnap.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\wevtutil.exe
2014-11-25 16:52 - 2014-10-29 02:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.dll
2014-11-25 16:52 - 2014-10-29 02:17 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 01242112 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 00795136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdlg.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-11-25 16:52 - 2014-10-29 02:16 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\authfwcfg.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanui.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 00348672 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 00283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll
2014-11-25 16:52 - 2014-10-29 02:16 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msoeacct.dll
2014-11-25 16:52 - 2014-10-29 02:15 - 00809472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2014-11-25 16:52 - 2014-10-29 02:15 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-11-25 16:52 - 2014-10-29 02:15 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Proximity.dll
2014-11-25 16:52 - 2014-10-29 02:15 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2014-11-25 16:52 - 2014-10-29 02:14 - 00854528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2014-11-25 16:52 - 2014-10-29 02:14 - 00737280 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2014-11-25 16:52 - 2014-10-29 02:14 - 00699392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2014-11-25 16:52 - 2014-10-29 02:14 - 00609280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2014-11-25 16:52 - 2014-10-29 02:14 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-11-25 16:52 - 2014-10-29 02:14 - 00493568 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-11-25 16:52 - 2014-10-29 02:14 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-11-25 16:52 - 2014-10-29 02:14 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll
2014-11-25 16:52 - 2014-10-29 02:14 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2014-11-25 16:52 - 2014-10-29 02:13 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll
2014-11-25 16:52 - 2014-10-29 02:13 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2014-11-25 16:52 - 2014-10-29 02:13 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2014-11-25 16:52 - 2014-10-29 02:13 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 01969664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00702976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\msTextPrediction.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00516608 _____ (Microsoft Corporation) C:\Windows\system32\es.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00407040 _____ (Microsoft Corporation) C:\Windows\system32\das.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00393728 _____ (Microsoft Corporation) C:\Windows\system32\ninput.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnrollUI.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\hotspotauth.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
2014-11-25 16:52 - 2014-10-29 02:12 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
2014-11-25 16:52 - 2014-10-29 02:11 - 02597376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll
2014-11-25 16:52 - 2014-10-29 02:11 - 01323008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
2014-11-25 16:52 - 2014-10-29 02:11 - 00672768 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2014-11-25 16:52 - 2014-10-29 02:11 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2014-11-25 16:52 - 2014-10-29 02:11 - 00373248 _____ (Microsoft Corporation) C:\Windows\system32\msdtckrm.dll
2014-11-25 16:52 - 2014-10-29 02:10 - 01096704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-11-25 16:52 - 2014-10-29 02:10 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2014-11-25 16:52 - 2014-10-29 02:10 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2014-11-25 16:52 - 2014-10-29 02:10 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2014-11-25 16:52 - 2014-10-29 02:10 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApiPublic.dll
2014-11-25 16:52 - 2014-10-29 02:10 - 00302080 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2014-11-25 16:52 - 2014-10-29 02:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_8.dll
2014-11-25 16:52 - 2014-10-29 02:10 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll
2014-11-25 16:52 - 2014-10-29 02:10 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv
2014-11-25 16:52 - 2014-10-29 02:10 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbeio.dll
2014-11-25 16:52 - 2014-10-29 02:09 - 00873984 _____ (Microsoft Corporation) C:\Windows\system32\provcore.dll
2014-11-25 16:52 - 2014-10-29 02:09 - 00809984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-11-25 16:52 - 2014-10-29 02:09 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2014-11-25 16:52 - 2014-10-29 02:09 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\duser.dll
2014-11-25 16:52 - 2014-10-29 02:09 - 00633344 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguagesCpl.dll
2014-11-25 16:52 - 2014-10-29 02:09 - 00521728 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll
2014-11-25 16:52 - 2014-10-29 02:09 - 00508416 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2014-11-25 16:52 - 2014-10-29 02:09 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2014-11-25 16:52 - 2014-10-29 02:09 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2014-11-25 16:52 - 2014-10-29 02:08 - 00881664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2014-11-25 16:52 - 2014-10-29 02:08 - 00412672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WLanConn.dll
2014-11-25 16:52 - 2014-10-29 02:08 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\wecsvc.dll
2014-11-25 16:52 - 2014-10-29 02:07 - 01396736 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2014-11-25 16:52 - 2014-10-29 02:07 - 01197056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll
2014-11-25 16:52 - 2014-10-29 02:07 - 01060352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2014-11-25 16:52 - 2014-10-29 02:07 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasgcw.dll
2014-11-25 16:52 - 2014-10-29 02:07 - 00747008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-11-25 16:52 - 2014-10-29 02:07 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2014-11-25 16:52 - 2014-10-29 02:07 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\ddraw.dll
2014-11-25 16:52 - 2014-10-29 02:07 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2014-11-25 16:52 - 2014-10-29 02:07 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2014-11-25 16:52 - 2014-10-29 02:07 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2014-11-25 16:52 - 2014-10-29 02:06 - 01086976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-11-25 16:52 - 2014-10-29 02:06 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Connectivity.dll
2014-11-25 16:52 - 2014-10-29 02:06 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2014-11-25 16:52 - 2014-10-29 02:06 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll
2014-11-25 16:52 - 2014-10-29 02:06 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptprov.dll
2014-11-25 16:52 - 2014-10-29 02:06 - 00298496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll
2014-11-25 16:52 - 2014-10-29 02:06 - 00286208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-11-25 16:52 - 2014-10-29 02:06 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00606720 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00534016 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00380416 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
2014-11-25 16:52 - 2014-10-29 02:05 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\TtlsCfg.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00292864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00228864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00193024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authz.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ulib.dll
2014-11-25 16:52 - 2014-10-29 02:05 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.SmartCards.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00640000 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00364032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPTpm12.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BCP47Langs.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00279552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netjoin.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentutl.exe
2014-11-25 16:52 - 2014-10-29 02:04 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2014-11-25 16:52 - 2014-10-29 02:04 - 00201216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutil.dll
2014-11-25 16:52 - 2014-10-29 02:03 - 00781824 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
2014-11-25 16:52 - 2014-10-29 02:03 - 00740352 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2014-11-25 16:52 - 2014-10-29 02:03 - 00608256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll
2014-11-25 16:52 - 2014-10-29 02:03 - 00474112 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2014-11-25 16:52 - 2014-10-29 02:03 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2014-11-25 16:52 - 2014-10-29 02:03 - 00322048 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2014-11-25 16:52 - 2014-10-29 02:03 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Vpn.dll
2014-11-25 16:52 - 2014-10-29 02:03 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2014-11-25 16:52 - 2014-10-29 02:03 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll
2014-11-25 16:52 - 2014-10-29 02:02 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2014-11-25 16:52 - 2014-10-29 02:02 - 00695296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2014-11-25 16:52 - 2014-10-29 02:02 - 00267776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
2014-11-25 16:52 - 2014-10-29 02:02 - 00217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Geolocation.dll
2014-11-25 16:52 - 2014-10-29 02:02 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mibincodec.dll
2014-11-25 16:52 - 2014-10-29 02:01 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2014-11-25 16:52 - 2014-10-29 02:01 - 00706048 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll
2014-11-25 16:52 - 2014-10-29 02:01 - 00573952 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-11-25 16:52 - 2014-10-29 02:01 - 00397824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdelta.dll
2014-11-25 16:52 - 2014-10-29 02:01 - 00395776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2014-11-25 16:52 - 2014-10-29 02:01 - 00361472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
2014-11-25 16:52 - 2014-10-29 02:01 - 00278528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsku.dll
2014-11-25 16:52 - 2014-10-29 02:01 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2014-11-25 16:52 - 2014-10-29 02:01 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll
2014-11-25 16:52 - 2014-10-29 02:01 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\DAFWSD.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 01207296 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2014-11-25 16:52 - 2014-10-29 02:00 - 00591360 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 00401408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wbemcomn.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 00252416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 00251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\PlayToManager.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdscore.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 00200192 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\DscCoreConfProv.dll
2014-11-25 16:52 - 2014-10-29 02:00 - 00166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CryptoWinRT.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 01207296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 01010688 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2014-11-25 16:52 - 2014-10-29 01:59 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00578048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSync.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxApplicabilityEngine.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00413696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00316928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00302080 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00286720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00230912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprofm.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00188928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miutils.dll
2014-11-25 16:52 - 2014-10-29 01:59 - 00150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumsvc.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00926208 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00746496 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00743424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00543232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00306688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\TetheringMgr.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00246272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceaccess.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsDatabase.dll
2014-11-25 16:52 - 2014-10-29 01:58 - 00115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IDStore.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 01065472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00562688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-11-25 16:52 - 2014-10-29 01:57 - 00543744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-11-25 16:52 - 2014-10-29 01:57 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2PGraph.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00364032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authfwcfg.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00346624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Proximity.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\wlidcredprov.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qwave.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtutil.exe
2014-11-25 16:52 - 2014-10-29 01:57 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
2014-11-25 16:52 - 2014-10-29 01:57 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2014-11-25 16:52 - 2014-10-29 01:56 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2014-11-25 16:52 - 2014-10-29 01:56 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2014-11-25 16:52 - 2014-10-29 01:56 - 00631808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2014-11-25 16:52 - 2014-10-29 01:56 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll
2014-11-25 16:52 - 2014-10-29 01:56 - 00512512 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2014-11-25 16:52 - 2014-10-29 01:56 - 00483328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-11-25 16:52 - 2014-10-29 01:56 - 00482304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-11-25 16:52 - 2014-10-29 01:56 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll
2014-11-25 16:52 - 2014-10-29 01:56 - 00278528 _____ (Microsoft Corporation) C:\Windows\system32\activeds.dll
2014-11-25 16:52 - 2014-10-29 01:56 - 00272384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2014-11-25 16:52 - 2014-10-29 01:56 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\DscCore.dll
2014-11-25 16:52 - 2014-10-29 01:56 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00887808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dim700.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00795648 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00719360 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\es.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00304128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ninput.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\PackageStateRoaming.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll
2014-11-25 16:52 - 2014-10-29 01:55 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2014-11-25 16:52 - 2014-10-29 01:54 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2014-11-25 16:52 - 2014-10-29 01:54 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-11-25 16:52 - 2014-10-29 01:54 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2014-11-25 16:52 - 2014-10-29 01:54 - 00560640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2014-11-25 16:52 - 2014-10-29 01:54 - 00348672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll
2014-11-25 16:52 - 2014-10-29 01:54 - 00347648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll
2014-11-25 16:52 - 2014-10-29 01:54 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\NAPMONTR.DLL
2014-11-25 16:52 - 2014-10-29 01:54 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2014-11-25 16:52 - 2014-10-29 01:54 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceTypes.dll
2014-11-25 16:52 - 2014-10-29 01:54 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.HardwareId.dll
2014-11-25 16:52 - 2014-10-29 01:54 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll
2014-11-25 16:52 - 2014-10-29 01:54 - 00178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSSync.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 01156608 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 01063424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\msctfuimanager.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00612352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provcore.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00550400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00464896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00425472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschap.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00347648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_8.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\msdtcuiu.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApiPublic.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2014-11-25 16:52 - 2014-10-29 01:53 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdmaud.drv
2014-11-25 16:52 - 2014-10-29 01:53 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 01054208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\WlanMM.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2014-11-25 16:52 - 2014-10-29 01:52 - 00870912 _____ (Microsoft Corporation) C:\Windows\system32\msdtcprx.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00827392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00801792 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00555008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00544256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddraw.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00336384 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2014-11-25 16:52 - 2014-10-29 01:52 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.SpeechSynthesis.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00569856 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00506880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\duser.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00457728 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00375296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\netman.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TtlsCfg.dll
2014-11-25 16:52 - 2014-10-29 01:51 - 00169472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll
2014-11-25 16:52 - 2014-10-29 01:50 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll
2014-11-25 16:52 - 2014-10-29 01:50 - 00863744 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-11-25 16:52 - 2014-10-29 01:50 - 00624128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.SmartCards.dll
2014-11-25 16:52 - 2014-10-29 01:50 - 00589824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2014-11-25 16:52 - 2014-10-29 01:50 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2014-11-25 16:52 - 2014-10-29 01:50 - 00430592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Connectivity.dll
2014-11-25 16:52 - 2014-10-29 01:50 - 00399360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll
2014-11-25 16:52 - 2014-10-29 01:50 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll
2014-11-25 16:52 - 2014-10-29 01:49 - 00831488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certca.dll
2014-11-25 16:52 - 2014-10-29 01:49 - 00576512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsvcs.dll
2014-11-25 16:52 - 2014-10-29 01:49 - 00559104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
2014-11-25 16:52 - 2014-10-29 01:49 - 00304128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2014-11-25 16:52 - 2014-10-29 01:49 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\umrdp.dll
2014-11-25 16:52 - 2014-10-29 01:49 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2014-11-25 16:52 - 2014-10-29 01:48 - 01142272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2014-11-25 16:52 - 2014-10-29 01:48 - 00949760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2014-11-25 16:52 - 2014-10-29 01:48 - 00562688 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2014-11-25 16:52 - 2014-10-29 01:48 - 00543232 _____ (Microsoft Corporation) C:\Windows\system32\hnetcfg.dll
2014-11-25 16:52 - 2014-10-29 01:48 - 00454144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-11-25 16:52 - 2014-10-29 01:48 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\InputSwitch.dll
2014-11-25 16:52 - 2014-10-29 01:47 - 00887296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL
2014-11-25 16:52 - 2014-10-29 01:47 - 00783872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
2014-11-25 16:52 - 2014-10-29 01:47 - 00628224 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2014-11-25 16:52 - 2014-10-29 01:47 - 00527872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-11-25 16:52 - 2014-10-29 01:47 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\catsrv.dll
2014-11-25 16:52 - 2014-10-29 01:47 - 00470016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2014-11-25 16:52 - 2014-10-29 01:47 - 00451584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll
2014-11-25 16:52 - 2014-10-29 01:47 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2014-11-25 16:52 - 2014-10-29 01:47 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\SettingMonitor.dll
2014-11-25 16:52 - 2014-10-29 01:47 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToManager.dll
2014-11-25 16:52 - 2014-10-29 01:46 - 01305088 _____ (Microsoft Corporation) C:\Windows\system32\wcnwiz.dll
2014-11-25 16:52 - 2014-10-29 01:46 - 01265152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll
2014-11-25 16:52 - 2014-10-29 01:46 - 00455680 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2014-11-25 16:52 - 2014-10-29 01:46 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.dll
2014-11-25 16:52 - 2014-10-29 01:46 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-11-25 16:52 - 2014-10-29 01:45 - 00918016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll
2014-11-25 16:52 - 2014-10-29 01:45 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2014-11-25 16:52 - 2014-10-29 01:45 - 00573952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceApi.dll
2014-11-25 16:52 - 2014-10-29 01:45 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2014-11-25 16:52 - 2014-10-29 01:45 - 00397824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2014-11-25 16:52 - 2014-10-29 01:45 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\activeds.dll
2014-11-25 16:52 - 2014-10-29 01:45 - 00196096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcredprov.dll
2014-11-25 16:52 - 2014-10-29 01:45 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll
2014-11-25 16:52 - 2014-10-29 01:44 - 00732672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanpref.dll
2014-11-25 16:52 - 2014-10-29 01:44 - 00677376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll
2014-11-25 16:52 - 2014-10-29 01:44 - 00561152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2014-11-25 16:52 - 2014-10-29 01:44 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll
2014-11-25 16:52 - 2014-10-29 01:44 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2014-11-25 16:52 - 2014-10-29 01:44 - 00274432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll
2014-11-25 16:52 - 2014-10-29 01:44 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll
2014-11-25 16:52 - 2014-10-29 01:44 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PackageStateRoaming.dll
2014-11-25 16:52 - 2014-10-29 01:44 - 00128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00957952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WlanMM.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00724480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfuimanager.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00720896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcprx.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00624640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00461312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00255488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPMONTR.DLL
2014-11-25 16:52 - 2014-10-29 01:43 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdtcuiu.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00181248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.HardwareId.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceTypes.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll
2014-11-25 16:52 - 2014-10-29 01:43 - 00148480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 01207808 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 00865280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 00841728 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 00654848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 00608256 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 00539648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 00366080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provsvc.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 00331776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.SpeechSynthesis.dll
2014-11-25 16:52 - 2014-10-29 01:42 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\efswrt.dll
2014-11-25 16:52 - 2014-10-29 01:41 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2014-11-25 16:52 - 2014-10-29 01:41 - 00359936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe
2014-11-25 16:52 - 2014-10-29 01:41 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2014-11-25 16:52 - 2014-10-29 01:41 - 00269312 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll
2014-11-25 16:52 - 2014-10-29 01:40 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2014-11-25 16:52 - 2014-10-29 01:40 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll
2014-11-25 16:52 - 2014-10-29 01:39 - 00565248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
