fibi2222 | 14.04.2015 15:13 | Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 14.04.2015
Suchlauf-Zeit: 14:45:15
Logdatei: mbm Suchlauf.txt
Administrator: Ja
Version: 2.01.4.1018
Malware Datenbank: v2015.04.14.03
Rootkit Datenbank: v2015.03.31.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 8
CPU: x64
Dateisystem: NTFS
Benutzer: Baddy
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 434929
Verstrichene Zeit: 21 Min, 25 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(Keine schädliche Elemente gefunden)
Module: 0
(Keine schädliche Elemente gefunden)
Registrierungsschlüssel: 12
PUP.Optional.LolliScan.A, HKLM\SOFTWARE\LolliScan, In Quarantäne, [e09bd3997416191dc45b3d8c729149b7],
PUP.Optional.CinemaPlus.A, HKLM\SOFTWARE\WOW6432NODE\CinPlus_v1.7cV05.03, In Quarantäne, [d2a9204c0a8046f0bd36dde8e320728e],
PUP.Optional.Infonaut.A, HKLM\SOFTWARE\WOW6432NODE\Infonaut_1.10.0.13, In Quarantäne, [b3c8b0bc5238a492c9595a64768dd12f],
PUP.Optional.LolliScan.A, HKLM\SOFTWARE\WOW6432NODE\LolliScan, In Quarantäne, [3546b3b9dcae92a4e8374485d52ee41c],
PUP.Optional.CinemaPlus.A, HKU\S-1-5-18\SOFTWARE\Cinema PlusV06.04-nv-ie, In Quarantäne, [1863acc0503a0b2bd7227dd526df24dc],
PUP.Optional.Shopperz.A, HKU\S-1-5-19\SOFTWARE\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09}, In Quarantäne, [b1ca6903dfabf640e7ed299a41c29070],
PUP.Optional.Shopperz.A, HKU\S-1-5-20\SOFTWARE\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09}, In Quarantäne, [e89372fa7713f343fbd9319262a154ac],
PUP.Optional.CinemaPlus.A, HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\SOFTWARE\Cinema PlusV06.04-ntf, In Quarantäne, [57243b31a1e9cd69c039e1711ee7629e],
PUP.Optional.CinemaPlus.A, HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\SOFTWARE\Cinema PlusV06.04-nv-ie, In Quarantäne, [5328284498f27eb87a7fde7422e38779],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\SOFTWARE\CinemaPlus_2.1V07.04-nv-ie, In Quarantäne, [fd7ef973f397cb6b290cc5ff18eb619f],
PUP.Optional.LightsCinema.A, HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\SOFTWARE\Lights Cinema 1.3betaV06.04-nv-ie, In Quarantäne, [3249d19b5733e05660c99f26b84b51af],
PUP.Optional.Linkey.A, HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Linkey, In Quarantäne, [fc7f7def0882fb3b88c35470897a26da],
Registrierungswerte: 0
(Keine schädliche Elemente gefunden)
Registrierungsdaten: 0
(Keine schädliche Elemente gefunden)
Ordner: 12
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131, In Quarantäne, [99e2610b88029c9a59fcf95be71e0bf5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm, In Quarantäne, [99e2610b88029c9a59fcf95be71e0bf5],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131, In Quarantäne, [46357bf13f4bfd395500342042c32dd3],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm, In Quarantäne, [46357bf13f4bfd395500342042c32dd3],
PUP.Optional.MultiPlug.A, C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131, In Quarantäne, [c6b5c8a4c3c7ed49253094c02adb827e],
PUP.Optional.MultiPlug.A, C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm, In Quarantäne, [c6b5c8a4c3c7ed49253094c02adb827e],
PUP.Optional.MultiPlug.A, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131, In Quarantäne, [53289ad2286295a1ec690b498f7627d9],
PUP.Optional.MultiPlug.A, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm, In Quarantäne, [53289ad2286295a1ec690b498f7627d9],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\F3251380-1428395883-815C-22E2-7C05071D3807, In Quarantäne, [126997d573175adcaab299bb18ede51b],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Roaming\F3251380-1428388627-815C-22E2-7C05071D3807, In Quarantäne, [166573f9bccebb7b88da2a2afd0854ac],
PUP.Optional.CinemaPlus.A, C:\Program Files (x86)\CinPlus_v1.7cV05.03, In Quarantäne, [91ea15571872290dc6f79a1fe61d15eb],
PUP.Optional.CinemaPlus.A, C:\Program Files (x86)\Cinema PlusV06.04-ntf, In Quarantäne, [fe7d006c64261224c4c01f9d8d76c23e],
Dateien: 23
PUP.Optional.Bundle, C:\Users\Baddy\Downloads\Orban AAC Plugin 1 1 52 Downloader__3687_i1475852866_il839239.exe, In Quarantäne, [f28986e66e1c290d410c9d9a9a689d63],
PUP.Optional.Clara.A, C:\claraInstaller.txt, In Quarantäne, [007b7af254363bfb53d80db3986bfb05],
PUP.Optional.WebTInst.A, C:\Windows\System32\Drivers\Msft_Kernel_webTinstMKTN_01009.Wdf, In Quarantäne, [f586a3c9c4c66ec88f18cdf9a45f3bc5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\lsdb.js, In Quarantäne, [99e2610b88029c9a59fcf95be71e0bf5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\background.html, In Quarantäne, [99e2610b88029c9a59fcf95be71e0bf5],