2014-11-25 16:52 - 2014-10-29 01:39 - 00454144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hnetcfg.dll
2014-11-25 16:52 - 2014-10-29 01:39 - 00401408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrv.dll
2014-11-25 16:52 - 2014-10-29 01:39 - 00205312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputSwitch.dll
2014-11-25 16:52 - 2014-10-29 01:39 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingMonitor.dll
2014-11-25 16:52 - 2014-10-29 01:38 - 01232896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcnwiz.dll
2014-11-25 16:52 - 2014-10-29 01:38 - 00565760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2014-11-25 16:52 - 2014-10-29 01:37 - 00724480 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2014-11-25 16:52 - 2014-10-29 01:37 - 00414208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvut.dll
2014-11-25 16:52 - 2014-10-29 01:37 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\CloudStorageWizard.exe
2014-11-25 16:52 - 2014-10-29 01:36 - 00955392 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2014-11-25 16:52 - 2014-10-29 01:35 - 01085952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2014-11-25 16:52 - 2014-10-29 01:35 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2014-11-25 16:52 - 2014-10-29 01:35 - 00772096 _____ (Microsoft Corporation) C:\Windows\system32\MrmIndexer.dll
2014-11-25 16:52 - 2014-10-29 01:35 - 00667648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2014-11-25 16:52 - 2014-10-29 01:35 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2014-11-25 16:52 - 2014-10-29 01:35 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2014-11-25 16:52 - 2014-10-29 01:35 - 00289792 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2014-11-25 16:52 - 2014-10-29 01:35 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll
2014-11-25 16:52 - 2014-10-29 01:32 - 00515584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2014-11-25 16:52 - 2014-10-29 01:31 - 00626176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2014-11-25 16:52 - 2014-10-29 01:30 - 00602624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmIndexer.dll
2014-11-25 16:52 - 2014-10-29 01:30 - 00215552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2014-11-25 16:52 - 2014-10-15 09:32 - 00551232 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2014-11-25 16:52 - 2014-10-15 09:32 - 00337728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2014-11-25 16:52 - 2014-10-13 03:43 - 00238912 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2014-11-25 16:52 - 2014-10-13 03:41 - 01114432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2014-11-25 16:52 - 2014-10-08 10:24 - 00467776 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2014-11-25 16:52 - 2014-10-08 08:33 - 00678400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2014-11-25 16:52 - 2014-10-08 08:32 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-11-25 16:52 - 2014-10-07 07:44 - 00533824 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2014-11-25 16:52 - 2014-09-27 05:59 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-11-25 16:52 - 2014-08-26 04:30 - 00354112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2014-11-25 16:52 - 2014-07-04 22:29 - 00478528 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2014-11-25 16:51 - 2014-10-29 05:13 - 00021824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tbs.sys
2014-11-25 16:51 - 2014-10-29 05:11 - 00038792 _____ (Microsoft Corporation) C:\Windows\system32\svchost.exe
2014-11-25 16:51 - 2014-10-29 05:10 - 00177688 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2014-11-25 16:51 - 2014-10-29 05:10 - 00089344 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2014-11-25 16:51 - 2014-10-29 05:10 - 00084184 _____ (Microsoft Corporation) C:\Windows\system32\taskhostex.exe
2014-11-25 16:51 - 2014-10-29 05:09 - 00277368 _____ (Microsoft Corporation) C:\Windows\system32\powrprof.dll
2014-11-25 16:51 - 2014-10-29 05:09 - 00191032 _____ (Microsoft Corporation) C:\Windows\system32\systemreset.exe
2014-11-25 16:51 - 2014-10-29 05:09 - 00108864 _____ (Microsoft Corporation) C:\Windows\system32\bootsect.exe
2014-11-25 16:51 - 2014-10-29 05:09 - 00044912 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2014-11-25 16:51 - 2014-10-29 05:09 - 00033600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys
2014-11-25 16:51 - 2014-10-29 05:09 - 00033088 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2014-11-25 16:51 - 2014-10-29 05:09 - 00033064 _____ (Microsoft Corporation) C:\Windows\system32\kernel.appcore.dll
2014-11-25 16:51 - 2014-10-29 05:09 - 00028480 _____ (Microsoft Corporation) C:\Windows\system32\SysResetErr.exe
2014-11-25 16:51 - 2014-10-29 05:04 - 00224600 _____ (Microsoft Corporation) C:\Windows\system32\ntasn1.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00197832 _____ (Microsoft Corporation) C:\Windows\system32\dssenh.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00153336 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00149240 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00135304 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00131648 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.exe
2014-11-25 16:51 - 2014-10-29 05:04 - 00124992 _____ (Microsoft Corporation) C:\Windows\system32\cryptxml.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00122912 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00097608 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00093000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00086744 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00080056 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00073872 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wlrmdr.exe
2014-11-25 16:51 - 2014-10-29 05:04 - 00044368 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll
2014-11-25 16:51 - 2014-10-29 05:04 - 00025352 _____ (Microsoft Corporation) C:\Windows\system32\dsrole.dll
2014-11-25 16:51 - 2014-10-29 05:03 - 00196928 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2014-11-25 16:51 - 2014-10-29 05:03 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-11-25 16:51 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2014-11-25 16:51 - 2014-10-29 05:00 - 00412184 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2014-11-25 16:51 - 2014-10-29 05:00 - 00210744 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll
2014-11-25 16:51 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2014-11-25 16:51 - 2014-10-29 05:00 - 00125504 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2014-11-25 16:51 - 2014-10-29 05:00 - 00030472 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogHost.exe
2014-11-25 16:51 - 2014-10-29 04:59 - 00136512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2014-11-25 16:51 - 2014-10-29 04:59 - 00105944 _____ (Microsoft Corporation) C:\Windows\system32\mpr.dll
2014-11-25 16:51 - 2014-10-29 04:59 - 00063528 _____ (Microsoft Corporation) C:\Windows\system32\wwapi.dll
2014-11-25 16:51 - 2014-10-29 04:59 - 00025920 ____C (Microsoft Corporation) C:\Windows\system32\streamci.dll
2014-11-25 16:51 - 2014-10-29 04:57 - 00299048 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL
2014-11-25 16:51 - 2014-10-29 04:57 - 00250488 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL
2014-11-25 16:51 - 2014-10-29 04:57 - 00248408 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL
2014-11-25 16:51 - 2014-10-29 04:57 - 00246832 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL
2014-11-25 16:51 - 2014-10-29 04:57 - 00203504 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL
2014-11-25 16:51 - 2014-10-29 04:57 - 00116696 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL
2014-11-25 16:51 - 2014-10-29 04:57 - 00111024 _____ (Microsoft Corporation) C:\Windows\system32\RestoreOptIn.exe
2014-11-25 16:51 - 2014-10-29 04:57 - 00098664 _____ (Microsoft Corporation) C:\Windows\system32\OpenWith.exe
2014-11-25 16:51 - 2014-10-29 04:57 - 00089816 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll
2014-11-25 16:51 - 2014-10-29 04:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys
2014-11-25 16:51 - 2014-10-29 04:57 - 00045464 _____ (Microsoft Corporation) C:\Windows\system32\CloudNotifications.exe
2014-11-25 16:51 - 2014-10-29 04:57 - 00038736 _____ (Microsoft Corporation) C:\Windows\system32\CredentialUIBroker.exe
2014-11-25 16:51 - 2014-10-29 04:57 - 00036720 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2014-11-25 16:51 - 2014-10-29 04:57 - 00035664 _____ (Microsoft Corporation) C:\Windows\system32\avrt.dll
2014-11-25 16:51 - 2014-10-29 04:57 - 00031968 _____ (Microsoft Corporation) C:\Windows\system32\PasswordOnWakeSettingFlyout.exe
2014-11-25 16:51 - 2014-10-29 04:57 - 00029960 _____ (Microsoft Corporation) C:\Windows\system32\version.dll
2014-11-25 16:51 - 2014-10-29 04:57 - 00027872 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2014-11-25 16:51 - 2014-10-29 04:56 - 00097048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2014-11-25 16:51 - 2014-10-29 04:56 - 00089368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbkmcl.sys
2014-11-25 16:51 - 2014-10-29 04:56 - 00061208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys
2014-11-25 16:51 - 2014-10-29 04:56 - 00049944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys
2014-11-25 16:51 - 2014-10-29 04:56 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-11-25 16:51 - 2014-10-29 04:55 - 00076432 _____ (Microsoft Corporation) C:\Windows\system32\sessionmsg.exe
2014-11-25 16:51 - 2014-10-29 04:55 - 00067656 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll
2014-11-25 16:51 - 2014-10-29 04:55 - 00064040 _____ (Microsoft Corporation) C:\Windows\system32\wtsapi32.dll
2014-11-25 16:51 - 2014-10-29 04:55 - 00043888 _____ (Microsoft Corporation) C:\Windows\system32\utildll.dll
2014-11-25 16:51 - 2014-10-29 04:55 - 00033576 _____ (Microsoft Corporation) C:\Windows\system32\RuntimeBroker.exe
2014-11-25 16:51 - 2014-10-29 04:54 - 05120000 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll
2014-11-25 16:51 - 2014-10-29 04:54 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWWizFwk.dll
2014-11-25 16:51 - 2014-10-29 04:53 - 00095048 _____ (Microsoft Corporation) C:\Windows\system32\bcd.dll
2014-11-25 16:51 - 2014-10-29 04:53 - 00080528 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-11-25 16:51 - 2014-10-29 04:52 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-11-25 16:51 - 2014-10-29 04:52 - 00126056 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2014-11-25 16:51 - 2014-10-29 04:52 - 00106384 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.dll
2014-11-25 16:51 - 2014-10-29 04:52 - 00101736 _____ (Microsoft Corporation) C:\Windows\system32\mfAACEnc.dll
2014-11-25 16:51 - 2014-10-29 04:52 - 00100672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-11-25 16:51 - 2014-10-29 04:52 - 00090880 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll
2014-11-25 16:51 - 2014-10-29 04:52 - 00043888 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll
2014-11-25 16:51 - 2014-10-29 04:52 - 00041880 _____ (Microsoft Corporation) C:\Windows\system32\msgsm32.acm
2014-11-25 16:51 - 2014-10-29 04:52 - 00035664 _____ (Microsoft Corporation) C:\Windows\system32\imaadp32.acm
2014-11-25 16:51 - 2014-10-29 04:52 - 00034088 _____ (Microsoft Corporation) C:\Windows\system32\msadp32.acm
2014-11-25 16:51 - 2014-10-29 04:52 - 00029408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-11-25 16:51 - 2014-10-29 04:52 - 00025312 _____ (Microsoft Corporation) C:\Windows\system32\msg711.acm
2014-11-25 16:51 - 2014-10-29 04:52 - 00022208 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll
2014-11-25 16:51 - 2014-10-29 04:51 - 00070288 _____ (Microsoft Corporation) C:\Windows\system32\profapi.dll
2014-11-25 16:51 - 2014-10-29 04:51 - 00047024 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-11-25 16:51 - 2014-10-29 04:51 - 00033032 _____ (Microsoft Corporation) C:\Windows\system32\winnsi.dll
2014-11-25 16:51 - 2014-10-29 04:51 - 00031528 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2014-11-25 16:51 - 2014-10-29 04:51 - 00024800 _____ (Microsoft Corporation) C:\Windows\system32\nsi.dll
2014-11-25 16:51 - 2014-10-29 04:18 - 00255136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powrprof.dll
2014-11-25 16:51 - 2014-10-29 04:18 - 00148728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2014-11-25 16:51 - 2014-10-29 04:18 - 00127552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2014-11-25 16:51 - 2014-10-29 04:18 - 00120352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabinet.dll
2014-11-25 16:51 - 2014-10-29 04:18 - 00029920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel.appcore.dll
2014-11-25 16:51 - 2014-10-29 04:17 - 00033088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
2014-11-25 16:51 - 2014-10-29 04:15 - 00168256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00165728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntasn1.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00156992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dssenh.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00115672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00110512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srvcli.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00099104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptxml.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00098152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00096032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00074352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdll.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00073840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.CredentialPicker.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00068168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00064552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkscli.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00051608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msasn1.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00035592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netutils.dll
2014-11-25 16:51 - 2014-10-29 04:15 - 00021696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsrole.dll
2014-11-25 16:51 - 2014-10-29 04:12 - 00371376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2014-11-25 16:51 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2014-11-25 16:51 - 2014-10-29 04:12 - 00102728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2014-11-25 16:51 - 2014-10-29 04:12 - 00087224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpr.dll
2014-11-25 16:51 - 2014-10-29 04:12 - 00051096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wwapi.dll
2014-11-25 16:51 - 2014-10-29 04:11 - 00229248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RESAMPLEDMO.DLL
2014-11-25 16:51 - 2014-10-29 04:11 - 00150776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpps.dll
2014-11-25 16:51 - 2014-10-29 04:11 - 00099104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MP3DMOD.DLL
2014-11-25 16:51 - 2014-10-29 04:11 - 00076912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfvdsp.dll
2014-11-25 16:51 - 2014-10-29 04:11 - 00031496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avrt.dll
2014-11-25 16:51 - 2014-10-29 04:11 - 00028352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CameraSettingsUIHost.exe
2014-11-25 16:51 - 2014-10-29 04:10 - 00094464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RestoreOptIn.exe
2014-11-25 16:51 - 2014-10-29 04:10 - 00091936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpenWith.exe
2014-11-25 16:51 - 2014-10-29 04:10 - 00052664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wtsapi32.dll
2014-11-25 16:51 - 2014-10-29 04:10 - 00052664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcRtRemote.dll
2014-11-25 16:51 - 2014-10-29 04:10 - 00040816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudNotifications.exe
2014-11-25 16:51 - 2014-10-29 04:10 - 00038184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\utildll.dll
2014-11-25 16:51 - 2014-10-29 04:10 - 00034016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialUIBroker.exe
2014-11-25 16:51 - 2014-10-29 04:10 - 00032040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2014-11-25 16:51 - 2014-10-29 04:10 - 00030944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountBroker.exe
2014-11-25 16:51 - 2014-10-29 04:10 - 00029888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PasswordOnWakeSettingFlyout.exe
2014-11-25 16:51 - 2014-10-29 04:10 - 00026304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\version.dll
2014-11-25 16:51 - 2014-10-29 04:10 - 00026304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PickerHost.exe
2014-11-25 16:51 - 2014-10-29 04:09 - 00017216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
2014-11-25 16:51 - 2014-10-29 04:07 - 05120000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWSnapin.dll
2014-11-25 16:51 - 2014-10-29 04:07 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWWizFwk.dll
2014-11-25 16:51 - 2014-10-29 04:07 - 00110512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2014-11-25 16:51 - 2014-10-29 04:07 - 00089816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msacm32.dll
2014-11-25 16:51 - 2014-10-29 04:07 - 00081008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devenum.dll
2014-11-25 16:51 - 2014-10-29 04:07 - 00039720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdmo.dll
2014-11-25 16:51 - 2014-10-29 04:07 - 00036136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msgsm32.acm
2014-11-25 16:51 - 2014-10-29 04:07 - 00029960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imaadp32.acm
2014-11-25 16:51 - 2014-10-29 04:07 - 00028896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msadp32.acm
2014-11-25 16:51 - 2014-10-29 04:07 - 00026816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2014-11-25 16:51 - 2014-10-29 04:07 - 00022720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msg711.acm
2014-11-25 16:51 - 2014-10-29 04:07 - 00018040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CompPkgSup.dll
2014-11-25 16:51 - 2014-10-29 04:06 - 00090368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfAACEnc.dll
2014-11-25 16:51 - 2014-10-29 04:06 - 00080016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcd.dll
2014-11-25 16:51 - 2014-10-29 04:06 - 00074824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-11-25 16:51 - 2014-10-29 04:05 - 00120864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL
2014-11-25 16:51 - 2014-10-29 04:05 - 00052152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profapi.dll
2014-11-25 16:51 - 2014-10-29 04:05 - 00030984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2014-11-25 16:51 - 2014-10-29 04:05 - 00026304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winnsi.dll
2014-11-25 16:51 - 2014-10-29 04:05 - 00020120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nsi.dll
2014-11-25 16:51 - 2014-10-29 03:50 - 02628608 _____ (Microsoft Corporation) C:\Windows\system32\NlsLexicons0009.dll
2014-11-25 16:51 - 2014-10-29 03:49 - 00638976 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2014-11-25 16:51 - 2014-10-29 03:49 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\msvcirt.dll
2014-11-25 16:51 - 2014-10-29 03:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\DeviceUxRes.dll
2014-11-25 16:51 - 2014-10-29 03:49 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2014-11-25 16:51 - 2014-10-29 03:49 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\Firewall.cpl
2014-11-25 16:51 - 2014-10-29 03:49 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\ws2help.dll
2014-11-25 16:51 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-11-25 16:51 - 2014-10-29 03:49 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\rnr20.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00354816 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\SSShim.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\wwancfg.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\lmhsvc.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\ktmw32.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\bi.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys
2014-11-25 16:51 - 2014-10-29 03:48 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\workerdd.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\WSHTCPIP.DLL
2014-11-25 16:51 - 2014-10-29 03:48 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wship6.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\txfw32.dll
2014-11-25 16:51 - 2014-10-29 03:48 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys
2014-11-25 16:51 - 2014-10-29 03:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Locator.exe
2014-11-25 16:51 - 2014-10-29 03:48 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2014-11-25 16:51 - 2014-10-29 03:47 - 00098304 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-11-25 16:51 - 2014-10-29 03:47 - 00089088 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-11-25 16:51 - 2014-10-29 03:47 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys
2014-11-25 16:51 - 2014-10-29 03:47 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys
2014-11-25 16:51 - 2014-10-29 03:47 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2014-11-25 16:51 - 2014-10-29 03:47 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00272384 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netvsc63.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00081920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2014-11-25 16:51 - 2014-10-29 03:46 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00057856 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00053248 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiscap.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys
2014-11-25 16:51 - 2014-10-29 03:46 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\sxssrv.dll
2014-11-25 16:51 - 2014-10-29 03:46 - 00029696 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\miguiresource.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Ndu.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\SortWindows6Compat.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mslldp.sys
2014-11-25 16:51 - 2014-10-29 03:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe
2014-11-25 16:51 - 2014-10-29 03:45 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\sfc_os.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\SortWindows61.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\msisip.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mciwave.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\mciseq.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wiatrace.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\netbios.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\SensApi.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\regidle.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\oleacchooks.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\AutoWorkplaceN.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\osuninst.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2014-11-25 16:51 - 2014-10-29 03:45 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2014-11-25 16:51 - 2014-10-29 03:45 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\normaliz.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 02022912 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\glu32.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\msdadiag.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\spfileq.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\SPInf.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mciavi32.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\MSchedExe.exe
2014-11-25 16:51 - 2014-10-29 03:44 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\spoolss.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\fthsvc.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\efslsaext.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\feclient.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\dmocx.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\bderepair.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\SortServer2003Compat.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\regini.exe
2014-11-25 16:51 - 2014-10-29 03:44 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\htui.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\cnvfat.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\efsutil.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\idndl.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\Nlsdl.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\hidserv.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\winrnr.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\blb_ps.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\cmpbk32.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\dmutil.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\davhlpr.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\irmon.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\mgmtapi.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\WofUtil.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\clb.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wsock32.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\msidcrl40.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\d3d8thk.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\sas.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\WlS0WndH.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\msiwer.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\mscat32.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\nddeapi.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\XInput9_1_0.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\softpub.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\OskSupport.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\getuname.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\mtxex.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\mssip32.dll
2014-11-25 16:51 - 2014-10-29 03:44 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\telephon.cpl
2014-11-25 16:51 - 2014-10-29 03:43 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\radardt.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\fmapi.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\printui.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\offreg.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2014-11-25 16:51 - 2014-10-29 03:43 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\mode.com
2014-11-25 16:51 - 2014-10-29 03:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\ureg.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\osbaseln.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\comp.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\fc.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sort.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\dbnmpntw.dll

krautsand 01.12.2014 16:32

(3)
2014-11-25 16:51 - 2014-10-29 03:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\replace.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\msiltcfg.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\tree.com
2014-11-25 16:51 - 2014-10-29 03:43 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\diskperf.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\rasctrs.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\doskey.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00017408 _____ (Microsoft Corporation) C:\Windows\hh.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\find.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\cmdkey.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\print.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\label.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\subst.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\diskcomp.com
2014-11-25 16:51 - 2014-10-29 03:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\nlmsprep.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\MUILanguageCleanup.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\LangCleanupSysprepAction.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\spwinsat.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\pnpts.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\chcp.com
2014-11-25 16:51 - 2014-10-29 03:43 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\recover.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\diskcopy.com
2014-11-25 16:51 - 2014-10-29 03:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\tapiperf.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\dvdplay.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\TimeDateMUICallback.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iscsied.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\help.exe
2014-11-25 16:51 - 2014-10-29 03:43 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\spmpm.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\acledit.dll
2014-11-25 16:51 - 2014-10-29 03:43 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00349184 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmiv2.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\dbnetlib.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\colorcpl.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\makecab.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00082432 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\system32\l3codeca.acm
2014-11-25 16:51 - 2014-10-29 03:42 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\NapiNSP.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\drttransport.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\mcicda.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\odbcbcp.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\cmmon32.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\hwrcomp.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\efssvc.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\klist.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\DDOIProxy.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\syskey.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\cliconfg.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\drprov.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wephostsvc.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\WINSRPC.DLL
2014-11-25 16:51 - 2014-10-29 03:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\pcacli.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\midimap.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\umdmxfrm.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\convert.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\chkntfs.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\snmptrap.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\TapiUnattend.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\ifsutilx.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\IconCodecService.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wshnetbs.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\usbperf.dll
2014-11-25 16:51 - 2014-10-29 03:42 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\dcomcnfg.exe
2014-11-25 16:51 - 2014-10-29 03:42 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\RpcNs4.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\drt.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2014-11-25 16:51 - 2014-10-29 03:41 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\adsldpc.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\dispdiag.exe
2014-11-25 16:51 - 2014-10-29 03:41 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\cliconfg.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\ssdpapi.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\expand.exe
2014-11-25 16:51 - 2014-10-29 03:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\dmintf.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\dxpps.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\hidphone.tsp
2014-11-25 16:51 - 2014-10-29 03:41 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\npmproxy.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dispex.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2014-11-25 16:51 - 2014-10-29 03:41 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\serwvdrv.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\xmlprovi.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\mpnotify.exe
2014-11-25 16:51 - 2014-10-29 03:41 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\gpupdate.exe
2014-11-25 16:51 - 2014-10-29 03:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\localui.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2014-11-25 16:51 - 2014-10-29 03:41 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\tcmsetup.exe
2014-11-25 16:51 - 2014-10-29 03:41 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\RdpSaPs.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\SyncHostps.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\mmcico.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\panmap.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wmcodecdspps.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\scrnsave.scr
2014-11-25 16:51 - 2014-10-29 03:41 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\spnet.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00010752 ____C (Microsoft Corporation) C:\Windows\system32\CIRCoInst.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\shfolder.dll
2014-11-25 16:51 - 2014-10-29 03:41 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\lpksetupproxyserv.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.ps.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\sccls.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe
2014-11-25 16:51 - 2014-10-29 03:40 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\SyncInfrastructureps.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx5.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\linkinfo.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.proxystub.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\irclass.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\TSChannel.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx7.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wscproxystub.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx6.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx3.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx4.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\VmApplicationHealthMonitorProxy.dll
2014-11-25 16:51 - 2014-10-29 03:40 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-11-25 16:51 - 2014-10-29 03:39 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe
2014-11-25 16:51 - 2014-10-29 03:39 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\wevtfwd.dll
2014-11-25 16:51 - 2014-10-29 03:39 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2014-11-25 16:51 - 2014-10-29 03:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\ksetup.exe
2014-11-25 16:51 - 2014-10-29 03:39 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\icmui.dll
2014-11-25 16:51 - 2014-10-29 03:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\easconsent.dll
2014-11-25 16:51 - 2014-10-29 03:38 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2014-11-25 16:51 - 2014-10-29 03:38 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll
2014-11-25 16:51 - 2014-10-29 03:38 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\pid.dll
2014-11-25 16:51 - 2014-10-29 03:38 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\capisp.dll
2014-11-25 16:51 - 2014-10-29 03:38 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\nbtstat.exe
2014-11-25 16:51 - 2014-10-29 03:38 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pstorec.dll
2014-11-25 16:51 - 2014-10-29 03:38 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\msctfime.ime
2014-11-25 16:51 - 2014-10-29 03:37 - 15789568 _____ (Microsoft Corporation) C:\Windows\system32\DDORes.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\dhcpsapi.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\dinput.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\avicap32.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\drtprov.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\MsiCofire.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\sxstrace.exe
2014-11-25 16:51 - 2014-10-29 03:37 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\RpcPing.exe
2014-11-25 16:51 - 2014-10-29 03:37 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\LldpNotify.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.drv
2014-11-25 16:51 - 2014-10-29 03:37 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\VscMgrPS.dll
2014-11-25 16:51 - 2014-10-29 03:37 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\secinit.exe
2014-11-25 16:51 - 2014-10-29 03:37 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\ctfmon.exe
2014-11-25 16:51 - 2014-10-29 03:36 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2014-11-25 16:51 - 2014-10-29 03:36 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\msctfp.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\chartv.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\mmcshext.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\PlaySndSrv.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\iscsidsc.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\Magnification.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\qmgrprxy.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\extrac32.exe
2014-11-25 16:51 - 2014-10-29 03:36 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\rpcnsh.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\bridgeunattend.exe
2014-11-25 16:51 - 2014-10-29 03:36 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\icsunattend.exe
2014-11-25 16:51 - 2014-10-29 03:36 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ktmutil.exe
2014-11-25 16:51 - 2014-10-29 03:36 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\bitsprx2.dll
2014-11-25 16:51 - 2014-10-29 03:36 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\verclsid.exe
2014-11-25 16:51 - 2014-10-29 03:36 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\acproxy.dll
2014-11-25 16:51 - 2014-10-29 03:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2014-11-25 16:51 - 2014-10-29 03:35 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2014-11-25 16:51 - 2014-10-29 03:35 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll
2014-11-25 16:51 - 2014-10-29 03:35 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2014-11-25 16:51 - 2014-10-29 03:35 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\dot3dlg.dll
2014-11-25 16:51 - 2014-10-29 03:35 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
2014-11-25 16:51 - 2014-10-29 03:35 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\PlayToStatusProvider.dll
2014-11-25 16:51 - 2014-10-29 03:35 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\tcpmib.dll
2014-11-25 16:51 - 2014-10-29 03:35 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\cofiredm.dll
2014-11-25 16:51 - 2014-10-29 03:35 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\wscisvif.dll
2014-11-25 16:51 - 2014-10-29 03:35 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\PnPutil.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\vdsdyn.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00189440 _____ (Microsoft Corporation) C:\Windows\system32\rgb9rast.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\fms.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\iscsicpl.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\rasauto.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\eventvwr.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\iasdatastore.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\netprovisionsp.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\hdwwiz.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\winver.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\cmutil.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\bitsigd.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\dmloader.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\rasphone.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UI0Detect.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\where.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\rdrleakdiag.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dialer.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\ias.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\timeout.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\clip.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\at.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\DeviceEject.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\cofire.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\uniplat.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\StorSvc.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\regsvr32.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\compact.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\kernelceip.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\rasdial.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\fsavailux.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcmonitor.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TapiSysprep.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\cmdext.dll
2014-11-25 16:51 - 2014-10-29 03:34 - 00011264 _____ (Microsoft Corporation) C:\Windows\write.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\write.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\regedt32.exe
2014-11-25 16:51 - 2014-10-29 03:34 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\systray.exe
2014-11-25 16:51 - 2014-10-29 03:33 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\dsdmo.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\usbceip.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\msvfw32.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\oledlg.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\dmsynth.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\atl.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL
2014-11-25 16:51 - 2014-10-29 03:33 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\ndadmin.exe
2014-11-25 16:51 - 2014-10-29 03:33 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\fhevents.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\mssign32.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\NetVscCoinstall.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\VmdCoinstall.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe
2014-11-25 16:51 - 2014-10-29 03:33 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\msports.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\cttunesvr.exe
2014-11-25 16:51 - 2014-10-29 03:33 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\Apphlpdm.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\bthpanapi.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\sxsstore.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\MemoryDiagnostic.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\dswave.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe
2014-11-25 16:51 - 2014-10-29 03:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\winusb.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\wshcon.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdiagnhost.exe
2014-11-25 16:51 - 2014-10-29 03:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\runas.exe
2014-11-25 16:51 - 2014-10-29 03:33 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\rasautou.exe
2014-11-25 16:51 - 2014-10-29 03:33 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\hnetmon.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pstask.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\svsvc.dll
2014-11-25 16:51 - 2014-10-29 03:33 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\LAPRXY.DLL
2014-11-25 16:51 - 2014-10-29 03:33 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\InfDefaultInstall.exe
2014-11-25 16:51 - 2014-10-29 03:32 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\SCardSvr.dll
2014-11-25 16:51 - 2014-10-29 03:32 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\sqlcecompact40.dll
2014-11-25 16:51 - 2014-10-29 03:32 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\avifil32.dll
2014-11-25 16:51 - 2014-10-29 03:32 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll
2014-11-25 16:51 - 2014-10-29 03:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax
2014-11-25 16:51 - 2014-10-29 03:32 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\sdiagschd.dll
2014-11-25 16:51 - 2014-10-29 03:32 - 00041832 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe
2014-11-25 16:51 - 2014-10-29 03:32 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDisplayStatusManager.dll
2014-11-25 16:51 - 2014-10-29 03:32 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-11-25 16:51 - 2014-10-29 03:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\CHxReadingStringIME.dll
2014-11-25 16:51 - 2014-10-29 03:31 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2014-11-25 16:51 - 2014-10-29 03:31 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\dmview.ocx
2014-11-25 16:51 - 2014-10-29 03:31 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax
2014-11-25 16:51 - 2014-10-29 03:31 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll
2014-11-25 16:51 - 2014-10-29 03:31 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\fhsrchph.dll
2014-11-25 16:51 - 2014-10-29 03:31 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\gacinstall.dll
2014-11-25 16:51 - 2014-10-29 03:31 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\fhcleanup.dll
2014-11-25 16:51 - 2014-10-29 03:31 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\fsutilext.dll
2014-11-25 16:51 - 2014-10-29 03:31 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\MsCtfMonitor.dll
2014-11-25 16:51 - 2014-10-29 03:31 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingProxy.dll
2014-11-25 16:51 - 2014-10-29 03:31 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\wlaninst.dll
2014-11-25 16:51 - 2014-10-29 03:31 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe
2014-11-25 16:51 - 2014-10-29 03:30 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\msaatext.dll
2014-11-25 16:51 - 2014-10-29 03:30 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Syncreg.dll
2014-11-25 16:51 - 2014-10-29 03:30 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\sigverif.exe
2014-11-25 16:51 - 2014-10-29 03:30 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\WwanRadioManager.dll
2014-11-25 16:51 - 2014-10-29 03:30 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2014-11-25 16:51 - 2014-10-29 03:30 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\cmdl32.exe
2014-11-25 16:51 - 2014-10-29 03:30 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\pnppolicy.dll
2014-11-25 16:51 - 2014-10-29 03:30 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\forfiles.exe
2014-11-25 16:51 - 2014-10-29 03:30 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\RotMgr.dll
2014-11-25 16:51 - 2014-10-29 03:30 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\dfdts.dll
2014-11-25 16:51 - 2014-10-29 03:30 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll
2014-11-25 16:51 - 2014-10-29 03:30 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\sfc.exe
2014-11-25 16:51 - 2014-10-29 03:30 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\eventcreate.exe
2014-11-25 16:51 - 2014-10-29 03:30 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\choice.exe
2014-11-25 16:51 - 2014-10-29 03:30 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\bdeui.dll
2014-11-25 16:51 - 2014-10-29 03:30 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\RmClient.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 01502720 _____ (Microsoft Corporation) C:\Windows\system32\diskcopy.dll
2014-11-25 16:51 - 2014-10-29 03:29 - 00475648 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl
2014-11-25 16:51 - 2014-10-29 03:29 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\mmcbase.dll
2014-11-25 16:51 - 2014-10-29 03:29 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\verifier.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\iassvcs.dll
2014-11-25 16:51 - 2014-10-29 03:29 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\fhsvc.dll
2014-11-25 16:51 - 2014-10-29 03:29 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\fhsrchapi.dll
2014-11-25 16:51 - 2014-10-29 03:29 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\console.dll
2014-11-25 16:51 - 2014-10-29 03:29 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\WWanHC.dll
2014-11-25 16:51 - 2014-10-29 03:29 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\openfiles.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\whoami.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\sdchange.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\ddodiag.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\TSTheme.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\waitfor.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\tapilua.dll
2014-11-25 16:51 - 2014-10-29 03:29 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\setspn.exe
2014-11-25 16:51 - 2014-10-29 03:29 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\fhsvcctl.dll
2014-11-25 16:51 - 2014-10-29 03:29 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\wshelper.dll
2014-11-25 16:51 - 2014-10-29 03:28 - 00177152 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\system32\l3codecp.acm
2014-11-25 16:51 - 2014-10-29 03:28 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\gcdef.dll
2014-11-25 16:51 - 2014-10-29 03:28 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2014-11-25 16:51 - 2014-10-29 03:28 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll
2014-11-25 16:51 - 2014-10-29 03:28 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\bootcfg.exe
2014-11-25 16:51 - 2014-10-29 03:28 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\odbcad32.exe
2014-11-25 16:51 - 2014-10-29 03:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\iaspolcy.dll
2014-11-25 16:51 - 2014-10-29 03:28 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll
2014-11-25 16:51 - 2014-10-29 03:28 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\mycomput.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\discan.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\tpmvscmgr.exe
2014-11-25 16:51 - 2014-10-29 03:27 - 00138752 _____ (Microsoft Corporation) C:\Windows\system32\mfmjpegdec.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00137216 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax
2014-11-25 16:51 - 2014-10-29 03:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2014-11-25 16:51 - 2014-10-29 03:27 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\CompMgmtLauncher.exe
2014-11-25 16:51 - 2014-10-29 03:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\loghours.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TabbtnEx.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\SCardDlg.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\iasads.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mmci.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\vdsvd.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\dssec.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\dtsh.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Dot3Conn.dll
2014-11-25 16:51 - 2014-10-29 03:27 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\serialui.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\iscsiexe.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\NdisImPlatform.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2014-11-25 16:51 - 2014-10-29 03:26 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL
2014-11-25 16:51 - 2014-10-29 03:26 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\nlahc.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\usbui.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2014-11-25 16:51 - 2014-10-29 03:26 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax
2014-11-25 16:51 - 2014-10-29 03:26 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax
2014-11-25 16:51 - 2014-10-29 03:26 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cipher.exe
2014-11-25 16:51 - 2014-10-29 03:26 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe
2014-11-25 16:51 - 2014-10-29 03:26 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wmiprop.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\BthSQM.dll
2014-11-25 16:51 - 2014-10-29 03:26 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\chkwudrv.dll
2014-11-25 16:51 - 2014-10-29 03:25 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\rasplap.dll
2014-11-25 16:51 - 2014-10-29 03:25 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\hwrreg.exe
2014-11-25 16:51 - 2014-10-29 03:25 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\fvenotify.exe
2014-11-25 16:51 - 2014-10-29 03:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2014-11-25 16:51 - 2014-10-29 03:25 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2014-11-25 16:51 - 2014-10-29 03:25 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr
2014-11-25 16:51 - 2014-10-29 03:25 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll
2014-11-25 16:51 - 2014-10-29 03:25 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\iashlpr.dll
2014-11-25 16:51 - 2014-10-29 03:25 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\fontview.exe
2014-11-25 16:51 - 2014-10-29 03:25 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\resmon.exe
2014-11-25 16:51 - 2014-10-29 03:25 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2014-11-25 16:51 - 2014-10-29 03:25 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL
2014-11-25 16:51 - 2014-10-29 03:25 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll
2014-11-25 16:51 - 2014-10-29 03:25 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.dll
2014-11-25 16:51 - 2014-10-29 03:25 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\bidispl.dll
2014-11-25 16:51 - 2014-10-29 03:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\napipsec.dll
2014-11-25 16:51 - 2014-10-29 03:24 - 00788480 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr
2014-11-25 16:51 - 2014-10-29 03:24 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.exe
2014-11-25 16:51 - 2014-10-29 03:24 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr
2014-11-25 16:51 - 2014-10-29 03:24 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll
2014-11-25 16:51 - 2014-10-29 03:24 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2014-11-25 16:51 - 2014-10-29 03:24 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\bdaplgin.ax
2014-11-25 16:51 - 2014-10-29 03:24 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2014-11-25 16:51 - 2014-10-29 03:24 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2014-11-25 16:51 - 2014-10-29 03:24 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\LocationNotifications.exe
2014-11-25 16:51 - 2014-10-29 03:24 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-11-25 16:51 - 2014-10-29 03:24 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\xwizard.exe
2014-11-25 16:51 - 2014-10-29 03:24 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\cmcfg32.dll
2014-11-25 16:51 - 2014-10-29 03:24 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\pwlauncher.exe
2014-11-25 16:51 - 2014-10-29 03:24 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\NcaApi.dll
2014-11-25 16:51 - 2014-10-29 03:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\pcwrun.exe
2014-11-25 16:51 - 2014-10-29 03:23 - 00240128 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\tapi32.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr
2014-11-25 16:51 - 2014-10-29 03:23 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\Tabbtn.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\dot3mm.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerWizardElev.exe
2014-11-25 16:51 - 2014-10-29 03:23 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\scripto.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\dispci.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\AtBroker.exe
2014-11-25 16:51 - 2014-10-29 03:23 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\montr_ci.dll
2014-11-25 16:51 - 2014-10-29 03:23 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\wowreg32.exe
2014-11-25 16:51 - 2014-10-29 03:22 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2014-11-25 16:51 - 2014-10-29 03:22 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2014-11-25 16:51 - 2014-10-29 03:22 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\advpack.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\wmdmps.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\igdDiag.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\newdev.exe
2014-11-25 16:51 - 2014-10-29 03:22 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\radarrs.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\Storprop.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssocPrx.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\ndproxystub.dll
2014-11-25 16:51 - 2014-10-29 03:22 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\dxgwdi.dll
2014-11-25 16:51 - 2014-10-29 03:21 - 01086464 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll
2014-11-25 16:51 - 2014-10-29 03:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax
2014-11-25 16:51 - 2014-10-29 03:21 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2014-11-25 16:51 - 2014-10-29 03:20 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll
2014-11-25 16:51 - 2014-10-29 03:20 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\modemui.dll
2014-11-25 16:51 - 2014-10-29 03:20 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\iscsicpl.dll
2014-11-25 16:51 - 2014-10-29 03:20 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2014-11-25 16:51 - 2014-10-29 03:20 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl
2014-11-25 16:51 - 2014-10-29 03:20 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2014-11-25 16:51 - 2014-10-29 03:20 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\ncpa.cpl
2014-11-25 16:51 - 2014-10-29 03:20 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationHost.exe
2014-11-25 16:51 - 2014-10-29 03:20 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2014-11-25 16:51 - 2014-10-29 03:20 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\deskadp.dll
2014-11-25 16:51 - 2014-10-29 03:20 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\docprop.dll
2014-11-25 16:51 - 2014-10-29 03:20 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\shutdown.exe
2014-11-25 16:51 - 2014-10-29 03:20 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe
2014-11-25 16:51 - 2014-10-29 03:20 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\WallpaperHost.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\auditcse.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\icsigd.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00155648 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\joy.cpl
2014-11-25 16:51 - 2014-10-29 03:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00128512 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\WinMsoIrmProtector.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\control.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\WinOpcIrmProtector.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\DeviceProperties.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesRemote.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesProtection.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesPerformance.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesHardware.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesDataExecutionPrevention.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesComputerName.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\SystemPropertiesAdvanced.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\fhautoplay.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingWizard.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\ustprov.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\hhsetup.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\rundll32.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\deskmon.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\wmdmlog.dll
2014-11-25 16:51 - 2014-10-29 03:19 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Netplwiz.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Eap3Host.exe
2014-11-25 16:51 - 2014-10-29 03:19 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\DefaultDeviceManager.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWGP.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\SmartScreenSettings.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\DAMM.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\OptionalFeatures.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\Fondue.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\MdRes.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\DpiScaling.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\cfgbkend.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\RunLegacyCPLElevated.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\TapiMigPlugin.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\RegCtrl.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\SyncHost.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\ComputerDefaults.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\ThumbnailExtractionHost.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\BthMtpContextHandler.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\dvdupgrd.exe
2014-11-25 16:51 - 2014-10-29 03:18 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\NcdProp.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\DefaultPrinterProvider.dll
2014-11-25 16:51 - 2014-10-29 03:18 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\grpconv.exe
2014-11-25 16:51 - 2014-10-29 03:17 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\hdwwiz.cpl
2014-11-25 16:51 - 2014-10-29 03:17 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\SNTSearch.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\nlmgp.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-11-25 16:51 - 2014-10-29 03:17 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-11-25 16:51 - 2014-10-29 03:17 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-11-25 16:51 - 2014-10-29 03:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\imapi.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\fhmanagew.exe
2014-11-25 16:51 - 2014-10-29 03:17 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\msdart.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\ndfhcdiscovery.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2014-11-25 16:51 - 2014-10-29 03:17 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\XPSSHHDR.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe
2014-11-25 16:51 - 2014-10-29 03:17 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\correngine.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe
2014-11-25 16:51 - 2014-10-29 03:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\dot3hc.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\DfsShlEx.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\playlistfolder.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\l2nacp.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\msident.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\fhtask.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\ucmhc.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\Wwanpref.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00045056 ____C (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\cmlua.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe
2014-11-25 16:51 - 2014-10-29 03:17 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\hcproviders.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\aecache.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\tvratings.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\witnesswmiv2provider.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\wsepno.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\SmsDeviceAccessRevocation.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\shpafact.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\cmstplua.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\FXSUNATD.exe
2014-11-25 16:51 - 2014-10-29 03:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\DDACLSys.dll
2014-11-25 16:51 - 2014-10-29 03:17 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\RemoveDeviceElevated.dll
2014-11-25 16:51 - 2014-10-29 03:16 - 00342528 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe
2014-11-25 16:51 - 2014-10-29 03:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe
2014-11-25 16:51 - 2014-10-29 03:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\notepad.exe
2014-11-25 16:51 - 2014-10-29 03:16 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\cleanmgr.exe
2014-11-25 16:51 - 2014-10-29 03:16 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe
2014-11-25 16:51 - 2014-10-29 03:16 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2014-11-25 16:51 - 2014-10-29 03:16 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\gpprnext.dll
2014-11-25 16:51 - 2014-10-29 03:16 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\ndfetw.dll
2014-11-25 16:51 - 2014-10-29 03:16 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\pwsso.dll
2014-11-25 16:51 - 2014-10-29 03:16 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2014-11-25 16:51 - 2014-10-29 03:16 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2014-11-25 16:51 - 2014-10-29 03:16 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\fdWNet.dll
2014-11-25 16:51 - 2014-10-29 03:13 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll
2014-11-25 16:51 - 2014-10-29 03:13 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\PNPXAssoc.dll
2014-11-25 16:51 - 2014-10-29 03:13 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2014-11-25 16:51 - 2014-10-29 03:13 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\BdeUISrv.exe
2014-11-25 16:51 - 2014-10-29 03:13 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\ConnectedAccountState.dll
2014-11-25 16:51 - 2014-10-29 03:13 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll
2014-11-25 16:51 - 2014-10-29 03:12 - 00660480 _____ (Microsoft Corporation) C:\Windows\system32\dccw.exe
2014-11-25 16:51 - 2014-10-29 03:12 - 00441344 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll
2014-11-25 16:51 - 2014-10-29 03:12 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\shrpubw.exe
2014-11-25 16:51 - 2014-10-29 03:12 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2014-11-25 16:51 - 2014-10-29 03:12 - 00154624 _____ (Microsoft Corporation) C:\Windows\regedit.exe
2014-11-25 16:51 - 2014-10-29 03:12 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\fhshl.dll
2014-11-25 16:51 - 2014-10-29 03:12 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll
2014-11-25 16:51 - 2014-10-29 03:12 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\xwreg.dll
2014-11-25 16:51 - 2014-10-29 03:12 - 00096256 _____ () C:\Windows\system32\BthpanContextHandler.dll
2014-11-25 16:51 - 2014-10-29 03:12 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\bthci.dll
2014-11-25 16:51 - 2014-10-29 03:12 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\iscsiwmi.dll
2014-11-25 16:51 - 2014-10-29 03:12 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\WABSyncProvider.dll
2014-11-25 16:51 - 2014-10-29 03:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\efsui.exe
2014-11-25 16:51 - 2014-10-29 03:11 - 00469504 _____ (Microsoft Corporation) C:\Windows\system32\dmdlgs.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\mdminst.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\uireng.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\McxDriv.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\btpanui.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\cryptext.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\pwrshplugin.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00053248 _____ () C:\Windows\system32\BWContextHandler.dll
2014-11-25 16:51 - 2014-10-29 03:11 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\FdDevQuery.dll
2014-11-25 16:51 - 2014-10-29 03:10 - 00468480 _____ (Microsoft Corporation) C:\Windows\system32\RASMM.dll
2014-11-25 16:51 - 2014-10-29 03:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\dsprop.dll
2014-11-25 16:51 - 2014-10-29 03:10 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\pnpclean.dll
2014-11-25 16:51 - 2014-10-29 03:10 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\wshext.dll
2014-11-25 16:51 - 2014-10-29 03:10 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\winsockhc.dll
2014-11-25 16:51 - 2014-10-29 03:10 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\frprov.dll
2014-11-25 16:51 - 2014-10-29 03:10 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll
2014-11-25 16:51 - 2014-10-29 03:10 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\tcpmonui.dll
2014-11-25 16:51 - 2014-10-29 03:10 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentHost.dll
2014-11-25 16:51 - 2014-10-29 03:10 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\srwmi.dll
2014-11-25 16:51 - 2014-10-29 03:09 - 00601600 _____ (Microsoft Corporation) C:\Windows\system32\psr.exe
2014-11-25 16:51 - 2014-10-29 03:09 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2014-11-25 16:51 - 2014-10-29 03:09 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\cttune.exe
2014-11-25 16:51 - 2014-10-29 03:09 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2014-11-25 16:51 - 2014-10-29 03:09 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2014-11-25 16:51 - 2014-10-29 03:09 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\RstrtMgr.dll
2014-11-25 16:51 - 2014-10-29 03:09 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2014-11-25 16:51 - 2014-10-29 03:09 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\dskquota.dll
2014-11-25 16:51 - 2014-10-29 03:09 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\remotesp.tsp
2014-11-25 16:51 - 2014-10-29 03:09 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2014-11-25 16:51 - 2014-10-29 03:09 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\hotplug.dll
2014-11-25 16:51 - 2014-10-29 03:09 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\MbaeXmlParser.dll
2014-11-25 16:51 - 2014-10-29 03:09 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\RemoveDeviceContextHandler.dll
2014-11-25 16:51 - 2014-10-29 03:09 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\bthudtask.exe
2014-11-25 16:51 - 2014-10-29 03:09 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\ntlanui2.dll
2014-11-25 16:51 - 2014-10-29 03:08 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2014-11-25 16:51 - 2014-10-29 03:08 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\sdiagprv.dll
2014-11-25 16:51 - 2014-10-29 03:08 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\sti_ci.dll
2014-11-25 16:51 - 2014-10-29 03:08 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\wiadss.dll
2014-11-25 16:51 - 2014-10-29 03:08 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContent.dll
2014-11-25 16:51 - 2014-10-29 03:08 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\DFDWiz.exe
2014-11-25 16:51 - 2014-10-29 03:08 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe
2014-11-25 16:51 - 2014-10-29 03:08 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2014-11-25 16:51 - 2014-10-29 03:08 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\credwiz.exe
2014-11-25 16:51 - 2014-10-29 03:08 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceDriverRetrievalClient.dll
2014-11-25 16:51 - 2014-10-29 03:08 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2014-11-25 16:51 - 2014-10-29 03:07 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2014-11-25 16:51 - 2014-10-29 03:07 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2014-11-25 16:51 - 2014-10-29 03:07 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\EhStorShell.dll
2014-11-25 16:51 - 2014-10-29 03:07 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\rshx32.dll
2014-11-25 16:51 - 2014-10-29 03:07 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\EhStorPwdMgr.dll
2014-11-25 16:51 - 2014-10-29 03:07 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\MaintenanceUI.dll
2014-11-25 16:51 - 2014-10-29 03:07 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2014-11-25 16:51 - 2014-10-29 03:06 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\colorui.dll
2014-11-25 16:51 - 2014-10-29 03:06 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2014-11-25 16:51 - 2014-10-29 03:06 - 00517120 _____ (Microsoft Corporation) C:\Windows\system32\cmdial32.dll
2014-11-25 16:51 - 2014-10-29 03:06 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2014-11-25 16:51 - 2014-10-29 03:06 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2014-11-25 16:51 - 2014-10-29 03:06 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2014-11-25 16:51 - 2014-10-29 03:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\vssadmin.exe
2014-11-25 16:51 - 2014-10-29 03:06 - 00113664 _____ (Microsoft) C:\Windows\system32\SMBHelperClass.dll
2014-11-25 16:51 - 2014-10-29 03:06 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\ndishc.dll
2014-11-25 16:51 - 2014-10-29 03:06 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\fhlisten.dll
2014-11-25 16:51 - 2014-10-29 03:06 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\DAConn.dll
2014-11-25 16:51 - 2014-10-29 03:05 - 02628608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NlsLexicons0009.dll
2014-11-25 16:51 - 2014-10-29 03:05 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2014-11-25 16:51 - 2014-10-29 03:05 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\keymgr.dll
2014-11-25 16:51 - 2014-10-29 03:05 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\Dsui.dll
2014-11-25 16:51 - 2014-10-29 03:05 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\systeminfo.exe
2014-11-25 16:51 - 2014-10-29 03:05 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\wiascanprofiles.dll
2014-11-25 16:51 - 2014-10-29 03:05 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\getmac.exe
2014-11-25 16:51 - 2014-10-29 03:05 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\gptext.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00638976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00546304 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00460288 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2014-11-25 16:51 - 2014-10-29 03:04 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\taskkill.exe
2014-11-25 16:51 - 2014-10-29 03:04 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\wiaacmgr.exe
2014-11-25 16:51 - 2014-10-29 03:04 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\Utilman.exe
2014-11-25 16:51 - 2014-10-29 03:04 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\srhelper.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\driverquery.exe
2014-11-25 16:51 - 2014-10-29 03:04 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\WSDScanProxy.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\SMSRouter.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcirt.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\findnetprinters.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\SrTasks.exe

krautsand 01.12.2014 16:33

(4)
2014-11-25 16:51 - 2014-10-29 03:04 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceUxRes.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2help.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2014-11-25 16:51 - 2014-10-29 03:04 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rnr20.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00433152 _____ (Microsoft Corporation) C:\Windows\system32\dsquery.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00297472 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00241152 ____C (Microsoft Corporation) C:\Windows\system32\fsquirt.exe
2014-11-25 16:51 - 2014-10-29 03:03 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\xwtpw32.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\SoundRecorder.exe
2014-11-25 16:51 - 2014-10-29 03:03 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SSShim.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\tasklist.exe
2014-11-25 16:51 - 2014-10-29 03:03 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\sendmail.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\SetProxyCredential.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\brdgcfg.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ktmw32.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\txfw32.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wship6.dll
2014-11-25 16:51 - 2014-10-29 03:03 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSHTCPIP.DLL
2014-11-25 16:51 - 2014-10-29 03:03 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2014-11-25 16:51 - 2014-10-29 03:02 - 00483328 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll
2014-11-25 16:51 - 2014-10-29 03:02 - 00423424 _____ (Microsoft Corporation) C:\Windows\system32\irprops.cpl
2014-11-25 16:51 - 2014-10-29 03:02 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\newdev.dll
2014-11-25 16:51 - 2014-10-29 03:02 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\EaseOfAccessDialog.exe
2014-11-25 16:51 - 2014-10-29 03:02 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\FXST30.dll
2014-11-25 16:51 - 2014-10-29 03:02 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\signdrv.dll
2014-11-25 16:51 - 2014-10-29 03:02 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\RdpSa.exe
2014-11-25 16:51 - 2014-10-29 03:02 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\WinFax.dll
2014-11-25 16:51 - 2014-10-29 03:01 - 00380928 _____ (Microsoft Corporation) C:\Windows\system32\cryptuiwizard.dll
2014-11-25 16:51 - 2014-10-29 03:01 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\p2pnetsh.dll
2014-11-25 16:51 - 2014-10-29 03:01 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\irftp.exe
2014-11-25 16:51 - 2014-10-29 03:01 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAuthn.exe
2014-11-25 16:51 - 2014-10-29 03:01 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\dnshc.dll
2014-11-25 16:51 - 2014-10-29 03:01 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOM.dll
2014-11-25 16:51 - 2014-10-29 03:01 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\HelpPaneProxy.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dramp.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00274432 _____ (Microsoft Corporation) C:\Windows\system32\fveui.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00214528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miguiresource.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syncui.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\racpldlg.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spfileq.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SPInf.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SortWindows6Compat.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\uicom.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\tpmcompc.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sfc_os.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SortWindows61.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SortServer2003Compat.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\idndl.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Nlsdl.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msisip.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciwave.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciseq.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shgina.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davhlpr.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmutil.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shunimpl.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscpxl32.dLL
2014-11-25 16:51 - 2014-10-29 03:00 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiatrace.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbios.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscat32.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browseui.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensApi.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\softpub.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacchooks.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nddeapi.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiwer.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssip32.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir50_32.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir41_32.ax
2014-11-25 16:51 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OskSupport.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir50_qcx.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir50_qc.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir41_qcx.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir41_qc.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ir32_32.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\getuname.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osuninst.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimeng.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2014-11-25 16:51 - 2014-10-29 03:00 - 00004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\normaliz.dll
2014-11-25 16:51 - 2014-10-29 03:00 - 00003072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprop.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 02013696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00286720 _____ (Microsoft Corporation) C:\Windows\system32\wbadmin.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdadiag.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glu32.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\oleprn.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciavi32.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\networkitemfactory.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vds_ps.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmocx.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regini.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WcnNetsh.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\feclient.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\htui.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cnvfat.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\pnpui.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\rtffilt.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\dfp.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hidserv.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsutil.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmpbk32.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrnr.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comp.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lsmproxy.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fc.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sisbkup.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mgmtapi.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\replace.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vdmdbg.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsock32.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\doskey.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\find.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clb.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\subst.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\print.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msidcrl40.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\help.exe
2014-11-25 16:51 - 2014-10-29 02:59 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WlS0WndH.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sas.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInput9_1_0.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxex.dll
2014-11-25 16:51 - 2014-10-29 02:59 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00857088 _____ (Microsoft Corporation) C:\Windows\system32\FXSST.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00163328 _____ (Microsoft Corporation) C:\Windows\system32\apprepapi.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2014-11-25 16:51 - 2014-10-29 02:58 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00112640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbnetlib.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\telephon.cpl
2014-11-25 16:51 - 2014-10-29 02:58 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsiwmiv2.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\radardt.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colorcpl.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00085504 _____ (Radius Inc.) C:\Windows\SysWOW64\iccvid.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\makecab.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00069120 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\SysWOW64\l3codeca.acm
2014-11-25 16:51 - 2014-10-29 02:58 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdmat.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\xmlfilter.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NapiNSP.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iyuv_32.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzutil.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\offreg.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drttransport.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp
2014-11-25 16:51 - 2014-10-29 02:58 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcbcp.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcicda.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmmon32.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvidc32.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\WPDShextAutoplay.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cliconfg.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mode.com
2014-11-25 16:51 - 2014-10-29 02:58 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ureg.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msyuv.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drprov.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sort.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osbaseln.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\umdmxfrm.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\midimap.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbnmpntw.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chkntfs.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\convert.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WINSRPC.DLL
2014-11-25 16:51 - 2014-10-29 02:58 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskperf.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tree.com
2014-11-25 16:51 - 2014-10-29 02:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiltcfg.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasctrs.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hh.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskcomp.com
2014-11-25 16:51 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshrm.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\label.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdkey.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfts.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrle32.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsbyuv.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TapiUnattend.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwinsat.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\recover.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmsprep.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chcp.com
2014-11-25 16:51 - 2014-10-29 02:58 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskcopy.com
2014-11-25 16:51 - 2014-10-29 02:58 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dvdplay.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsied.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomcnfg.exe
2014-11-25 16:51 - 2014-10-29 02:58 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapiperf.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TimeDateMUICallback.dll
2014-11-25 16:51 - 2014-10-29 02:58 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acledit.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00329728 _____ (Microsoft Corporation) C:\Windows\system32\pwlauncher.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00324608 ____C (Microsoft Corporation) C:\Windows\system32\BthHFSrv.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drt.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsldpc.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00200704 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceWMDRM.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\raserver.exe
2014-11-25 16:51 - 2014-10-29 02:57 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\TpmInit.exe
2014-11-25 16:51 - 2014-10-29 02:57 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cliconfg.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssdpapi.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\expand.exe
2014-11-25 16:51 - 2014-10-29 02:57 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hidphone.tsp
2014-11-25 16:51 - 2014-10-29 02:57 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syskey.exe
2014-11-25 16:51 - 2014-10-29 02:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-11-25 16:51 - 2014-10-29 02:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe
2014-11-25 16:51 - 2014-10-29 02:57 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmintf.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe
2014-11-25 16:51 - 2014-10-29 02:57 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\serwvdrv.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcacli.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\npmproxy.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmlprovi.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpupdate.exe
2014-11-25 16:51 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcmsetup.exe
2014-11-25 16:51 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syssetup.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\muifontsetup.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDOIProxy.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\panmap.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutilx.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usbperf.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshirda.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSaPs.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcico.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IconCodecService.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrnsave.scr
2014-11-25 16:51 - 2014-10-29 02:57 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spnet.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcNs4.dll
2014-11-25 16:51 - 2014-10-29 02:57 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-11-25 16:51 - 2014-10-29 02:57 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shfolder.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\wiashext.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\wlandlg.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceWiaCompat.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\wkspbrokerAx.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.ps.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2014-11-25 16:51 - 2014-10-29 02:56 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wevtfwd.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\linkinfo.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icmui.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx5.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capisp.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncInfrastructureps.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\irclass.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dispex.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pstorec.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSChannel.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx6.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscproxystub.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx7.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx3.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncHostps.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx4.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmcodecdspps.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcji32.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odtext32.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odpdx32.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odfox32.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oddbse32.dll
2014-11-25 16:51 - 2014-10-29 02:56 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odexl32.dll
2014-11-25 16:51 - 2014-10-29 02:55 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2014-11-25 16:51 - 2014-10-29 02:55 - 00142848 _____ () C:\Windows\system32\OEMLicense.dll
2014-11-25 16:51 - 2014-10-29 02:55 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dinput.dll
2014-11-25 16:51 - 2014-10-29 02:55 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\pcwutl.dll
2014-11-25 16:51 - 2014-10-29 02:55 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\rekeywiz.exe
2014-11-25 16:51 - 2014-10-29 02:55 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll
2014-11-25 16:51 - 2014-10-29 02:55 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pid.dll
2014-11-25 16:51 - 2014-10-29 02:55 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxstrace.exe
2014-11-25 16:51 - 2014-10-29 02:55 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfime.ime
2014-11-25 16:51 - 2014-10-29 02:54 - 15784448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDORes.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\WLanHC.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\FXSUTILITY.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpsapi.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\DeviceMetadataRetrievalClient.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcshext.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\SpaceAgent.exe
2014-11-25 16:51 - 2014-10-29 02:54 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfui.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctfp.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avicap32.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drtprov.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsidsc.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsauth.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\extrac32.exe
2014-11-25 16:51 - 2014-10-29 02:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcPing.exe
2014-11-25 16:51 - 2014-10-29 02:54 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msacm32.drv
2014-11-25 16:51 - 2014-10-29 02:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secinit.exe
2014-11-25 16:51 - 2014-10-29 02:54 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VscMgrPS.dll
2014-11-25 16:51 - 2014-10-29 02:54 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ctfmon.exe
2014-11-25 16:51 - 2014-10-29 02:53 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp
2014-11-25 16:51 - 2014-10-29 02:53 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00163328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cic.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prncache.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2014-11-25 16:51 - 2014-10-29 02:53 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chartv.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\winethc.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlaySndSrv.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\dpapimig.exe
2014-11-25 16:51 - 2014-10-29 02:53 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Magnification.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\traffic.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcnsh.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsium.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzSqlExt.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qmgrprxy.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ktmutil.exe
2014-11-25 16:51 - 2014-10-29 02:53 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icsunattend.exe
2014-11-25 16:51 - 2014-10-29 02:53 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsprx2.dll
2014-11-25 16:51 - 2014-10-29 02:53 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\verclsid.exe
2014-11-25 16:51 - 2014-10-29 02:53 - 00009728 _____ (Microsoft Corporation) C:\Windows\winhlp32.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00289280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compstui.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\L2SecHC.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00181248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWB7.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetapi.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\msrahc.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicpl.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msra.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fms.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventvwr.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\FXSROUTE.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertPolEng.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hdwwiz.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winver.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3dlg.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdhui.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmutil.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToStatusProvider.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmib.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ias.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscisvif.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\compact.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spopk.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regedt32.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdext.dll
2014-11-25 16:51 - 2014-10-29 02:52 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\write.exe
2014-11-25 16:51 - 2014-10-29 02:52 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TapiSysprep.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\SpaceControl.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsdmo.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rgb9rast.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvfw32.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usbceip.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oledlg.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\logagent.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmscript.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atl.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olecli32.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmcompos.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndadmin.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasdatastore.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dxof.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netprovisionsp.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssign32.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\takeown.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasphone.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msports.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmloader.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\AuthExt.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdrleakdiag.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmband.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\where.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dialer.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olesvr32.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timeout.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clip.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\at.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dswave.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshcon.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winusb.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorSvc.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\runas.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uniplat.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdial.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasautou.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hnetmon.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcmonitor.dll
2014-11-25 16:51 - 2014-10-29 02:51 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LAPRXY.DLL
2014-11-25 16:51 - 2014-10-29 02:51 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InfDefaultInstall.exe
2014-11-25 16:51 - 2014-10-29 02:51 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systray.exe
2014-11-25 16:51 - 2014-10-29 02:50 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2014-11-25 16:51 - 2014-10-29 02:50 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2014-11-25 16:51 - 2014-10-29 02:50 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2014-11-25 16:51 - 2014-10-29 02:50 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlcecompact40.dll
2014-11-25 16:51 - 2014-10-29 02:50 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmsynth.dll
2014-11-25 16:51 - 2014-10-29 02:50 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscript.ocx
2014-11-25 16:51 - 2014-10-29 02:50 - 00096256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avifil32.dll
2014-11-25 16:51 - 2014-10-29 02:50 - 00054784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\g711codc.ax
2014-11-25 16:51 - 2014-10-29 02:50 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-11-25 16:51 - 2014-10-29 02:50 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cttunesvr.exe
2014-11-25 16:51 - 2014-10-29 02:50 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Apphlpdm.dll
2014-11-25 16:51 - 2014-10-29 02:50 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxsstore.dll
2014-11-25 16:51 - 2014-10-29 02:50 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdiagnhost.exe
2014-11-25 16:51 - 2014-10-29 02:49 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll
2014-11-25 16:51 - 2014-10-29 02:49 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl
2014-11-25 16:51 - 2014-10-29 02:49 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2014-11-25 16:51 - 2014-10-29 02:49 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe
2014-11-25 16:51 - 2014-10-29 02:49 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\immersivetpmvscmgrsvr.exe
2014-11-25 16:51 - 2014-10-29 02:49 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\tpmvscmgrsvr.exe
2014-11-25 16:51 - 2014-10-29 02:49 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\rmttpmvscmgrsvr.exe
2014-11-25 16:51 - 2014-10-29 02:49 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmview.ocx
2014-11-25 16:51 - 2014-10-29 02:49 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-11-25 16:51 - 2014-10-29 02:49 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSTPager.ax
2014-11-25 16:51 - 2014-10-29 02:49 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cca.dll
2014-11-25 16:51 - 2014-10-29 02:49 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\amstream.dll
2014-11-25 16:51 - 2014-10-29 02:49 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutilext.dll
2014-11-25 16:51 - 2014-10-29 02:49 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2014-11-25 16:51 - 2014-10-29 02:49 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciqtz32.dll
2014-11-25 16:51 - 2014-10-29 02:49 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceDisplayStatusManager.dll
2014-11-25 16:51 - 2014-10-29 02:49 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingProxy.dll
2014-11-25 16:51 - 2014-10-29 02:49 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlaninst.dll
2014-11-25 16:51 - 2014-10-29 02:49 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-11-25 16:51 - 2014-10-29 02:49 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fixmapi.exe
2014-11-25 16:51 - 2014-10-29 02:49 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CHxReadingStringIME.dll
2014-11-25 16:51 - 2014-10-29 02:48 - 01497600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskcopy.dll
2014-11-25 16:51 - 2014-10-29 02:48 - 00466944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl
2014-11-25 16:51 - 2014-10-29 02:48 - 00311296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcbase.dll
2014-11-25 16:51 - 2014-10-29 02:48 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\NcaSvc.dll
2014-11-25 16:51 - 2014-10-29 02:48 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicli.exe
2014-11-25 16:51 - 2014-10-29 02:48 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\verifier.exe
2014-11-25 16:51 - 2014-10-29 02:48 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaatext.dll
2014-11-25 16:51 - 2014-10-29 02:48 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmusic.dll
2014-11-25 16:51 - 2014-10-29 02:48 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Syncreg.dll
2014-11-25 16:51 - 2014-10-29 02:48 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\whoami.exe
2014-11-25 16:51 - 2014-10-29 02:48 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmdl32.exe
2014-11-25 16:51 - 2014-10-29 02:48 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdchange.exe
2014-11-25 16:51 - 2014-10-29 02:48 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\forfiles.exe
2014-11-25 16:51 - 2014-10-29 02:48 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sfc.exe
2014-11-25 16:51 - 2014-10-29 02:48 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcreate.exe
2014-11-25 16:51 - 2014-10-29 02:48 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\waitfor.exe
2014-11-25 16:51 - 2014-10-29 02:48 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\choice.exe
2014-11-25 16:51 - 2014-10-29 02:48 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsCtfMonitor.dll
2014-11-25 16:51 - 2014-10-29 02:48 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshelper.dll
2014-11-25 16:51 - 2014-10-29 02:48 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RmClient.exe
2014-11-25 16:51 - 2014-10-29 02:47 - 00186368 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Windows\SysWOW64\l3codecp.acm
2014-11-25 16:51 - 2014-10-29 02:47 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe
2014-11-25 16:51 - 2014-10-29 02:47 - 00135680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iassvcs.dll
2014-11-25 16:51 - 2014-10-29 02:47 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gcdef.dll
2014-11-25 16:51 - 2014-10-29 02:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2014-11-25 16:51 - 2014-10-29 02:47 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll
2014-11-25 16:51 - 2014-10-29 02:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bootcfg.exe
2014-11-25 16:51 - 2014-10-29 02:47 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\console.dll
2014-11-25 16:51 - 2014-10-29 02:47 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\openfiles.exe
2014-11-25 16:51 - 2014-10-29 02:47 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iaspolcy.dll
2014-11-25 16:51 - 2014-10-29 02:47 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSTheme.exe
2014-11-25 16:51 - 2014-10-29 02:47 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddodiag.exe
2014-11-25 16:51 - 2014-10-29 02:47 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mycomput.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00203264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00188416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssha.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Kswdmcap.ax
2014-11-25 16:51 - 2014-10-29 02:46 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe
2014-11-25 16:51 - 2014-10-29 02:46 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmjpegdec.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00088064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\loghours.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcad32.exe
2014-11-25 16:51 - 2014-10-29 02:46 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SCardDlg.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmci.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasads.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vfwwdm32.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dssec.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtsh.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Management.Workplace.WorkplaceSettings.dll
2014-11-25 16:51 - 2014-10-29 02:46 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\serialui.dll
2014-11-25 16:51 - 2014-10-29 02:45 - 01678336 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll
2014-11-25 16:51 - 2014-10-29 02:45 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll
2014-11-25 16:51 - 2014-10-29 02:45 - 00273408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPSTAT.EXE
2014-11-25 16:51 - 2014-10-29 02:45 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll
2014-11-25 16:51 - 2014-10-29 02:45 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resmon.exe
2014-11-25 16:51 - 2014-10-29 02:45 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iashlpr.dll
2014-11-25 16:51 - 2014-10-29 02:45 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mpeg2Data.ax
2014-11-25 16:51 - 2014-10-29 02:45 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QUTIL.DLL
2014-11-25 16:51 - 2014-10-29 02:45 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll
2014-11-25 16:51 - 2014-10-29 02:45 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usbui.dll
2014-11-25 16:51 - 2014-10-29 02:45 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDvbNP.ax
2014-11-25 16:51 - 2014-10-29 02:45 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe
2014-11-25 16:51 - 2014-10-29 02:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksxbar.ax
2014-11-25 16:51 - 2014-10-29 02:45 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.dll
2014-11-25 16:51 - 2014-10-29 02:45 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbisurf.ax
2014-11-25 16:51 - 2014-10-29 02:45 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bidispl.dll
2014-11-25 16:51 - 2014-10-29 02:45 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cipher.exe
2014-11-25 16:51 - 2014-10-29 02:45 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\napipsec.dll
2014-11-25 16:51 - 2014-10-29 02:45 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmiprop.dll
2014-11-25 16:51 - 2014-10-29 02:44 - 01152000 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2014-11-25 16:51 - 2014-10-29 02:44 - 00778752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Bubbles.scr
2014-11-25 16:51 - 2014-10-29 02:44 - 00400384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasplap.dll
2014-11-25 16:51 - 2014-10-29 02:44 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.exe
2014-11-25 16:51 - 2014-10-29 02:44 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mystify.scr
2014-11-25 16:51 - 2014-10-29 02:44 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Ribbons.scr
2014-11-25 16:51 - 2014-10-29 02:44 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontview.exe
2014-11-25 16:51 - 2014-10-29 02:44 - 00094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Narrator.exe
2014-11-25 16:51 - 2014-10-29 02:44 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2014-11-25 16:51 - 2014-10-29 02:44 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationNotifications.exe
2014-11-25 16:51 - 2014-10-29 02:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2014-11-25 16:51 - 2014-10-29 02:44 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QCLIPROV.DLL
2014-11-25 16:51 - 2014-10-29 02:44 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3cfg.dll
2014-11-25 16:51 - 2014-10-29 02:44 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmcfg32.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3gpui.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00196096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00191488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssText3d.scr
2014-11-25 16:51 - 2014-10-29 02:43 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\msoert2.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fphc.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bdaplgin.ax
2014-11-25 16:51 - 2014-10-29 02:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scripto.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwizard.exe
2014-11-25 16:51 - 2014-10-29 02:43 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AtBroker.exe
2014-11-25 16:51 - 2014-10-29 02:43 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NcaApi.dll
2014-11-25 16:51 - 2014-10-29 02:43 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wowreg32.exe
2014-11-25 16:51 - 2014-10-29 02:42 - 00305664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2014-11-25 16:51 - 2014-10-29 02:42 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2014-11-25 16:51 - 2014-10-29 02:42 - 00112640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advpack.dll
2014-11-25 16:51 - 2014-10-29 02:42 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
2014-11-25 16:51 - 2014-10-29 02:42 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.exe
2014-11-25 16:51 - 2014-10-29 02:42 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Groupinghc.dll
2014-11-25 16:51 - 2014-10-29 02:42 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\radarrs.dll
2014-11-25 16:51 - 2014-10-29 02:42 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Storprop.dll
2014-11-25 16:51 - 2014-10-29 02:42 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-11-25 16:51 - 2014-10-29 02:42 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdmps.dll
2014-11-25 16:51 - 2014-10-29 02:42 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndproxystub.dll
2014-11-25 16:51 - 2014-10-29 02:41 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onexui.dll
2014-11-25 16:51 - 2014-10-29 02:41 - 00287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\modemui.dll
2014-11-25 16:51 - 2014-10-29 02:41 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicpl.dll
2014-11-25 16:51 - 2014-10-29 02:41 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll
2014-11-25 16:51 - 2014-10-29 02:41 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kstvtune.ax
2014-11-25 16:51 - 2014-10-29 02:40 - 00292352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3ui.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquoui.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00168448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\desk.cpl
2014-11-25 16:51 - 2014-10-29 02:40 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\softkbd.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00136704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\joy.cpl
2014-11-25 16:51 - 2014-10-29 02:40 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxlib.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinMsoIrmProtector.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2014-11-25 16:51 - 2014-10-29 02:40 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinOpcIrmProtector.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncpa.cpl
2014-11-25 16:51 - 2014-10-29 02:40 - 00092160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olethk32.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingWizard.exe
2014-11-25 16:51 - 2014-10-29 02:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
2014-11-25 16:51 - 2014-10-29 02:40 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deskadp.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhsetup.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\docprop.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdmlog.dll
2014-11-25 16:51 - 2014-10-29 02:40 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shutdown.exe
2014-11-25 16:51 - 2014-10-29 02:40 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\proquota.exe
2014-11-25 16:51 - 2014-10-29 02:40 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Netplwiz.exe
2014-11-25 16:51 - 2014-10-29 02:40 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DefaultDeviceManager.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00382976 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWGP.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00217088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartScreenSettings.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00201728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icsigd.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsadmin.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00185856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasppp.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00147968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mydocs.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\control.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Fondue.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceProperties.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\isoburn.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesRemote.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesProtection.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesPerformance.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesHardware.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesDataExecutionPrevention.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesComputerName.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemPropertiesAdvanced.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DpiScaling.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\napdsnap.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RunLegacyCPLElevated.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgbkend.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TapiMigPlugin.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ustprov.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deskmon.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegCtrl.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncHost.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ComputerDefaults.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ThumbnailExtractionHost.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dvdupgrd.exe
2014-11-25 16:51 - 2014-10-29 02:39 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NcdProp.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DefaultPrinterProvider.dll
2014-11-25 16:51 - 2014-10-29 02:39 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2014-11-25 16:51 - 2014-10-29 02:38 - 00898048 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2014-11-25 16:51 - 2014-10-29 02:38 - 00404480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00232448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hdwwiz.cpl
2014-11-25 16:51 - 2014-10-29 02:38 - 00212480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cleanmgr.exe
2014-11-25 16:51 - 2014-10-29 02:38 - 00157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmgp.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-11-25 16:51 - 2014-10-29 02:38 - 00138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-11-25 16:51 - 2014-10-29 02:38 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fde.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-11-25 16:51 - 2014-10-29 02:38 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdart.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSyncProviders.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\efsadu.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndfhcdiscovery.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe
2014-11-25 16:51 - 2014-10-29 02:38 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mobsync.exe
2014-11-25 16:51 - 2014-10-29 02:38 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmstp.exe
2014-11-25 16:51 - 2014-10-29 02:38 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XPSSHHDR.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DfsShlEx.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2nacp.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3hc.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msident.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\playlistfolder.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucmhc.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmlua.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\runonce.exe
2014-11-25 16:51 - 2014-10-29 02:38 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hcproviders.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcsPlugInService.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tvratings.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndfetw.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shpafact.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\grpconv.exe
2014-11-25 16:51 - 2014-10-29 02:38 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmstplua.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DDACLSys.dll
2014-11-25 16:51 - 2014-10-29 02:38 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoveDeviceElevated.dll
2014-11-25 16:51 - 2014-10-29 02:37 - 00212992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
2014-11-25 16:51 - 2014-10-29 02:37 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabview.dll
2014-11-25 16:51 - 2014-10-29 02:37 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll
2014-11-25 16:51 - 2014-10-29 02:37 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprnext.dll
2014-11-25 16:51 - 2014-10-29 02:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2014-11-25 16:51 - 2014-10-29 02:37 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll
2014-11-25 16:51 - 2014-10-29 02:36 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWNet.dll
2014-11-25 16:51 - 2014-10-29 02:35 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfmon.exe
2014-11-25 16:51 - 2014-10-29 02:35 - 00100352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xwreg.dll
2014-11-25 16:51 - 2014-10-29 02:35 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll
2014-11-25 16:51 - 2014-10-29 02:35 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WABSyncProvider.dll
2014-11-25 16:51 - 2014-10-29 02:35 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConnectedAccountState.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00644608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dccw.exe
2014-11-25 16:51 - 2014-10-29 02:34 - 00430592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceStatus.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shrpubw.exe
2014-11-25 16:51 - 2014-10-29 02:34 - 00339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\difxapi.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00295424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe
2014-11-25 16:51 - 2014-10-29 02:34 - 00201728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdminst.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00134144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regedit.exe
2014-11-25 16:51 - 2014-10-29 02:34 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorAPI.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsiwmi.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00057856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptext.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00054272 _____ (Twain Working Group) C:\Windows\twain_32.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00046080 _____ () C:\Windows\SysWOW64\BWContextHandler.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pwrshplugin.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FdDevQuery.dll
2014-11-25 16:51 - 2014-10-29 02:34 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsui.exe
2014-11-25 16:51 - 2014-10-29 02:33 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uireng.dll
2014-11-25 16:51 - 2014-10-29 02:33 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remotesp.tsp
2014-11-25 16:51 - 2014-10-29 02:33 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshext.dll
2014-11-25 16:51 - 2014-10-29 02:33 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsockhc.dll
2014-11-25 16:51 - 2014-10-29 02:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.dll
2014-11-25 16:51 - 2014-10-29 02:33 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\btpanui.dll
2014-11-25 16:51 - 2014-10-29 02:33 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\frprov.dll
2014-11-25 16:51 - 2014-10-29 02:33 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll
2014-11-25 16:51 - 2014-10-29 02:33 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll
2014-11-25 16:51 - 2014-10-29 02:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmonui.dll
2014-11-25 16:51 - 2014-10-29 02:32 - 00561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe
2014-11-25 16:51 - 2014-10-29 02:32 - 00313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cttune.exe
2014-11-25 16:51 - 2014-10-29 02:32 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\unregmp2.exe
2014-11-25 16:51 - 2014-10-29 02:32 - 00149504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RstrtMgr.dll
2014-11-25 16:51 - 2014-10-29 02:32 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsprop.dll
2014-11-25 16:51 - 2014-10-29 02:32 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll
2014-11-25 16:51 - 2014-10-29 02:32 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twext.dll
2014-11-25 16:51 - 2014-10-29 02:32 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquota.dll
2014-11-25 16:51 - 2014-10-29 02:32 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax
2014-11-25 16:51 - 2014-10-29 02:32 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2014-11-25 16:51 - 2014-10-29 02:32 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acppage.dll
2014-11-25 16:51 - 2014-10-29 02:32 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RemoveDeviceContextHandler.dll
2014-11-25 16:51 - 2014-10-29 02:32 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthudtask.exe
2014-11-25 16:51 - 2014-10-29 02:32 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanui2.dll
2014-11-25 16:51 - 2014-10-29 02:32 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2014-11-25 16:51 - 2014-10-29 02:31 - 00392704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl
2014-11-25 16:51 - 2014-10-29 02:31 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll
2014-11-25 16:51 - 2014-10-29 02:31 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2014-11-25 16:51 - 2014-10-29 02:31 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdiagprv.dll
2014-11-25 16:51 - 2014-10-29 02:31 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2014-11-25 16:51 - 2014-10-29 02:31 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadss.dll
2014-11-25 16:51 - 2014-10-29 02:31 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rshx32.dll
2014-11-25 16:51 - 2014-10-29 02:31 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorPwdMgr.dll
2014-11-25 16:51 - 2014-10-29 02:31 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimefilt.dll
2014-11-25 16:51 - 2014-10-29 02:31 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credwiz.exe
2014-11-25 16:51 - 2014-10-29 02:30 - 02118144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll
2014-11-25 16:51 - 2014-10-29 02:30 - 00605696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colorui.dll
2014-11-25 16:51 - 2014-10-29 02:30 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll
2014-11-25 16:51 - 2014-10-29 02:30 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2014-11-25 16:51 - 2014-10-29 02:30 - 00184832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
2014-11-25 16:51 - 2014-10-29 02:30 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2014-11-25 16:51 - 2014-10-29 02:30 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll
2014-11-25 16:51 - 2014-10-29 02:30 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssadmin.exe
2014-11-25 16:51 - 2014-10-29 02:30 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiascanprofiles.dll
2014-11-25 16:51 - 2014-10-29 02:30 - 00085504 _____ (Microsoft) C:\Windows\SysWOW64\SMBHelperClass.dll
2014-11-25 16:51 - 2014-10-29 02:30 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndishc.dll
2014-11-25 16:51 - 2014-10-29 02:30 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MuiUnattend.exe
2014-11-25 16:51 - 2014-10-29 02:29 - 00528896 _____ (Microsoft Corporation)

krautsand 01.12.2014 20:49

(5)
C:\Windows\SysWOW64\xwtpw32.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\mprmsg.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\mspatchc.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\KdsCli.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tasklist.exe
2014-11-25 16:51 - 2014-10-29 02:28 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\RpcEpMap.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskkill.exe
2014-11-25 16:51 - 2014-10-29 02:28 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\reg.exe
2014-11-25 16:51 - 2014-10-29 02:28 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\sc.exe
2014-11-25 16:51 - 2014-10-29 02:28 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sendmail.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\dfscli.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00055808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findnetprinters.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\mskeyprotect.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\scext.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Websocket.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\perfproc.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\nshhttp.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\vidcap.ax
2014-11-25 16:51 - 2014-10-29 02:28 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\icacls.exe
2014-11-25 16:51 - 2014-10-29 02:28 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\hid.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSa.exe
2014-11-25 16:51 - 2014-10-29 02:28 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\mfcsubs.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\w32topl.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\sdhcinst.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\snmpapi.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinFax.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe
2014-11-25 16:51 - 2014-10-29 02:28 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\perfnet.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.TimeBroker.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\TimeBrokerClient.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\attrib.exe
2014-11-25 16:51 - 2014-10-29 02:28 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\fltLib.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\mskeyprotcli.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\PATHPING.EXE
2014-11-25 16:51 - 2014-10-29 02:28 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\rasadhlp.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\mountvol.exe
2014-11-25 16:51 - 2014-10-29 02:28 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\wmsgapi.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\C_IS2022.DLL
2014-11-25 16:51 - 2014-10-29 02:28 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\winrssrv.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\whhelper.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\fdBthProxy.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\sscoreext.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\TCPSVCS.EXE
2014-11-25 16:51 - 2014-10-29 02:28 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msidle.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\TcpipSetup.dll
2014-11-25 16:51 - 2014-10-29 02:28 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\backgroundTaskHost.exe
2014-11-25 16:51 - 2014-10-29 02:28 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00700928 _____ (Microsoft Corporation) C:\Windows\system32\elslad.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00416768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\irprops.cpl
2014-11-25 16:51 - 2014-10-29 02:27 - 00362496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptuiwizard.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00307200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\newdev.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00277504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EaseOfAccessDialog.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\regsvc.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\BrokerLib.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax
2014-11-25 16:51 - 2014-10-29 02:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\loadperf.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\mi.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\CallButtons.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\netsh.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSCOM.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\devrtl.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\esentprf.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\net.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\setx.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\lodctr.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\xcopy.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\HelpPaneProxy.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\mspatcha.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\signdrv.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\perfos.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\SecEdit.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\perfdisk.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\virtdisk.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\deviceassociation.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\format.com
2014-11-25 16:51 - 2014-10-29 02:27 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wcmapi.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\OnDemandConnRouteHelper.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\cacls.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\EventAggregation.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\dsparse.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\more.com
2014-11-25 16:51 - 2014-10-29 02:27 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\fltMC.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\sysntfy.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\fvecerts.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\ARP.EXE
2014-11-25 16:51 - 2014-10-29 02:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\adhapi.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\PING.EXE
2014-11-25 16:51 - 2014-10-29 02:27 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\CSystemEventsBrokerClient.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\httpprxp.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerClient.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\TRACERT.EXE
2014-11-25 16:51 - 2014-10-29 02:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\finger.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\Register-CimProvider.exe
2014-11-25 16:51 - 2014-10-29 02:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\smphost.dll
2014-11-25 16:51 - 2014-10-29 02:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\HOSTNAME.EXE
2014-11-25 16:51 - 2014-10-29 02:27 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\TetheringIeProvider.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00330752 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\esentutl.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\NetSetupApi.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\p2pnetsh.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QAGENT.DLL
2014-11-25 16:51 - 2014-10-29 02:26 - 00169472 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mimofcodec.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\ntdsapi.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorAuthn.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\racpldlg.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerDeviceEncryption.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\pnrpnsp.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\uexfat.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\wecapi.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\wlidnsp.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\themeservice.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\fveskybackup.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.Fontgroups.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\fmifs.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\typeperf.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\srumapi.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSEXT32.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\NetEvtFwdr.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\MirrorDrvCompat.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\crypttpmeksvc.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uicom.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\XInput1_4.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\winbrand.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appsruprov.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\pots.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\eapprovp.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\VaultCmd.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\chkdsk.exe
2014-11-25 16:51 - 2014-10-29 02:26 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\userinitext.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimgvw.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\MRINFO.EXE
2014-11-25 16:51 - 2014-10-29 02:26 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\ProximityRtapiPal.dll
2014-11-25 16:51 - 2014-10-29 02:26 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wpcsvc.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrdc.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL
2014-11-25 16:51 - 2014-10-29 02:25 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe
2014-11-25 16:51 - 2014-10-29 02:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlhtml.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\negoexts.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleprn.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\wecutil.exe
2014-11-25 16:51 - 2014-10-29 02:25 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\winbio.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\DevDispItemProvider.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL
2014-11-25 16:51 - 2014-10-29 02:25 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\winlogonext.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmlfilter.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkitemfactory.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tpmcompc.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2014-11-25 16:51 - 2014-10-29 02:25 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtffilt.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShextAutoplay.exe
2014-11-25 16:51 - 2014-10-29 02:25 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\ncuprov.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\wininitext.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2014-11-25 16:51 - 2014-10-29 02:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\dnsext.dll
2014-11-25 16:51 - 2014-10-29 02:24 - 00446976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiashext.dll
2014-11-25 16:51 - 2014-10-29 02:24 - 00178176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceWMDRM.dll
2014-11-25 16:51 - 2014-10-29 02:24 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2014-11-25 16:51 - 2014-10-29 02:24 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceWiaCompat.dll
2014-11-25 16:51 - 2014-10-29 02:24 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepapi.dll
2014-11-25 16:51 - 2014-10-29 02:24 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll
2014-11-25 16:51 - 2014-10-29 02:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raserver.exe
2014-11-25 16:51 - 2014-10-29 02:24 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\wlanext.exe
2014-11-25 16:51 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2014-11-25 16:51 - 2014-10-29 02:24 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2014-11-25 16:51 - 2014-10-29 02:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguageProfileCallback.dll
2014-11-25 16:51 - 2014-10-29 02:24 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\procinst.dll
2014-11-25 16:51 - 2014-10-29 02:23 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlandlg.dll
2014-11-25 16:51 - 2014-10-29 02:23 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2014-11-25 16:51 - 2014-10-29 02:23 - 00107008 _____ () C:\Windows\SysWOW64\OEMLicense.dll
2014-11-25 16:51 - 2014-10-29 02:23 - 00097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netid.dll
2014-11-25 16:51 - 2014-10-29 02:23 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkspbrokerAx.dll
2014-11-25 16:51 - 2014-10-29 02:23 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\PCPKsp.dll
2014-11-25 16:51 - 2014-10-29 02:23 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Enumeration.ps.dll
2014-11-25 16:51 - 2014-10-29 02:23 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.ps.dll
2014-11-25 16:51 - 2014-10-29 02:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Background.ps.dll
2014-11-25 16:51 - 2014-10-29 02:23 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\AppxStreamingDataSourcePS.dll
2014-11-25 16:51 - 2014-10-29 02:22 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-11-25 16:51 - 2014-10-29 02:22 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rekeywiz.exe
2014-11-25 16:51 - 2014-10-29 02:22 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\wlgpclnt.dll
2014-11-25 16:51 - 2014-10-29 02:22 - 00089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmInit.exe
2014-11-25 16:51 - 2014-10-29 02:22 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShServiceObj.dll
2014-11-25 16:51 - 2014-10-29 02:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll
2014-11-25 16:51 - 2014-10-29 02:22 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\msauserext.dll
2014-11-25 16:51 - 2014-10-29 02:22 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\SubscriptionMgr.dll
2014-11-25 16:51 - 2014-10-29 02:22 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\mmcss.dll
2014-11-25 16:51 - 2014-10-29 02:22 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll
2014-11-25 16:51 - 2014-10-29 02:22 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\TaskSchdPS.dll
2014-11-25 16:51 - 2014-10-29 02:22 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\keyiso.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\Winlangdb.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.HostName.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\korwbrkr.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.Compression.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\trkwks.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\WinRtTracing.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\cngcredui.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\alg.exe
2014-11-25 16:51 - 2014-10-29 02:21 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\bcdprov.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Custom.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\Sens.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\nduprov.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Background.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\threadpoolwinrt.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\ddrawex.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\catsrvps.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\perfctrs.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Portable.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Printers.Extensions.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\ipconfig.exe
2014-11-25 16:51 - 2014-10-29 02:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\cfmifs.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\BackgroundTransferHost.exe
2014-11-25 16:51 - 2014-10-29 02:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\WsmAgent.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\mtxdm.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\nlmproxy.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Display.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Profile.SystemManufacturers.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\wpnsruprov.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\delegatorprovider.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi_passthru.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\CallButtons.ProxyStub.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\ROUTE.EXE
2014-11-25 16:51 - 2014-10-29 02:21 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.RemoteDesktop.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\defragproxy.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\AuthHostProxy.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\TtlsExt.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\TimeSyncTask.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\cfmifsproxy.dll
2014-11-25 16:51 - 2014-10-29 02:21 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\dllhst3g.exe
2014-11-25 16:51 - 2014-10-29 02:20 - 00425984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shwebsvc.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\wmidcom.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommon.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00162304 _____ (Microsoft Corporation) C:\Windows\system32\globinputhost.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\L2SecHC.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\comrepl.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\vaultcli.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSXP32.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\prvdmofcomp.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapimig.exe
2014-11-25 16:51 - 2014-10-29 02:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\ELSCore.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvvmtransport.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\WlanRadioManager.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\msimtf.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\NETSTAT.EXE
2014-11-25 16:51 - 2014-10-29 02:20 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\dimsjob.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthExt.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\encapi.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\ProximityCommonPal.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentTask.dll
2014-11-25 16:51 - 2014-10-29 02:20 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\keepaliveprovider.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\smbwmiv2.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\msdtclog.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\txflog.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\dasHost.exe
2014-11-25 16:51 - 2014-10-29 02:19 - 00092672 _____ (Microsoft) C:\Windows\system32\VaultRoaming.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logagent.exe
2014-11-25 16:51 - 2014-10-29 02:19 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\colbact.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\eappprxy.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\stclient.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\pautoenr.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\rasmbmgr.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\profext.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\sxshared.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\pnrpauto.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\raschapext.dll
2014-11-25 16:51 - 2014-10-29 02:19 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\rastlsext.dll
2014-11-25 16:51 - 2014-10-29 02:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll
2014-11-25 16:51 - 2014-10-29 02:18 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-11-25 16:51 - 2014-10-29 02:18 - 00184832 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2014-11-25 16:51 - 2014-10-29 02:18 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Devices.dll
2014-11-25 16:51 - 2014-10-29 02:18 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll
2014-11-25 16:51 - 2014-10-29 02:18 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\mbussdapi.dll
2014-11-25 16:51 - 2014-10-29 02:18 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\RoamingSecurity.dll
2014-11-25 16:51 - 2014-10-29 02:18 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll
2014-11-25 16:51 - 2014-10-29 02:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\qwave.dll
2014-11-25 16:51 - 2014-10-29 02:17 - 00287232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysdm.cpl
2014-11-25 16:51 - 2014-10-29 02:17 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll
2014-11-25 16:51 - 2014-10-29 02:17 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\cryptcatsvc.dll
2014-11-25 16:51 - 2014-10-29 02:17 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apprepsync.dll
2014-11-25 16:51 - 2014-10-29 02:17 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\fdSSDP.dll
2014-11-25 16:51 - 2014-10-29 02:17 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2014-11-25 16:51 - 2014-10-29 02:17 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\EAPQEC.DLL
2014-11-25 16:51 - 2014-10-29 02:17 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\umpowmi.dll
2014-11-25 16:51 - 2014-10-29 02:17 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\rdsdwmdr.dll
2014-11-25 16:51 - 2014-10-29 02:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WofTasks.dll
2014-11-25 16:51 - 2014-10-29 02:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 01669632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkexplorer.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00675328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00291840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RADCUI.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00238592 _____ (Microsoft Corporation) C:\Windows\system32\mlang.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00173568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\ncbservice.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\mtstocom.exe
2014-11-25 16:51 - 2014-10-29 02:16 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\cmifw.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Pnrphc.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll
2014-11-25 16:51 - 2014-10-29 02:16 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\xolehlp.dll
2014-11-25 16:51 - 2014-10-29 02:15 - 01129984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2014-11-25 16:51 - 2014-10-29 02:15 - 00671744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsuiext.dll
2014-11-25 16:51 - 2014-10-29 02:15 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll
2014-11-25 16:51 - 2014-10-29 02:15 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\SimAuth.dll
2014-11-25 16:51 - 2014-10-29 02:15 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManagerAPI.dll
2014-11-25 16:51 - 2014-10-29 02:15 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\FDResPub.dll
2014-11-25 16:51 - 2014-10-29 02:15 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\winrshost.exe
2014-11-25 16:51 - 2014-10-29 02:14 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\certCredProvider.dll
2014-11-25 16:51 - 2014-10-29 02:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll
2014-11-25 16:51 - 2014-10-29 02:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\eapsvc.dll
2014-11-25 16:51 - 2014-10-29 02:14 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msoert2.dll
2014-11-25 16:51 - 2014-10-29 02:14 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2014-11-25 16:51 - 2014-10-29 02:14 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\RDSPnf.exe
2014-11-25 16:51 - 2014-10-29 02:14 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\ProximityServicePal.dll
2014-11-25 16:51 - 2014-10-29 02:14 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll
2014-11-25 16:51 - 2014-10-29 02:13 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apds.dll
2014-11-25 16:51 - 2014-10-29 02:13 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\fwcfg.dll
2014-11-25 16:51 - 2014-10-29 02:13 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll
2014-11-25 16:51 - 2014-10-29 02:13 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\fdPnp.dll
2014-11-25 16:51 - 2014-10-29 02:12 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\TtlsAuth.dll
2014-11-25 16:51 - 2014-10-29 02:12 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2014-11-25 16:51 - 2014-10-29 02:12 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\msdtc.exe
2014-11-25 16:51 - 2014-10-29 02:12 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceConnectApi.dll
2014-11-25 16:51 - 2014-10-29 02:12 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\wwaninst.dll
2014-11-25 16:51 - 2014-10-29 02:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\DsmUserTask.exe
2014-11-25 16:51 - 2014-10-29 02:11 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\wscinterop.dll
2014-11-25 16:51 - 2014-10-29 02:11 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll
2014-11-25 16:51 - 2014-10-29 02:11 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\DHCPQEC.DLL
2014-11-25 16:51 - 2014-10-29 02:11 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efsadu.dll
2014-11-25 16:51 - 2014-10-29 02:11 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\umpoext.dll
2014-11-25 16:51 - 2014-10-29 02:10 - 00465408 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll
2014-11-25 16:51 - 2014-10-29 02:10 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll
2014-11-25 16:51 - 2014-10-29 02:10 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\WSSync.dll
2014-11-25 16:51 - 2014-10-29 02:10 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2014-11-25 16:51 - 2014-10-29 02:10 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll
2014-11-25 16:51 - 2014-10-29 02:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\dafupnp.dll
2014-11-25 16:51 - 2014-10-29 02:09 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\fdBth.dll
2014-11-25 16:51 - 2014-10-29 02:09 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\ifmon.dll
2014-11-25 16:51 - 2014-10-29 02:08 - 00397312 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2014-11-25 16:51 - 2014-10-29 02:08 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\fdWSD.dll
2014-11-25 16:51 - 2014-10-29 02:08 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\winrs.exe
2014-11-25 16:51 - 2014-10-29 02:07 - 00192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unregmp2.exe
2014-11-25 16:51 - 2014-10-29 02:07 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00104960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00102912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmiclnt.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\httpapi.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapi.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprext.dll
2014-11-25 16:51 - 2014-10-29 02:06 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_ISCII.DLL
2014-11-25 16:51 - 2014-10-29 02:06 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dabapi.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00589824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elslad.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_G18030.DLL
2014-11-25 16:51 - 2014-10-29 02:05 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprmsg.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\winrscmd.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\loadperf.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hbaapi.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspatchc.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samcli.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\reg.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sc.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\ndiscapCfg.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ftp.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mskeyprotect.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lodctr.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfscli.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfproc.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspatcha.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfos.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Websocket.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unlodctr.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfdisk.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshhttp.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vidcap.ax
2014-11-25 16:51 - 2014-10-29 02:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\virtdisk.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icacls.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32topl.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vpnikeapi.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OnDemandConnRouteHelper.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcsubs.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\snmpapi.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hid.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tbs.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\more.com
2014-11-25 16:51 - 2014-10-29 02:05 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userinit.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfnet.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsparse.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.TimeBroker.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsperf.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schedcli.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PING.EXE
2014-11-25 16:51 - 2014-10-29 02:05 - 00018432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\attrib.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mskeyprotcli.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fltLib.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TimeBrokerClient.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PATHPING.EXE
2014-11-25 16:51 - 2014-10-29 02:05 - 00015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshqos.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mountvol.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TRACERT.EXE
2014-11-25 16:51 - 2014-10-29 02:05 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SystemEventsBrokerClient.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmsgapi.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\finger.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasadhlp.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\whhelper.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_IS2022.DLL
2014-11-25 16:51 - 2014-10-29 02:05 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrssrv.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdBthProxy.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TCPSVCS.EXE
2014-11-25 16:51 - 2014-10-29 02:05 - 00009216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msidle.dll
2014-11-25 16:51 - 2014-10-29 02:05 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\backgroundTaskHost.exe
2014-11-25 16:51 - 2014-10-29 02:05 - 00006144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net1.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ufat.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00097792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mi.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdsapi.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netsh.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\eqossnap.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nslookup.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CallButtons.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uexfat.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnrpnsp.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esentprf.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanman.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\CertEnrollCtrl.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setx.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xcopy.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00043520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\format.com
2014-11-25 16:51 - 2014-10-29 02:04 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\typeperf.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SecEdit.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srumapi.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\deviceassociation.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findstr.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pots.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcmapi.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cacls.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapprovp.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fltMC.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ARP.EXE
2014-11-25 16:51 - 2014-10-29 02:04 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00016384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userinitext.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Register-CimProvider.exe
2014-11-25 16:51 - 2014-10-29 02:04 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smphost.dll
2014-11-25 16:51 - 2014-10-29 02:04 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\HOSTNAME.EXE
2014-11-25 16:51 - 2014-10-29 02:04 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpcsvc.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00968192 _____ (Microsoft Corporation) C:\Windows\system32\certca.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00290304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provthrd.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\TetheringStation.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\LaunchTM.exe
2014-11-25 16:51 - 2014-10-29 02:03 - 00178688 _____ (Microsoft Corporation) C:\Windows\system32\SimCfg.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasman.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimofcodec.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\dwm.exe
2014-11-25 16:51 - 2014-10-29 02:03 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\negoexts.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe
2014-11-25 16:51 - 2014-10-29 02:03 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.exe
2014-11-25 16:51 - 2014-10-29 02:03 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wecapi.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidnsp.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fmifs.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.Fontgroups.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpkinstall.exe
2014-11-25 16:51 - 2014-10-29 02:03 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MirrorDrvCompat.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypttpmeksvc.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XInput1_4.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbrand.dll
2014-11-25 16:51 - 2014-10-29 02:03 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chkdsk.exe
2014-11-25 16:51 - 2014-10-29 02:03 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MRINFO.EXE
2014-11-25 16:51 - 2014-10-29 02:03 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityRtapiPal.dll
2014-11-25 16:51 - 2014-10-29 02:02 - 00513536 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-11-25 16:51 - 2014-10-29 02:02 - 00143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2014-11-25 16:51 - 2014-10-29 02:02 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2014-11-25 16:51 - 2014-10-29 02:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevDispItemProvider.dll
2014-11-25 16:51 - 2014-10-29 02:02 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wecutil.exe
2014-11-25 16:51 - 2014-10-29 02:02 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanext.exe
2014-11-25 16:51 - 2014-10-29 02:02 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winbio.dll
2014-11-25 16:51 - 2014-10-29 02:02 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll
2014-11-25 16:51 - 2014-10-29 02:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2014-11-25 16:51 - 2014-10-29 02:02 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
2014-11-25 16:51 - 2014-10-29 02:02 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininitext.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00383488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00239104 _____ (Microsoft Corporation) C:\Windows\system32\windowslivelogin.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00096256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlgpclnt.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCPKsp.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\keyiso.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TaskSchdPS.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vss_ps.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdProxy.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.ps.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\slpts.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.ps.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Background.ps.dll
2014-11-25 16:51 - 2014-10-29 02:01 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguageProfileCallback.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00355328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Winlangdb.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00147456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\korwbrkr.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.Compression.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\globinputhost.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00108544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\biwinrt.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.HostName.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngcredui.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00088576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinRtTracing.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdi.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vaultcli.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Sockets.PushEnabledApplication.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Custom.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ELSCore.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Background.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\threadpoolwinrt.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\luainstall.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ddrawex.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfctrs.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Printers.Extensions.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Portable.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NETSTAT.EXE
2014-11-25 16:51 - 2014-10-29 02:00 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipconfig.exe
2014-11-25 16:51 - 2014-10-29 02:00 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsjob.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxlegih.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00029184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BackgroundTransferHost.exe
2014-11-25 16:51 - 2014-10-29 02:00 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfmifs.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAgent.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxdm.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elsTrans.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\catsrvps.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Display.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Profile.SystemManufacturers.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\encapi.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\delegatorprovider.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi_passthru.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ROUTE.EXE
2014-11-25 16:51 - 2014-10-29 02:00 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.RemoteDesktop.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlmproxy.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TtlsExt.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityCommonPal.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CallButtons.ProxyStub.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfmifsproxy.dll
2014-11-25 16:51 - 2014-10-29 02:00 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dllhst3g.exe
2014-11-25 16:51 - 2014-10-29 01:59 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmitomi.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmidcom.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ProximityCommon.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comrepl.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\colbact.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prvdmofcomp.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\dot3gpclnt.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappprxy.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pautoenr.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stclient.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\profext.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschapext.dll
2014-11-25 16:51 - 2014-10-29 01:59 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastlsext.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Enumeration.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fundisc.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\NetworkStatus.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\txflog.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.WiFiDirect.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Devices.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingHost.exe
2014-11-25 16:51 - 2014-10-29 01:58 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EAPQEC.DLL
2014-11-25 16:51 - 2014-10-29 01:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbussdapi.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\PSModuleDiscoveryProvider.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimtf.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsdchngr.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\fdPHost.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxshared.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\Startupscan.dll
2014-11-25 16:51 - 2014-10-29 01:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\bootim.exe
2014-11-25 16:51 - 2014-10-29 01:57 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\ndfapi.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00203264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onex.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00192512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mlang.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00124416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtstocom.exe
2014-11-25 16:51 - 2014-10-29 01:57 - 00120832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimAuth.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\wlidfdp.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdSSDP.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmifw.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\NcdAutoSetup.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\ConfigureExpandedStorage.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetmib1.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dataclen.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\datusage.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\ByteCodeGenerator.exe
2014-11-25 16:51 - 2014-10-29 01:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrshost.exe
2014-11-25 16:51 - 2014-10-29 01:57 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\energytask.dll
2014-11-25 16:51 - 2014-10-29 01:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2014-11-25 16:51 - 2014-10-29 01:56 - 00337920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certCredProvider.dll
2014-11-25 16:51 - 2014-10-29 01:56 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll
2014-11-25 16:51 - 2014-10-29 01:56 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2014-11-25 16:51 - 2014-10-29 01:56 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2014-11-25 16:51 - 2014-10-29 01:56 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fwcfg.dll
2014-11-25 16:51 - 2014-10-29 01:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\RDSAppXHelper.dll
2014-11-25 16:51 - 2014-10-29 01:56 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\AepRoam.dll
2014-11-25 16:51 - 2014-10-29 01:56 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll
2014-11-25 16:51 - 2014-10-29 01:56 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xolehlp.dll
2014-11-25 16:51 - 2014-10-29 01:56 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nci.dll
2014-11-25 16:51 - 2014-10-29 01:55 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2014-11-25 16:51 - 2014-10-29 01:55 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll
2014-11-25 16:51 - 2014-10-29 01:55 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2014-11-25 16:51 - 2014-10-29 01:55 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll
2014-11-25 16:51 - 2014-10-29 01:55 - 00162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TtlsAuth.dll
2014-11-25 16:51 - 2014-10-29 01:55 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\profsvcext.dll
2014-11-25 16:51 - 2014-10-29 01:55 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\ConsentUX.dll
2014-11-25 16:51 - 2014-10-29 01:55 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdPnp.dll
2014-11-25 16:51 - 2014-10-29 01:55 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\CheckNetIsolation.exe
2014-11-25 16:51 - 2014-10-29 01:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\RdpSaProxy.exe
2014-11-25 16:51 - 2014-10-29 01:54 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\BioCredProv.dll
2014-11-25 16:51 - 2014-10-29 01:54 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\MbaeApi.dll
2014-11-25 16:51 - 2014-10-29 01:54 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscinterop.dll
2014-11-25 16:51 - 2014-10-29 01:54 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
2014-11-25 16:51 - 2014-10-29 01:54 - 00097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
2014-11-25 16:51 - 2014-10-29 01:54 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\WfHC.dll
2014-11-25 16:51 - 2014-10-29 01:54 - 00077312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DHCPQEC.DLL
2014-11-25 16:51 - 2014-10-29 01:54 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceConnectApi.dll
2014-11-25 16:51 - 2014-10-29 01:54 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\RdpSaUacHelper.exe
2014-11-25 16:51 - 2014-10-29 01:53 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceClassExtension.dll
2014-11-25 16:51 - 2014-10-29 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\AltTab.dll
2014-11-25 16:51 - 2014-10-29 01:53 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdBth.dll
2014-11-25 16:51 - 2014-10-29 01:53 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\WSDPrintProxy.DLL
2014-11-25 16:51 - 2014-10-29 01:53 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2014-11-25 16:51 - 2014-10-29 01:53 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifmon.dll
2014-11-25 16:51 - 2014-10-29 01:52 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWSD.dll
2014-11-25 16:51 - 2014-10-29 01:52 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2014-11-25 16:51 - 2014-10-29 01:52 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrs.exe
2014-11-25 16:51 - 2014-10-29 01:51 - 03317248 _____ (Microsoft Corporation) C:\Windows\system32\bootux.dll
2014-11-25 16:51 - 2014-10-29 01:51 - 00518144 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2014-11-25 16:51 - 2014-10-29 01:51 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\wlancfg.dll
2014-11-25 16:51 - 2014-10-29 01:51 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\DeviceElementSource.dll
2014-11-25 16:51 - 2014-10-29 01:51 - 00095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winrscmd.dll
2014-11-25 16:51 - 2014-10-29 01:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\wpninprc.dll
2014-11-25 16:51 - 2014-10-29 01:51 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndiscapCfg.dll
2014-11-25 16:51 - 2014-10-29 01:50 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2014-11-25 16:51 - 2014-10-29 01:50 - 00182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LaunchTM.exe
2014-11-25 16:51 - 2014-10-29 01:50 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Renewal.dll
2014-11-25 16:51 - 2014-10-29 01:50 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eqossnap.dll
2014-11-25 16:51 - 2014-10-29 01:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnrollCtrl.exe
2014-11-25 16:51 - 2014-10-29 01:49 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SimCfg.dll
2014-11-25 16:51 - 2014-10-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Background.SystemEventsBroker.dll
2014-11-25 16:51 - 2014-10-29 01:48 - 00178176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowslivelogin.dll
2014-11-25 16:51 - 2014-10-29 01:48 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slpts.dll
2014-11-25 16:51 - 2014-10-29 01:47 - 00177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
2014-11-25 16:51 - 2014-10-29 01:47 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3gpclnt.dll
2014-11-25 16:51 - 2014-10-29 01:46 - 00605184 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2014-11-25 16:51 - 2014-10-29 01:46 - 00306176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2014-11-25 16:51 - 2014-10-29 01:46 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidfdp.dll
2014-11-25 16:51 - 2014-10-29 01:46 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.WiFiDirect.dll
2014-11-25 16:51 - 2014-10-29 01:46 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingHost.exe
2014-11-25 16:51 - 2014-10-29 01:46 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ConfigureExpandedStorage.dll
2014-11-25 16:51 - 2014-10-29 01:46 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2014-11-25 16:51 - 2014-10-29 01:46 - 00038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PSModuleDiscoveryProvider.dll
2014-11-25 16:51 - 2014-10-29 01:46 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ByteCodeGenerator.exe
2014-11-25 16:51 - 2014-10-29 01:46 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Startupscan.dll
2014-11-25 16:51 - 2014-10-29 01:45 - 01197568 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll
2014-11-25 16:51 - 2014-10-29 01:45 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndfapi.dll
2014-11-25 16:51 - 2014-10-29 01:45 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstask.dll
2014-11-25 16:51 - 2014-10-29 01:45 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\IdCtrls.dll
2014-11-25 16:51 - 2014-10-29 01:45 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dataclen.dll
2014-11-25 16:51 - 2014-10-29 01:45 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
2014-11-25 16:51 - 2014-10-29 01:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2014-11-25 16:51 - 2014-10-29 01:44 - 00167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll
2014-11-25 16:51 - 2014-10-29 01:44 - 00153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll
2014-11-25 16:51 - 2014-10-29 01:44 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdeploy.dll
2014-11-25 16:51 - 2014-10-29 01:44 - 00024576 _____ (Microsoft Corporation)

(6)
C:\Windows\SysWOW64\CheckNetIsolation.exe
2014-11-25 16:51 - 2014-10-29 01:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSaUacHelper.exe
2014-11-25 16:51 - 2014-10-29 01:44 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RdpSaProxy.exe
2014-11-25 16:51 - 2014-10-29 01:43 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BioCredProv.dll
2014-11-25 16:51 - 2014-10-29 01:43 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceClassExtension.dll
2014-11-25 16:51 - 2014-10-29 01:43 - 00114688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MbaeApi.dll
2014-11-25 16:51 - 2014-10-29 01:43 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WfHC.dll
2014-11-25 16:51 - 2014-10-29 01:43 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2014-11-25 16:51 - 2014-10-29 01:42 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2014-11-25 16:51 - 2014-10-29 01:42 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlancfg.dll
2014-11-25 16:51 - 2014-10-29 01:42 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncPolicy.dll
2014-11-25 16:51 - 2014-10-29 01:41 - 00472064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2014-11-25 16:51 - 2014-10-29 01:40 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\AuthBroker.dll
2014-11-25 16:51 - 2014-10-29 01:37 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcenter.dll
2014-11-25 16:51 - 2014-10-29 01:37 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IdCtrls.dll
2014-11-25 16:51 - 2014-10-29 01:35 - 00234496 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2014-11-25 16:51 - 2014-10-29 01:35 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll
2014-11-25 16:51 - 2014-10-29 01:35 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efswrt.dll
2014-11-25 16:51 - 2014-10-29 01:35 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2014-11-25 16:51 - 2014-10-29 01:35 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncPolicy.dll
2014-11-25 16:51 - 2014-10-29 01:34 - 00104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthBroker.dll
2014-11-25 16:51 - 2014-10-29 01:31 - 00116224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CloudStorageWizard.exe
2014-11-25 16:51 - 2014-10-29 01:30 - 00221696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll
2014-11-25 16:51 - 2014-10-15 09:32 - 00921920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2014-11-25 16:51 - 2014-10-15 09:32 - 00088896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2014-11-25 16:51 - 2014-10-15 09:32 - 00061248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys
2014-11-25 16:51 - 2014-10-13 03:43 - 00153920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2014-11-25 16:51 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2014-11-25 16:51 - 2014-10-13 03:43 - 00039744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2014-11-25 16:51 - 2014-10-12 09:53 - 00054592 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll
2014-11-25 16:51 - 2014-10-11 01:10 - 00389020 _____ () C:\Windows\system32\ApnDatabase.xml
2014-11-25 16:51 - 2014-10-07 07:54 - 00324928 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2014-11-25 16:51 - 2014-10-07 07:54 - 00189248 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS
2014-11-25 16:51 - 2014-10-07 07:54 - 00059712 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys
2014-11-25 16:51 - 2014-10-07 07:54 - 00051008 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys
2014-11-25 16:51 - 2014-10-07 07:44 - 00102208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2014-11-25 16:51 - 2014-10-07 07:44 - 00069952 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpci.sys
2014-11-25 16:51 - 2014-10-07 04:30 - 00026112 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys
2014-11-25 16:51 - 2014-10-07 04:29 - 00107520 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys
2014-11-25 16:51 - 2014-10-07 04:29 - 00032256 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2014-11-25 16:51 - 2014-10-07 04:29 - 00030208 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys
2014-11-25 16:51 - 2014-08-08 17:55 - 00172344 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_8086.dll
2014-11-25 16:47 - 2014-10-31 05:50 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe
2014-11-25 16:47 - 2014-10-31 04:30 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll
2014-11-25 16:47 - 2014-10-31 04:23 - 00733696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2014-11-25 16:47 - 2014-10-31 04:22 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll
2014-11-25 16:47 - 2014-10-31 04:18 - 04840960 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2014-11-25 16:47 - 2014-10-31 04:18 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-11-25 16:47 - 2014-10-31 04:09 - 01154048 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2014-11-25 16:47 - 2014-10-31 03:12 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll
2014-11-25 16:47 - 2014-10-31 03:06 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-11-25 16:22 - 2014-11-25 16:22 - 00000000 ____D () C:\Windows\Tasks\ImCleanDisabled
2014-11-25 13:25 - 2014-11-25 13:25 - 01169232 _____ () C:\Users\hannibla34\Downloads\Process Explorer - CHIP-Installer.exe
2014-11-24 19:26 - 2014-12-01 15:43 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-24 19:26 - 2014-11-25 20:43 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-23 18:11 - 2014-11-23 18:11 - 00058841 _____ () C:\Users\hannibla34\Downloads\FRST Farbar s Security scan vom 24.11.14.txt
2014-11-23 18:06 - 2014-11-23 18:06 - 00001058 _____ () C:\Users\hannibla34\Documents\security check checkup.txt
2014-11-23 18:05 - 2014-11-23 18:05 - 00854414 _____ () C:\Users\hannibla34\Downloads\SecurityCheck.exe
2014-11-23 16:27 - 2014-11-23 16:27 - 00000617 _____ () C:\Users\hannibla34\Downloads\Eset Online Scan vom 24.11.2014
2014-11-22 17:50 - 2014-11-22 17:50 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\22083245.sys
2014-11-22 16:04 - 2014-11-22 16:04 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything
2014-11-22 15:51 - 2014-11-22 15:51 - 00058053 _____ () C:\Users\hannibla34\Downloads\22.11.14 Frabar s RecoverScan Tool. txt.txt
2014-11-22 15:25 - 2014-11-22 15:25 - 02140160 _____ () C:\Users\hannibla34\Downloads\adwcleaner_4.101.exe
2014-11-22 15:17 - 2014-11-22 16:12 - 00001608 _____ () C:\Users\hannibla34\Downloads\junkware Rmoval tool vom 222.11.14JRT.txt
2014-11-22 15:09 - 2014-11-22 15:09 - 01707532 _____ (Thisisu) C:\Users\hannibla34\Downloads\JRT_6.3.9.exe
2014-11-22 15:09 - 2014-11-22 15:09 - 00000000 ____D () C:\Windows\ERUNT
2014-11-21 19:43 - 2014-11-21 19:43 - 00000000 ____D () C:\NVIDIA Corporation
2014-11-21 11:23 - 2014-11-21 11:23 - 00180434 _____ () C:\Users\hannibla34\Downloads\21.11.2014 OTL.Txt
2014-11-20 15:29 - 2014-11-20 15:29 - 00031924 _____ () C:\Users\hannibla34\Downloads\Farbor Scan Addition txt Addition.txt
2014-11-20 15:24 - 2014-11-20 15:24 - 00057675 _____ () C:\Users\hannibla34\Downloads\Farbor Scan 19.11.2014FRST.txt
2014-11-20 15:16 - 2014-11-22 15:54 - 00030942 _____ () C:\Users\hannibla34\Downloads\Addition.txt
2014-11-20 00:11 - 2014-11-20 00:11 - 00000000 _____ () C:\Users\hannibla34\defogger_reenable
2014-11-19 18:56 - 2014-10-30 12:25 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-19 18:55 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 18:55 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 18:55 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 18:55 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-19 17:15 - 2014-11-19 17:15 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\ESET
2014-11-19 17:15 - 2014-11-19 17:15 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\ESET
2014-11-19 16:36 - 2014-11-19 16:36 - 00182422 _____ () C:\Users\hannibla34\Downloads\19.11.2014 OTL.Txt
2014-11-19 16:19 - 2014-11-21 19:43 - 00001400 _____ () C:\Users\hannibla34\Downloads\Eset Online Scan vom 19.11.2014
2014-11-18 20:32 - 2014-11-18 20:32 - 00000000 __SHD () C:\Users\hannibla34\AppData\Local\EmieBrowserModeList
2014-11-18 13:09 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\2284.tmp
2014-11-18 13:06 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\ADF9.tmp
2014-11-17 16:27 - 2014-11-17 16:27 - 00178666 _____ () C:\Users\hannibla34\Downloads\OTL 17.11.2014.txt
2014-11-16 23:40 - 2014-11-16 23:40 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-11-16 23:39 - 2014-11-16 23:39 - 01125200 _____ () C:\Users\hannibla34\Downloads\Malwarebytes Anti Malware Malware Scanner - CHIP-Installer.exe
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Abelssoft
2014-11-16 23:39 - 2014-11-16 23:39 - 00000000 ____D () C:\ProgramData\XDMessagingv4
2014-11-16 18:26 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\CC15.tmp
2014-11-16 18:23 - 2009-06-18 12:54 - 00006144 ____N (Sophos Plc) C:\Windows\system32\6385.tmp
2014-11-16 18:22 - 2014-11-16 18:22 - 01125200 _____ () C:\Users\hannibla34\Downloads\Sophos Anti Rootkit - CHIP-Installer.exe
2014-11-12 17:52 - 2014-10-31 06:28 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 17:52 - 2014-10-31 04:42 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 17:52 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2014-11-12 17:52 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2014-11-12 17:52 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2014-11-12 17:52 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2014-11-12 17:52 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2014-11-12 17:51 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-11-12 17:51 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-11-12 17:51 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-11-12 17:51 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-11-12 17:51 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-11-12 17:51 - 2014-10-31 06:06 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-11-12 17:51 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-11-12 17:51 - 2014-10-31 06:05 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 17:51 - 2014-10-31 06:05 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-11-12 17:51 - 2014-10-31 06:04 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-11-12 17:51 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 17:51 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-11-12 17:51 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-11-12 17:51 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 17:51 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll
2014-11-12 17:51 - 2014-10-31 05:51 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-11-12 17:51 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 17:51 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-11-12 17:51 - 2014-10-31 05:50 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 17:51 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-11-12 17:51 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-11-12 17:51 - 2014-10-31 05:38 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 17:51 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-11-12 17:51 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-11-12 17:51 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-11-12 17:51 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-11-12 17:51 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-11-12 17:51 - 2014-10-31 05:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 17:51 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-11-12 17:51 - 2014-10-31 05:23 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-11-12 17:51 - 2014-10-31 05:21 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 17:51 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-11-12 17:51 - 2014-10-31 05:15 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-11-12 17:51 - 2014-10-31 05:08 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-11-12 17:51 - 2014-10-31 05:06 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-11-12 17:51 - 2014-10-31 05:05 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 17:51 - 2014-10-31 05:05 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-11-12 17:51 - 2014-10-31 05:03 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 17:51 - 2014-10-31 04:59 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 17:51 - 2014-10-31 04:45 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 17:51 - 2014-10-31 04:44 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2014-11-12 17:51 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-11-12 17:51 - 2014-10-31 04:32 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 17:51 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-11-12 17:51 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-11-12 17:51 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-11-12 17:51 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-11-12 17:51 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-11-12 17:51 - 2014-10-31 04:24 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 17:51 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-11-12 17:51 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-11-12 17:51 - 2014-10-31 04:23 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-11-12 17:51 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-11-12 17:51 - 2014-10-31 04:22 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-11-12 17:51 - 2014-10-31 04:20 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-11-12 17:51 - 2014-10-31 04:18 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 17:51 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 17:51 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-11-12 17:51 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-11-12 17:51 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 17:51 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll
2014-11-12 17:51 - 2014-10-31 04:12 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-11-12 17:51 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 17:51 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-11-12 17:51 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-11-12 17:51 - 2014-10-31 04:02 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 17:51 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-11-12 17:51 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-11-12 17:51 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-11-12 17:51 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-11-12 17:51 - 2014-10-31 03:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 17:51 - 2014-10-31 03:51 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-11-12 17:51 - 2014-10-31 03:50 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 17:51 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-11-12 17:51 - 2014-10-31 03:46 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 17:51 - 2014-10-31 03:46 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-11-12 17:51 - 2014-10-31 03:42 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-11-12 17:51 - 2014-10-31 03:40 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 17:51 - 2014-10-31 03:40 - 00325632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-11-12 17:51 - 2014-10-31 03:39 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 17:51 - 2014-10-31 03:30 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 17:51 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2014-11-12 17:51 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-11-12 17:51 - 2014-10-31 03:17 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 17:51 - 2014-10-31 03:13 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 17:51 - 2014-10-31 03:11 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-11-12 17:50 - 2014-11-05 00:38 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-12 17:50 - 2014-11-04 01:10 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-12 17:50 - 2014-10-31 05:53 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-11-12 17:50 - 2014-10-31 05:49 - 00537088 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-12 17:50 - 2014-10-31 05:24 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-11-12 17:50 - 2014-10-07 04:30 - 04182016 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 17:50 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-11-12 17:50 - 2014-08-31 01:17 - 00148800 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2014-11-12 13:15 - 2014-11-12 13:16 - 141165145 _____ () C:\Users\hannibla34\Downloads\Rot-rot-grün - heute Erfurt, morgenBerlin 141023_phx_runde_414k_p20v9.mp4
2014-11-12 13:11 - 2014-11-12 13:13 - 141184159 _____ () C:\Users\hannibla34\Downloads\Steuertricks in Luxemburg -Junkers unter Druck 141111_phx_runde_414k_p20v9.mp4
2014-11-11 16:21 - 2014-11-15 14:18 - 00000000 ____D () C:\Users\hannibla34\Downloads\Sicherheit im Internet- Onlinekurs des hasso-Plattner-Instituts
2014-11-10 17:24 - 2014-11-10 17:24 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\WindowsAppBoss
2014-11-10 16:40 - 2014-11-10 16:40 - 00988339 _____ () C:\Users\hannibla34\Downloads\Everything-1.3.4.686.x64.Multilingual-Setup.exe
2014-11-10 16:30 - 2014-11-22 16:41 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Everything
2014-11-10 16:30 - 2014-11-22 16:04 - 00000000 ____D () C:\Program Files\Everything
2014-11-09 13:45 - 2014-11-29 14:15 - 00002782 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-11-08 21:08 - 2014-11-08 21:11 - 168401304 _____ () C:\Users\hannibla34\Downloads\Die Würde ist antastbar.wma
2014-11-08 15:23 - 2014-11-18 17:21 - 00072640 _____ () C:\Users\hannibla34\Documents\Malware.odt
2014-11-08 00:43 - 2014-11-08 00:48 - 212653971 _____ () C:\Users\hannibla34\Downloads\Suizid im alter 141106_sendung_suizid_scobel_446k_p20v11.mp4
2014-11-08 00:43 - 2014-11-08 00:47 - 218337076 _____ () C:\Users\hannibla34\Downloads\Bewusst essen Scobel 141023_ganze_sendung_scobel_446k_p20v11.mp4
2014-11-07 18:43 - 2014-11-07 18:43 - 14592501 _____ () C:\Users\hannibla34\Downloads\s und f 480_800_hmxUZ-G195-.mp4
2014-11-07 18:32 - 2014-11-07 18:38 - 00000000 ____D () C:\Users\hannibla34\Downloads\Tarifverträge für Tiermedizinishce Fachangestellte

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-12-01 15:29 - 2014-10-16 17:26 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-903397656-3433550281-814490945-1002
2014-12-01 15:25 - 2014-01-09 10:06 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-01 15:25 - 2013-09-13 21:22 - 00763218 _____ () C:\Windows\system32\perfh007.dat
2014-12-01 15:25 - 2013-09-13 21:22 - 00159364 _____ () C:\Windows\system32\perfc007.dat
2014-12-01 15:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2014-12-01 13:23 - 2014-05-19 03:05 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\TV-Browser
2014-12-01 13:19 - 2014-01-15 13:59 - 00000025 ___SH () C:\Windows\SysWOW64\ReadTag.ini
2014-12-01 13:19 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-01 13:19 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-12-01 13:11 - 2014-05-15 03:11 - 00000841 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-12-01 13:11 - 2014-05-15 03:11 - 00000000 ____D () C:\Program Files\CCleaner
2014-12-01 12:49 - 2014-05-14 21:43 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{08EFB189-B037-4AB9-A7C2-4ACFAED22B82}
2014-11-30 01:18 - 2014-10-28 19:04 - 00000000 ____D () C:\Users\hannibla34\Downloads\Das Internet - Netz der Neze
2014-11-29 23:18 - 2014-06-09 00:40 - 00000000 ____D () C:\Windows\CryptoGuard
2014-11-29 12:31 - 2014-05-16 02:36 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2014-11-28 17:17 - 2014-06-14 18:34 - 03469312 ___SH () C:\Users\hannibla34\Downloads\Thumbs.db
2014-11-28 16:12 - 2014-05-14 21:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-28 14:09 - 2014-10-30 16:40 - 00000000 ____D () C:\Users\hannibla34\Documents\My Digital Editions
2014-11-27 17:16 - 2014-05-16 04:10 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\vlc
2014-11-27 17:10 - 2014-05-21 19:44 - 00000000 ____D () C:\Users\hannibla34\dwhelper
2014-11-27 02:22 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-11-25 23:30 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-11-25 18:07 - 2014-05-15 02:19 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-11-25 17:07 - 2013-08-22 15:44 - 00481072 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-25 17:04 - 2013-08-22 20:11 - 00000000 ____D () C:\Program Files\Windows Journal
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\sppui
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\migwiz
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\Com
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Multimedia Platform
2014-11-25 17:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2014-11-25 17:04 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2014-11-25 17:04 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-11-25 17:04 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\servicing
2014-11-25 17:03 - 2013-08-22 16:36 - 00000000 ___SD () C:\Windows\system32\dsc
2014-11-25 17:03 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2014-11-25 17:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\WinBioPlugIns
2014-11-25 17:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform
2014-11-25 17:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sppui
2014-11-25 17:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup
2014-11-25 17:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\migwiz
2014-11-25 17:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Com
2014-11-25 17:03 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\IME
2014-11-25 17:03 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Sysprep
2014-11-25 17:03 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe
2014-11-25 17:03 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Dism
2014-11-25 17:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\WindowsPowerShell
2014-11-25 17:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Portable Devices
2014-11-25 17:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2014-11-25 17:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Multimedia Platform
2014-11-25 16:58 - 2013-08-22 16:36 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2014-11-25 16:58 - 2013-08-22 16:36 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2014-11-25 16:37 - 2014-05-19 17:42 - 00000000 ____D () C:\Program Files (x86)\MozBackup
2014-11-25 13:36 - 2014-05-16 05:15 - 00001105 _____ () C:\Users\Public\Desktop\System Explorer.lnk
2014-11-25 13:36 - 2014-05-16 05:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Explorer
2014-11-25 13:36 - 2014-05-16 05:15 - 00000000 ____D () C:\Program Files (x86)\System Explorer
2014-11-25 13:35 - 2014-08-30 14:16 - 01169232 _____ () C:\Users\hannibla34\Downloads\System Explorer - CHIP-Installer.exe
2014-11-24 19:26 - 2014-09-06 17:58 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Adobe
2014-11-23 20:07 - 2014-05-16 05:15 - 00000000 ____D () C:\ProgramData\SystemExplorer
2014-11-22 15:46 - 2014-06-09 14:30 - 00000000 ____D () C:\AdwCleaner
2014-11-22 12:42 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-11-21 23:52 - 2014-05-20 22:25 - 00000100 _____ () C:\index.ini
2014-11-21 23:51 - 2014-05-20 22:23 - 00000000 ____D () C:\EEK
2014-11-20 21:51 - 2013-08-22 16:38 - 00714208 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-20 21:51 - 2013-08-22 16:38 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-20 00:11 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34
2014-11-19 17:58 - 2014-05-16 03:59 - 00000000 ___RD () C:\Users\hannibla34\Documents\Eigene Dateien
2014-11-17 15:11 - 2013-08-22 20:11 - 00000000 ____D () C:\Windows\SKB
2014-11-17 00:47 - 2014-01-15 13:55 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS
2014-11-17 00:47 - 2014-01-09 10:02 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-12 17:57 - 2014-07-09 20:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-11-12 17:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-11-12 17:55 - 2014-05-15 01:57 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-12 17:52 - 2014-05-15 01:57 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-10 17:32 - 2014-10-19 23:30 - 00015223 _____ () C:\Users\hannibla34\Documents\nachforschen.odt
2014-11-10 17:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2014-11-10 17:08 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Packages
2014-11-10 17:01 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\ASUS

Some content of TEMP:
====================
C:\Users\hannibla34\AppData\Local\Temp\avgnt.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-01 15:29

==================== End Of Log ============================

Hallo Schrauber,

so einfach ist das ganze wohl doch nicht.

nach einem Neustart von Windows kann ich nicht mehr auf den Task-Manager zurückgreifen.

Es erscheint die Meldung:

Möchten Sie zulassen, dass durch das folgende Programm Änderungen vorgenommen werden?

Programmname : Taskmanager
Programmpfad: Windows\system32\taskmgr.exe

Ich werde aufgefordert, mein Administratorenkennwort einzugeben und mit einer Bestätigung den Vorgang fortzusetzen. Das kann ich nicht einordnen.

Der Neustart hat schön seltsam lange gedauert und die bekannten Symptome, wie Blinken der Menüleiste sind auch wieder da.

Vielleicht kannst du mir helfen.

Grüße

krautsand

schrauber 02.12.2014 17:42

Ich hätte ja en Avira-Müll samt hauseigener ADware nicht mehr installiert ;)

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

FF Extension: Cliqz Beta - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\cliqz@cliqz.com.xpi [2014-12-01]

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.


krautsand 03.12.2014 13:59

Hallo Schrauber,

ich hoffe, dass ich es richtig gemacht habe.

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-12-2014
Ran by hannibla34 at 2014-12-03 13:54:35 Run:1
Running from C:\Users\hannibla34\Downloads
Loaded Profile: hannibla34 (Available profiles: hannibla34)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
FF Extension: Cliqz Beta - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\cliqz@cliqz.com.xpi [2014-12-01]

*****************

C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\cliqz@cliqz.com.xpi => Moved successfully.

==== End of Fixlog ====

schrauber 04.12.2014 09:52

Noch Probleme?

krautsand 04.12.2014 18:48

Hallo Schrauber,

Das Bereinigen mit UsbFix war nur bis zum nächsten Einschalten des Rechners wirksam.
Nach dem Hochfahren liefen wieder 75 Prozesse laut Task_Manager.

FF verbraucht 3 mal soviel Arbeitsspeicher wie dieBitBox.

ASHookDevice for USB Lock benötigt nach Stunden während der Rechner läuft bis zu 500% mehr. Wenn dies der Fall ist auch die Eingabe von Buchstaben über die Tastatur kaum noch möglich und die Menüleisten von FF auch von BitBox blinken dauernd. Die einzige Möglichkei,t den Verbrauch von Arbeitsspeicher von AS HookDevice for USB Lock wider zu stutzen ist eine Bereinigung mit OTL. Danach steigt es wieder kontinuierlich an. Auch UsbFix erkennt jetzt keine Bedrohungen mehr.

Grüße

krautsand


Auch UsbFix erkennt jetzt nichts mehr.

schrauber 05.12.2014 16:44

was für eine Bereinigung mit OTL?

krautsand 08.12.2014 23:55

Hallo Schrauber,

mit OTL meine ich Oldtimers List, das auch ein Bereinigungstool enthält.

Grüße

krautsand

schrauber 09.12.2014 16:32

Ich kenne OTL. Ich will wissen was Du damit machst.

krautsand 09.12.2014 23:53

ich führe den Scan durch und gehe dann auf Bereinigung, mehr nicht.

Grüße

krautsand

schrauber 10.12.2014 19:11

Du machst also gar nix :)

OTL Bereinigung entfernt nur OTL und andere verwendete Tools, dabei werden alle Prozesse, inklusive Explorer.exe einmal angehalten und neu gestartet. Deswegen denkst du vielleicht das hilft.

krautsand 10.12.2014 23:25

Hallo Schrauber,

die Bereinigung mit OTL ist für mich das einzige wirksame Mittel, den ständig zunehmenden Verbrauch des Prozesses AsHookDevice for Usb Lock an Arbeitsspeicher von Zeit zu Zeit wieder zurückzunehmen.

Solange der Rechner läuft nimmt der Prozess langsam aber stetig zu. Der Verbrauch des Arbeitsspeicher nimmt dadurch auch mehr und mehr zu. Fahre ich den Rechner runter und starte ihn am nächsten Tag neu, setzt sich das fort, vom Niveau des Vortages ausgehend. Nach einigen Tagen gibt es Probleme mit dem Browser, er öffnet sich ruckelig, die Menüleiste blinkt dauernd, ständig scheint sich etwas herunterladen zu wollen, die Arbeit mit der Tastatur wird mühselig.

Dann "bereinige" ich und habe für einige Zeit Ruhe. Sonst könnte ich jetzt wahrscheinlich gar nicht mehr mit dem Rechner arbeiten.

Grüße

karautsand

schrauber 11.12.2014 20:16

Ich hab ja oben erklärt was OTL macht. das ist ja nit wirklich hilfreich.

Schau mal ob Du mit Process Explorer mehr Info findest über den Prozess.


ProcessExplorer als Ersatz für den Windows Taskmanager installieren

Lade Dir den Process Explorer als Ersatz für den Taskmanager herunter und installiere ihn, hier findest Du eine Anleitung. Das ist ein wesentlich leistungsfähigerer Ersatz für den Windows-Taskmanager. Im Menü unter "Options" kannst Du den ProcessExplorer dauerhaft als Ersatz für den Taskmanager einrichten (Replace Taskmanager). Das ist sehr empfehlenswert, weil der ProcessExplorer erheblich mehr Funktionen als der Taskmanager hat. Wenn Du diese Einstellung gemacht hast, öffnet sich mit der Tastenkombination STRG + ALT + Entf. nicht mehr der Taskmanager, sondern der ProcessExplorer. Das kann jederzeit durch Abhaken dieser Einstellung wieder rückgängig gemacht werden.

Was wir jetzt konkret brauchen: In jeder Zeile steht ein Prozess, ein paar der Zeilen sind keine richtigen Prozesse, sondern nur Pseudoprozesse für die Tätigkeit des Windos-Kernels. Im Menü View => Select Columns wird ein Dialog geöffnet, in dem Du auswählen kannst, welche Spalten mit Informationen zu den Prozessen angezeigt werden sollen. In dem gehe in das Register "Process Performance" und stelle sicher, dass dort "CPU Usage" angehakt ist, "CPU History" wäre ebenfalls sinnvoll. Unter "CPU Usage" wird der aktuelle Wert der Prozessorauslastung für jeden Prozess angezeigt (im Tabellentitel steht nur kurz "CPU"), "CPU History" blendet für jeden Prozess ein Diagramm ein, das eine Kurve mit der Prozessorauslastung für die letzte Zeit anzeigt.

Damit sollte es Dir möglich sein, zu identifizieren, welcher Prozess Deine CPU in Trab hält. Mache einen Doppelklick auf den Prozess. Du kannst von dem ganzen auch einen Screenshot machen und ihn als Anhang mit Deiner Antwort hochladen (auf "Erweitert" unter dem Textfeld klicken und über "Anhänge verwalten" auf Deinem Rechner suchen lassen und über "Hochladen" anhängen).

krautsand 21.12.2014 14:23

Liste der Anhänge anzeigen (Anzahl: 2)
Hallo Schrauber,

den ExpressExplorer habe ich heruntergeladen. Darin konnte ich erkennen, wie der Prozess AsHookDevice.exe im Laufe einer Woche immer mehr Private Bytes benötigt. Sonst habe ich nichts am Rechner verändert, außer dass ich ein Windows Update und zwei Adobe Updates heruntergeladen habe. Möglicherweise deshalb ist alles relativ stabil geblieben, erst jetzt merke ich, dass der Rechner langsamer wird.

Grüße

krautsand

schrauber 22.12.2014 13:17

Hast Du irgend ne ASUS Manager SOftware installiert?

krautsand 22.12.2014 14:21

Hallo Schrauber,

ja, das war schon vorinstalliert, ich hatte es noch nicht gelöscht. Laut "Programme und Features" in der Systemsteuerung sind installiert: Asus Launcher, Asus
Manager, Asus Manager -Ai Booting, Asus Manager - Power Manager, Asus Manager - Recovery, Asus Manager - Update, Asus Manager Usb-Lock.

Grüße

krautsand

schrauber 23.12.2014 11:58

Manager Sachen deinstallieren und neu installieren.

krautsand 23.12.2014 18:42

Liste der Anhänge anzeigen (Anzahl: 2)
Hallo Schrauber,

ich habe alles von ASUS deinstalliert und nicht neu installiert, der Rechner läuft ja auch so.ASHkService exe ist aber nach wie vor aktiv. Bei einem Doppelklick auf diesen Prozess sind jetzt auch, im Gegensatz zu früher, Informationen verfügbar.

Firefox öffnet sich jetzt schneller und ruckelt nicht mehr so und verbraucht auch nicht mehr ganz so viel Prozessorleistung. Dennoch blinkt nach wie vor die Statusleiste.

Ich füge noch zwei Anhge bei.

Grüße

krautsand

schrauber 24.12.2014 17:49

Komisch, sollte nur laufen wenn Asus Software läuft.

krautsand 24.12.2014 21:30

hallo Schrauber,

ich habe gestern die ASUS-Programme mit Revo Uninstaller gelöscht, dennoch hab ich heute unter Programme x86 noch einen ASUS Ordner entdeckt. Zwei Unterordner konnten nicht

gelöscht werden:

ASUS-Manager (Die Aktion kann nicht abgeschlossen werden, da die Datei in Tool to handle application key geöffnet ist.) In diesem Ordner befindet sich der Unterordner AsHKService

AXSP

Frohe Weihnachten

krautsand

schrauber 25.12.2014 16:53

Zitat:

ASUS-Manager (Die Aktion kann nicht abgeschlossen werden, da die Datei in Tool to handle application key geöffnet ist.) In diesem Ordner befindet sich der Unterordner AsHKService
Schiess mal den Prozess komplett ab, dann sollte der Ordner löschbar sein.

krautsand 26.12.2014 14:05

Hallo Schrauber,

das habe ich gemacht. Trotzdem bestehen weiter hin beide Unterordner und sind nicht löschbar. Der Ordner ASUS-Managerist aber leer,den Unterordner AsHKService gibt es nicht mehr.

Dann gibt es noch AXSP. Der Unterordner C:\Program Files (x86)\ASUS\AXSP\1.00.19 enthält zwei dll-Dateien: C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll und C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll und eine Anwendungsdatei C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe.

All dies lässt sich nicht löschen.

Grüße

krautsand

krautsand 26.12.2014 17:34

Liste der Anhänge anzeigen (Anzahl: 1)
Jetzt habe ich im Process Explorer den Prozess atexComSvc.exe entdeckt. Erlässt sich nicht killen.

Grüße

krautsand

schrauber 27.12.2014 13:18

Dann jetzt anders rum. Versuch einfach mal auf der ASUS Seite diese ganze Software zu laden und neu drüber zu installieren. Ansonsten bleibt nur ASUS Support.

krautsand 04.01.2015 19:09

hallo Schrauber,

an dieser Stelle erst mal vielen Dank für die Hilfe bisher und ein gutes Neues Jahr.

Den Rest der ASUS Software konnte ich im abgesicherten Modus löschen. Ein Scan mit Malbarebytes hat dann auch was zu Tage gefördert.

Im Großen und Ganzen hat sich aber nicht viele verändert. Firefox startet nicht mehr so ruckelig und öffnet sich schneller, aber die Menüleiste blinkt nach wie vor und an der Maus ist immer Wieder der Ladekreis für ganz kurze Zeit zu sehen.

Ich habe Avira gelöscht und bin auf avast umgestiegen.

Einige Merkwürdigkeiten in der Registry sind mir aufgefallen:

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3E4D4F1C-2AEE-11D1-9D3D-00C04FC30DF6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{435899C9-44AB-11D1-AF00-080036234103}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4F664F91-FF01-11D0-8AED-00C04FD7B597}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{65303443-AD66-11D1-9D65-00C04FC30DF6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{760C4B83-E211-11D2-BF3E-00805FBE84A6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{884e2049-217d-11da-b2a4-000e7bbb2b09}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{884e2051-217d-11da-b2a4-000e7bbb2b09}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{92337A8C-E11D-11D0-BE48-00C04FC30DF6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A9FC132B-096D-460B-B7D5-1DB0FAE0C062}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C3701884-B39B-11D1-9D68-00C04FC30DF6}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D2517915-48CE-4286-970F-921E881B8C5C}

Keiner dieser Einträge lässt sich löschen.

Die Einträge:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.ASX
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AU

habe ich gelöscht, sind aber bei jedem Neustart wieder da.

Ich füge nach ein FRST Scan bei:
FRST Logfile:
Code:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-01-2015
Ran by hannibla34 (administrator) on WO on 04-01-2015 18:48:49
Running from C:\Users\hannibla34\Downloads
Loaded Profile: hannibla34 (Available profiles: hannibla34)
Platform: Windows 8.1 (X64) OS Language: Englisch (Vereinigte Staaten)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Sirrix AG) C:\Program Files (x86)\Sirrix AG\BitBox\bin\BitBoxService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Sysinternals - Windows Sysinternals: Documentation, downloads and additional resources) C:\Users\hannibla34\Downloads\ProcessExplorer\procexp.exe
(Sysinternals - Windows Sysinternals: Documentation, downloads and additional resources) C:\Users\hannibla34\AppData\Local\Temp\procexp64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_235.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\swriter.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.exe
(The Document Foundation) C:\Program Files (x86)\LibreOffice 4\program\soffice.bin
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7199448 2013-09-05] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-30] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Everything] => C:\Program Files\Everything\Everything.exe [1441792 2014-08-06] ()
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2015-01-01] (AVAST Software)
HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7394584 2014-12-12] (Piriform Ltd)
Startup: C:\Users\hannibla34\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk
ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Google
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = Google
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = Google
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = Google
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = Google
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = Google
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-903397656-3433550281-814490945-1002 -> {F7FA0E18-88F4-47FD-97EF-19FE83C440CC} URL = https://de.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-903397656-3433550281-814490945-1002: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npPDFXCviewNPPlugin.dll (Tracker Software Products (Canada) Ltd.)
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\google-maps.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\leo-en-de-ssl.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\metager.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\wikipedia-en-ssl.xml
FF SearchPlugin: C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\searchplugins\wikipedia-ssl-de.xml
FF Extension: German Dictionary - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\de-DE@dictionaries.addons.mozilla.org [2014-11-28]
FF Extension: FoxyProxy Standard - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\foxyproxy@eric.h.jung [2014-12-27]
FF Extension: EPUBReader - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F} [2014-12-04]
FF Extension: DownloadHelper - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-11-28]
FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\elemhidehelper@adblockplus.org.xpi [2014-12-12]
FF Extension: SQLite Manager - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\SQLiteManager@mrinalkant.blogspot.com.xpi [2014-11-29]
FF Extension: ImTranslator - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2014-12-17]
FF Extension: Adblock Plus - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-11-28]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-01-01]
FF HKU\S-1-5-21-903397656-3433550281-814490945-1002\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\hannibla34\AppData\Roaming\Mozilla\Firefox\Profiles\4crqy0rm.default-1417187599100\extensions\cliqz@cliqz.com

Chrome:
=======
CHR Profile: C:\Users\hannibla34\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-01]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-01] (AVAST Software)
R2 BitBoxService; C:\Program Files (x86)\Sirrix AG\BitBox\bin\BitBoxService.exe [738304 2014-08-04] (Sirrix AG) [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-19] (Intel Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R3 AiChargerDT; C:\Windows\SysWow64\drivers\AiChargerDT.sys [14880 2012-10-18] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-01] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2015-01-01] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-01] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-01] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-01] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-01] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-01] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-01] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-23] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131608 2014-10-23] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2014-10-23] (Avira Operations GmbH & Co. KG)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 cpuz137; C:\Users\hannibla34\Downloads\pc-wizard_2014.2.13\pcwiz_x64.sys [26856 2014-12-29] (CPUID)
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d64x64.sys [469264 2013-06-26] (Intel Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-19] (Intel Corporation)
S3 MEMSWEEP2; C:\Windows\system32\2284.tmp [6144 2009-06-18] (Sophos Plc) [File not signed]
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
S1 A2DDA; \??\C:\EEK\RUN\a2ddax64.sys [X]
S3 cleanhlp; \??\C:\EEK\Run\cleanhlp64.sys [X]
S3 cpuz136; \??\C:\Program Files (x86)\CPUID\PC Wizard 2013\pcwiz_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-04 18:48 - 2015-01-04 18:48 - 00016868 _____ () C:\Users\hannibla34\Downloads\FRST.txt
2015-01-04 18:48 - 2015-01-04 18:48 - 00000000 ____D () C:\FRST
2015-01-04 18:47 - 2015-01-04 18:47 - 02123776 _____ (Farbar) C:\Users\hannibla34\Downloads\FRST64.exe
2015-01-04 18:41 - 2015-01-04 18:41 - 00000093 ____H () C:\Users\hannibla34\Documents\.~lock.Malware.odt#
2015-01-04 18:13 - 2015-01-04 18:13 - 00148836 _____ () C:\Users\hannibla34\Downloads\OTL vom 04.01.2015.Txt
2015-01-02 14:33 - 2015-01-02 14:34 - 01188194 _____ () C:\Users\hannibla34\Downloads\ProcessExplorer.zip
2015-01-02 13:29 - 2015-01-02 13:29 - 00012455 _____ () C:\Users\hannibla34\Documents\buchplus web - bildungsverlag1.odt
2015-01-01 16:21 - 2015-01-01 18:35 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-01-01 16:21 - 2015-01-01 16:21 - 00001987 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-01-01 16:21 - 2015-01-01 16:21 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\AVAST Software
2015-01-01 16:21 - 2015-01-01 16:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-01-01 16:10 - 2015-01-04 18:33 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-01 16:10 - 2015-01-04 17:25 - 00001124 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-01-01 16:10 - 2015-01-01 16:20 - 00004096 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-01-01 16:10 - 2015-01-01 16:20 - 00003860 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-01-01 16:09 - 2015-01-01 16:21 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2015-01-01 16:09 - 2015-01-01 16:09 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2015-01-01 16:09 - 2015-01-01 16:09 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2015-01-01 16:09 - 2015-01-01 16:09 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-01-01 16:09 - 2015-01-01 16:09 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2015-01-01 16:09 - 2015-01-01 16:09 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2015-01-01 16:09 - 2015-01-01 16:09 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-01-01 16:09 - 2015-01-01 16:09 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-01-01 16:09 - 2015-01-01 16:09 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2015-01-01 16:09 - 2015-01-01 16:09 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-01-01 16:07 - 2015-01-01 16:07 - 00000000 ____D () C:\Program Files\AVAST Software
2015-01-01 16:05 - 2015-01-01 16:07 - 00000000 ____D () C:\ProgramData\AVAST Software
2015-01-01 15:35 - 2015-01-01 15:35 - 00000521 _____ () C:\Users\hannibla34\Downloads\ESET online scan vom 01.01.2015
2015-01-01 13:37 - 2015-01-01 13:37 - 00001583 _____ () C:\Users\hannibla34\Downloads\URLLink.acsm
2014-12-31 16:53 - 2014-12-31 16:53 - 03989560 _____ (El Desaparecido - SosVirus.net - UsbFix.net) C:\Users\hannibla34\Downloads\UsbFix-7.807.exe
2014-12-31 15:30 - 2014-12-31 15:30 - 21181077 _____ () C:\Users\hannibla34\Downloads\BeefCakeHunter Worshipping a New Yorker straight dude part 1 480_800_hIAJ9-G895-
2014-12-31 13:57 - 2014-12-31 13:57 - 01707939 _____ (Thisisu) C:\Users\hannibla34\Downloads\JRT.exe
2014-12-31 13:44 - 2014-12-31 13:44 - 00001481 _____ () C:\Users\hannibla34\Downloads\AdwCleaner[S4] Scan mit löschen vom 31.12.2014
2014-12-30 18:45 - 2014-12-30 18:45 - 00000049 _____ () C:\Users\hannibla34\Downloads\malewarebytes.txt
2014-12-29 20:42 - 2015-01-04 18:45 - 00017920 ___SH () C:\Users\hannibla34\Documents\Thumbs.db
2014-12-27 14:22 - 2014-12-29 12:39 - 00000000 ____D () C:\Users\hannibla34\Downloads\pc-wizard_2014.2.13
2014-12-27 14:21 - 2014-12-27 14:21 - 07767602 _____ () C:\Users\hannibla34\Downloads\pc-wizard_2014.2.13.zip
2014-12-24 15:13 - 2014-12-24 15:13 - 00001239 _____ () C:\Users\hannibla34\Downloads\AdwCleaner[S2] vom 24.12.2014
2014-12-24 15:04 - 2014-12-24 15:04 - 02173952 _____ () C:\Users\hannibla34\Downloads\adwcleaner_4.106.exe
2014-12-24 15:02 - 2014-12-24 15:03 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.2
2014-12-24 15:02 - 2014-12-24 15:02 - 00001484 _____ () C:\Users\Public\Desktop\LibreOffice 4.2.lnk
2014-12-24 14:36 - 2014-12-24 14:37 - 50812294 _____ () C:\Users\hannibla34\Downloads\arab whore fucked by her boyfriend and fillmed3704688_hd
2014-12-23 15:03 - 2014-12-23 15:03 - 00000000 ____D () C:\Windows\SysWOW64\ForceUpdateTemp
2014-12-22 18:04 - 2014-12-22 18:04 - 08451655 _____ () C:\Users\hannibla34\Downloads\ryan ruan taking two dicks 480_300_a2qt8-G596-
2014-12-17 15:42 - 2014-12-17 15:42 - 03462403 _____ () C:\Users\hannibla34\Downloads\Woche_6_Folien.zip
2014-12-14 14:00 - 2014-12-14 14:02 - 144589869 _____ () C:\Users\hannibla34\Downloads\das ich trio 480_800_qKxge-G496-
2014-12-13 18:49 - 2014-12-13 18:49 - 00001192 _____ () C:\Users\hannibla34\Desktop\Auslogics DiskDefrag.lnk
2014-12-13 18:49 - 2014-12-13 18:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
2014-12-13 18:49 - 2014-12-13 18:49 - 00000000 ____D () C:\Program Files (x86)\Auslogics
2014-12-12 13:54 - 2014-12-12 13:54 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything
2014-12-11 23:09 - 2015-01-01 19:41 - 00000000 ____D () C:\Users\hannibla34\Downloads\ProcessExplorer
2014-12-10 17:55 - 2014-12-10 17:56 - 85533714 _____ () C:\Users\hannibla34\Downloads\intsec2014-w6-12-pip.mp4
2014-12-10 17:53 - 2014-12-10 17:54 - 57072345 _____ () C:\Users\hannibla34\Downloads\intsec2014-w6-11-pip.mp4
2014-12-10 17:53 - 2014-12-10 17:54 - 50722035 _____ () C:\Users\hannibla34\Downloads\intsec2014-w6-10-pip.mp4
2014-12-10 13:10 - 2014-12-10 13:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-10 12:47 - 2014-11-17 21:17 - 00672984 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2014-12-10 12:47 - 2014-11-17 21:17 - 00273240 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2014-12-10 12:47 - 2014-11-15 20:05 - 00801584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2014-12-10 12:47 - 2014-11-15 07:29 - 00962216 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2014-12-10 12:47 - 2014-11-14 15:36 - 00055776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-12-10 12:47 - 2014-11-14 08:10 - 03558400 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-12-10 12:47 - 2014-11-14 07:58 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsDatabase.dll
2014-12-10 12:47 - 2014-11-14 07:58 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-12-10 12:47 - 2014-11-14 07:57 - 01027584 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2014-12-10 12:47 - 2014-11-14 07:57 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-12-10 12:47 - 2014-11-14 07:54 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2014-12-10 12:47 - 2014-11-14 07:54 - 00407552 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2014-12-10 12:47 - 2014-11-14 07:54 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-12-10 12:47 - 2014-11-14 07:53 - 00894976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-12-10 12:47 - 2014-11-14 07:52 - 01714176 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-12-10 12:47 - 2014-11-14 07:46 - 02171904 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2014-12-10 12:47 - 2014-11-14 07:46 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-12-10 12:47 - 2014-11-14 07:39 - 02819584 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2014-12-10 12:47 - 2014-11-14 06:04 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-12-10 12:47 - 2014-11-14 06:03 - 00885760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2014-12-10 12:47 - 2014-11-14 06:03 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-12-10 12:47 - 2014-11-14 06:01 - 00723968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-12-10 12:47 - 2014-11-14 06:01 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-12-10 12:47 - 2014-11-14 05:53 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-12-10 12:47 - 2014-11-11 01:39 - 22290560 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-12-10 12:47 - 2014-11-11 01:17 - 19731824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-12-10 12:47 - 2014-11-10 19:06 - 02485056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-12-10 12:47 - 2014-11-10 19:06 - 00473408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-12-10 12:47 - 2014-11-10 19:06 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-12-10 12:47 - 2014-11-10 19:06 - 00136512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2014-12-10 12:47 - 2014-11-10 03:57 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2014-12-10 12:47 - 2014-11-10 02:37 - 00845312 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2014-12-10 12:47 - 2014-11-10 02:34 - 01084416 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-12-10 12:47 - 2014-11-10 02:26 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-12-10 12:47 - 2014-11-10 02:20 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2014-12-10 12:47 - 2014-11-10 02:09 - 00272384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2014-12-10 12:47 - 2014-11-10 02:08 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2014-12-10 12:47 - 2014-11-10 02:06 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-12-10 12:47 - 2014-11-10 01:57 - 00624640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2014-12-10 12:47 - 2014-11-10 01:57 - 00561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2014-12-10 12:47 - 2014-11-08 11:42 - 01390928 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2014-12-10 12:47 - 2014-11-08 11:23 - 01127976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2014-12-10 12:47 - 2014-11-08 05:00 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2014-12-10 12:47 - 2014-11-08 05:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2014-12-10 12:47 - 2014-11-08 04:58 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys
2014-12-10 12:47 - 2014-11-08 04:58 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2014-12-10 12:47 - 2014-11-08 04:56 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2014-12-10 12:47 - 2014-11-08 04:56 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2014-12-10 12:47 - 2014-11-08 04:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2014-12-10 12:47 - 2014-11-08 04:24 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
2014-12-10 12:47 - 2014-11-08 04:13 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp
2014-12-10 12:47 - 2014-11-08 04:13 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll
2014-12-10 12:47 - 2014-11-08 04:13 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll
2014-12-10 12:47 - 2014-11-08 03:48 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll
2014-12-10 12:47 - 2014-11-08 03:38 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2014-12-10 12:47 - 2014-11-08 03:17 - 00143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2014-12-10 12:47 - 2014-11-08 03:09 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2014-12-10 12:47 - 2014-11-08 03:03 - 00733696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2014-12-10 12:47 - 2014-11-08 02:59 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll
2014-12-10 12:47 - 2014-11-08 02:58 - 04837376 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2014-12-10 12:47 - 2014-11-08 02:49 - 01154048 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2014-12-10 12:47 - 2014-11-07 04:58 - 00952896 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2014-12-10 12:47 - 2014-11-07 04:20 - 00786120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2014-12-10 12:47 - 2014-11-05 03:12 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2014-12-10 12:47 - 2014-11-05 03:12 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2014-12-10 12:47 - 2014-11-05 03:06 - 00514048 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2014-12-10 12:47 - 2014-11-05 02:44 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-12-10 12:47 - 2014-11-05 02:43 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-12-10 12:47 - 2014-11-05 02:41 - 00558080 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2014-12-10 12:47 - 2014-11-05 02:39 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL
2014-12-10 12:47 - 2014-11-05 02:39 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL
2014-12-10 12:47 - 2014-11-05 02:33 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2014-12-10 12:47 - 2014-11-05 02:21 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2014-12-10 12:47 - 2014-11-05 02:20 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2014-12-10 12:47 - 2014-11-05 02:18 - 00507392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2014-12-10 12:47 - 2014-11-05 02:14 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2014-12-10 12:47 - 2014-11-05 02:06 - 00555520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2014-12-10 12:47 - 2014-11-04 20:33 - 00058176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2014-12-10 12:47 - 2014-11-04 20:25 - 00059712 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys
2014-12-10 12:47 - 2014-11-04 20:25 - 00051008 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys
2014-12-10 12:47 - 2014-11-04 07:55 - 00026112 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys
2014-12-10 12:47 - 2014-11-04 07:54 - 00108544 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys
2014-12-10 12:47 - 2014-11-04 07:54 - 00032256 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2014-12-10 12:47 - 2014-11-04 07:54 - 00030208 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys
2014-12-10 12:47 - 2014-11-04 07:27 - 00128512 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2014-12-10 12:47 - 2014-11-04 06:01 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2014-12-10 12:47 - 2014-10-31 01:51 - 18823168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2014-12-10 12:47 - 2014-10-31 01:10 - 15158784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2014-12-10 12:47 - 2014-10-30 06:55 - 07473472 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-12-10 12:47 - 2014-10-30 06:47 - 01499384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-12-10 12:47 - 2014-10-30 06:41 - 01733952 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-12-10 12:47 - 2014-10-29 04:05 - 00551232 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2014-12-10 12:47 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-12-10 12:47 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-12-10 12:47 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-12-10 12:47 - 2014-10-29 02:55 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2014-12-10 12:47 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-12-10 12:47 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-12-10 12:47 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-12-10 12:47 - 2014-10-29 02:13 - 00169984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2014-12-10 12:47 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-12-10 12:47 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-12-10 12:47 - 2014-10-26 23:10 - 00390841 _____ () C:\Windows\system32\ApnDatabase.xml
2014-12-10 12:47 - 2014-10-21 02:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll
2014-12-10 12:47 - 2014-10-21 02:19 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll
2014-12-10 12:47 - 2014-10-21 01:50 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll
2014-12-10 12:47 - 2014-10-21 01:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2014-12-10 12:47 - 2014-10-21 01:31 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll
2014-12-10 12:47 - 2014-10-21 01:30 - 01454080 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2014-12-10 12:47 - 2014-10-21 01:20 - 01142272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2014-12-10 12:47 - 2014-10-17 05:56 - 00238912 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2014-12-10 12:47 - 2014-10-17 05:56 - 00153920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2014-12-10 12:47 - 2014-10-17 05:56 - 00039744 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2014-12-10 12:47 - 2014-10-17 04:35 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2014-12-10 12:40 - 2014-12-10 12:40 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-10 12:24 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2014-12-10 12:24 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2014-12-10 12:24 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-12-10 12:24 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-12-10 12:21 - 2014-12-04 00:37 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-12-10 12:21 - 2014-12-04 00:09 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2014-12-10 12:21 - 2014-12-03 00:09 - 01083392 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-12-10 12:21 - 2014-12-03 00:09 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2014-12-10 12:21 - 2014-12-03 00:09 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-12-10 12:21 - 2014-12-03 00:09 - 00396288 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2014-12-10 12:21 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2014-12-10 12:21 - 2014-11-22 04:13 - 25059840 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-10 12:21 - 2014-11-22 03:50 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-10 12:21 - 2014-11-22 03:49 - 02885120 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-10 12:21 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-12-10 12:21 - 2014-11-22 03:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-10 12:21 - 2014-11-22 03:35 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-12-10 12:21 - 2014-11-22 03:34 - 06039552 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-10 12:21 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-10 12:21 - 2014-11-22 03:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-10 12:21 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-10 12:21 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-12-10 12:21 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-12-10 12:21 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-10 12:21 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-12-10 12:21 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-10 12:21 - 2014-11-22 02:59 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2014-12-10 12:21 - 2014-11-22 02:55 - 00661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-12-10 12:21 - 2014-11-22 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-12-10 12:21 - 2014-11-22 02:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-10 12:21 - 2014-11-22 02:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-10 12:21 - 2014-11-22 02:49 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-10 12:21 - 2014-11-22 02:46 - 02125312 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-10 12:21 - 2014-11-22 02:43 - 14412800 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-10 12:21 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-10 12:21 - 2014-11-22 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-12-10 12:21 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-10 12:21 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-10 12:21 - 2014-11-22 02:29 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2014-12-10 12:21 - 2014-11-22 02:28 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-10 12:21 - 2014-11-22 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-12-10 12:21 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-10 12:21 - 2014-11-22 02:23 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-10 12:21 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-10 12:21 - 2014-11-22 02:15 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-10 12:21 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-10 12:21 - 2014-11-22 02:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-10 12:21 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-10 12:21 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-10 12:21 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-12-10 12:21 - 2014-11-07 05:16 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-10 12:21 - 2014-11-07 04:26 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-12-10 12:20 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-12-10 12:20 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-12-07 19:37 - 2014-12-07 19:37 - 00000619 _____ () C:\Users\hannibla34\Downloads\JRT 07.12.2014
2014-12-07 19:34 - 2014-12-28 09:01 - 01707939 _____ (Thisisu) C:\Users\hannibla34\Desktop\JRT_NEW.exe
2014-12-06 12:50 - 2014-12-06 12:50 - 00043576 _____ () C:\Users\hannibla34\Downloads\ÖMöckernkiez 04.12.2014
2014-12-06 12:48 - 2014-12-06 12:48 - 00072175 _____ () C:\Users\hannibla34\Downloads\möckernkiez BZ 05.11.2014
2014-12-05 00:19 - 2014-12-05 00:19 - 00934498 _____ () C:\Users\hannibla34\Downloads\OTL 05.122014.Txt

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-04 18:43 - 2014-11-24 19:26 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-04 18:34 - 2014-06-09 14:30 - 00000000 ____D () C:\AdwCleaner
2015-01-04 18:30 - 2014-01-09 10:06 - 01780340 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-04 18:30 - 2013-09-13 21:22 - 00763218 _____ () C:\Windows\system32\perfh007.dat
2015-01-04 18:30 - 2013-09-13 21:22 - 00159364 _____ () C:\Windows\system32\perfc007.dat
2015-01-04 18:26 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-04 18:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-01-04 17:45 - 2014-11-08 15:23 - 00076067 _____ () C:\Users\hannibla34\Documents\Malware.odt
2015-01-04 15:42 - 2014-05-19 03:05 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\TV-Browser
2015-01-04 13:42 - 2014-10-16 17:26 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-903397656-3433550281-814490945-1002
2015-01-04 13:22 - 2014-11-25 23:56 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-04 12:37 - 2014-05-14 21:43 - 00003922 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{08EFB189-B037-4AB9-A7C2-4ACFAED22B82}
2015-01-03 18:52 - 2014-08-25 18:41 - 00037102 _____ () C:\Users\hannibla34\Downloads\PC- Magazin - Empfehlungen.odt
2015-01-03 14:52 - 2014-05-16 04:10 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\vlc
2015-01-03 14:28 - 2014-06-14 18:34 - 04072448 ___SH () C:\Users\hannibla34\Downloads\Thumbs.db
2015-01-01 19:21 - 2014-05-17 07:37 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\DVDVideoSoft
2015-01-01 18:49 - 2014-12-01 13:18 - 00000000 ____D () C:\ProgramData\G Data
2015-01-01 16:10 - 2014-05-19 00:17 - 00000000 ____D () C:\Program Files (x86)\Google
2015-01-01 15:39 - 2014-11-25 18:05 - 00000000 ____D () C:\ProgramData\Avira
2015-01-01 01:47 - 2014-01-09 10:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2014-12-31 16:53 - 2014-12-01 13:51 - 00000000 ____D () C:\UsbFix
2014-12-31 14:26 - 2014-05-19 00:31 - 00007597 _____ () C:\Users\hannibla34\AppData\Local\Resmon.ResmonCfg
2014-12-30 12:27 - 2014-05-16 03:59 - 00000000 ___RD () C:\Users\hannibla34\Documents\Eigene Dateien
2014-12-24 20:53 - 2014-05-14 21:38 - 00000000 ____D () C:\Users\hannibla34
2014-12-24 15:07 - 2013-08-22 15:44 - 00451040 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-12-24 15:07 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-12-24 15:02 - 2014-09-04 23:30 - 00000000 ____D () C:\Program Files (x86)\LibreOffice 4
2014-12-23 14:59 - 2014-11-28 16:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-23 12:56 - 2014-01-09 10:02 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-12-23 12:48 - 2014-01-15 13:55 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS
2014-12-20 12:50 - 2014-05-19 17:06 - 00002046 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2014-12-20 12:50 - 2014-01-09 10:27 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-12-19 01:27 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-12-18 21:50 - 2014-05-15 03:11 - 00000000 ____D () C:\Program Files\CCleaner
2014-12-18 16:19 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2014-12-13 14:51 - 2014-10-19 23:30 - 00015202 _____ () C:\Users\hannibla34\Documents\nachforschen.odt
2014-12-12 17:28 - 2014-11-10 16:30 - 00000000 ____D () C:\Users\hannibla34\AppData\Roaming\Everything
2014-12-12 13:54 - 2014-11-10 16:30 - 00000000 ____D () C:\Program Files\Everything
2014-12-12 13:38 - 2014-11-24 19:26 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-12 13:38 - 2014-09-06 17:58 - 00000000 ____D () C:\Users\hannibla34\AppData\Local\Adobe
2014-12-10 13:18 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2014-12-10 13:18 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2014-12-10 13:18 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup
2014-12-10 13:18 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup
2014-12-10 12:44 - 2014-11-12 17:51 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-12-10 12:44 - 2014-11-12 17:51 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-12-10 12:44 - 2014-11-12 17:51 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll
2014-12-10 12:43 - 2014-11-12 17:51 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-12-10 12:40 - 2014-07-09 20:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-10 12:40 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-10 12:34 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2014-12-10 12:34 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2014-12-10 12:33 - 2014-05-15 01:57 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-10 12:30 - 2014-05-15 01:57 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-07 01:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\ADFS
2014-12-06 19:43 - 2014-11-25 23:56 - 00001121 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-06 19:43 - 2014-11-25 23:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-12-06 19:43 - 2014-11-25 23:56 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-06 19:18 - 2014-05-21 19:44 - 00000000 ____D () C:\Users\hannibla34\dwhelper
2014-12-05 16:32 - 2014-10-30 16:40 - 00000000 ____D () C:\Users\hannibla34\Documents\My Digital Editions

Some content of TEMP:
====================
C:\Users\hannibla34\AppData\Local\Temp\procexp64.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-26 16:17

==================== End Of Log ============================

--- --- ---
Grüße

krautsand

schrauber 04.01.2015 20:08

warum willst du diese Reg-Einträge löschen?

krautsand 05.01.2015 15:17

Hallo Schrauber,

alle die Einträge werden mit Malware in Zusammenhang gebracht.

Grüße

krautsand

schrauber 05.01.2015 17:01

der erste, ja, und das sind inaktive Registry-CLSID-Leichen. Die andern sind keine Malware.

Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:

reg: reg delete "HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}" /f

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.


krautsand 11.01.2015 16:46

Hallo Schrauber,

ich krieg das nicht mehr hin. Ich habe auf dem FarbarScan tool Fixlist.txt in das leere Feld eingegeben. Es kommt die Meldung No fixlist.txt found. The fixlist should be in the same/directory the tool is laocated.

Grüße

krautsand

schrauber 11.01.2015 18:02

Zitat:

Ich habe auf dem FarbarScan tool Fixlist.txt in das leere Feld eingegeben
Steht in meiner Anleitung dass Du FRST öffnen sollst und fixlist in das Feld schreiben sollst? Nein :).

Ich würd einfach mal Zeile für Zeile lesen. DU musst Notepad öffnen, den Text kopieren, als fixlist speichern, und so weiter :)

krautsand 11.01.2015 19:19

Bis und so weiter war ich vorhin auch schon. Ich habe FRST gestartet und nach dem Klicken auf den Fix-Button kommt die gleiche Meldung wie vorhin, No fixlist.txt found. The fixlist should be in the same/directory the tool is laocated. Sowohl FRSt als ach die Fixlist sind im gleichen Ordner....

Grüße

krautsand

schrauber 11.01.2015 21:02

Screenshot bitte von dem Ordner, so das ich beides bitte auf dem Screenshot sehe :)


Alle Zeitangaben in WEZ +1. Es ist jetzt 04:29 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131