PUP.Optional.MultiPlug.A, C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\manifest.json, In Quarantäne, [99e2610b88029c9a59fcf95be71e0bf5],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\lsdb.js, In Quarantäne, [46357bf13f4bfd395500342042c32dd3],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\background.html, In Quarantäne, [46357bf13f4bfd395500342042c32dd3],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\manifest.json, In Quarantäne, [46357bf13f4bfd395500342042c32dd3],
PUP.Optional.MultiPlug.A, C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\lsdb.js, In Quarantäne, [c6b5c8a4c3c7ed49253094c02adb827e],
PUP.Optional.MultiPlug.A, C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\background.html, In Quarantäne, [c6b5c8a4c3c7ed49253094c02adb827e],
PUP.Optional.MultiPlug.A, C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\manifest.json, In Quarantäne, [c6b5c8a4c3c7ed49253094c02adb827e],
PUP.Optional.MultiPlug.A, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\lsdb.js, In Quarantäne, [53289ad2286295a1ec690b498f7627d9],
PUP.Optional.MultiPlug.A, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\background.html, In Quarantäne, [53289ad2286295a1ec690b498f7627d9],
PUP.Optional.MultiPlug.A, C:\Users\HomeGroupUser$\AppData\Local\Google\Chrome\User Data\Default\Extensions\faminaibgiklngmfpfbhmokfmnglamcm\131\manifest.json, In Quarantäne, [53289ad2286295a1ec690b498f7627d9],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\F3251380-1428395883-815C-22E2-7C05071D3807\onsd2D73.tmp, In Quarantäne, [126997d573175adcaab299bb18ede51b],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\F3251380-1428395883-815C-22E2-7C05071D3807\pnsy2DA3.exe, In Quarantäne, [126997d573175adcaab299bb18ede51b],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\F3251380-1428395883-815C-22E2-7C05071D3807\rnsd2D72.exe, In Quarantäne, [126997d573175adcaab299bb18ede51b],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\F3251380-1428395883-815C-22E2-7C05071D3807\snsd2D71.tmp, In Quarantäne, [126997d573175adcaab299bb18ede51b],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Local\F3251380-1428395883-815C-22E2-7C05071D3807\Uninstall.exe, In Quarantäne, [126997d573175adcaab299bb18ede51b],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Roaming\F3251380-1428388627-815C-22E2-7C05071D3807\vnsc47D8.tmp, In Quarantäne, [166573f9bccebb7b88da2a2afd0854ac],
PUP.Optional.MultiPlug.A, C:\Users\Baddy\AppData\Roaming\F3251380-1428388627-815C-22E2-7C05071D3807\Uninstall.exe, In Quarantäne, [166573f9bccebb7b88da2a2afd0854ac],
PUP.Optional.CinemaPlus.A, C:\Program Files (x86)\CinPlus_v1.7cV05.03\bgNova.html, In Quarantäne, [91ea15571872290dc6f79a1fe61d15eb],
Physische Sektoren: 0
(Keine schädliche Elemente gefunden)
(end) Code:
# AdwCleaner v4.201 - Bericht erstellt 14/04/2015 um 15:34:19
# Aktualisiert 08/04/2015 von Xplode
# Datenbank : 2015-04-08.1 [Server]
# Betriebssystem : Windows 8 (x64)
# Benutzername : Baddy - MELLI
# Gestarted von : C:\Users\Baddy\Downloads\AdwCleaner_4.201(1).exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
***** [ Geplante Tasks ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
***** [ Internetbrowser ] *****
-\\ Internet Explorer v10.0.9200.17267
-\\ Mozilla Firefox v37.0.1 (x86 de)
-\\ Google Chrome v
-\\ Comodo Dragon v
-\\ Chrome Canary v
*************************
AdwCleaner[R0].txt - [4122 Bytes] - [17/03/2014 13:29:11]
AdwCleaner[R1].txt - [957 Bytes] - [17/03/2014 13:33:32]
AdwCleaner[R2].txt - [17872 Bytes] - [02/02/2015 23:30:11]
AdwCleaner[R3].txt - [17357 Bytes] - [07/04/2015 09:38:56]
AdwCleaner[R4].txt - [1591 Bytes] - [07/04/2015 16:49:59]
AdwCleaner[R5].txt - [6660 Bytes] - [14/04/2015 07:55:02]
AdwCleaner[R6].txt - [1496 Bytes] - [14/04/2015 15:28:48]
AdwCleaner[S0].txt - [3808 Bytes] - [17/03/2014 13:30:14]
AdwCleaner[S1].txt - [1019 Bytes] - [17/03/2014 13:34:13]
AdwCleaner[S2].txt - [15154 Bytes] - [03/02/2015 07:43:10]
AdwCleaner[S3].txt - [15764 Bytes] - [07/04/2015 09:40:06]
AdwCleaner[S4].txt - [5112 Bytes] - [14/04/2015 07:58:35]
AdwCleaner[S5].txt - [1416 Bytes] - [14/04/2015 15:34:19]
########## EOF - C:\AdwCleaner\AdwCleaner[S5].txt - [1475 Bytes] ########## Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.5.4 (04.13.2015:1)
OS: Windows 8 x64
Ran by Baddy on 14.04.2015 at 15:52:00,58
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
Successfully deleted: [File] C:\Windows\wininit.ini
~~~ Folders
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 14.04.2015 at 15:57:56,84
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-04-2015
Ran by Baddy (administrator) on MELLI on 14-04-2015 16:06:39
Running from C:\Users\Baddy\Downloads
Loaded Profiles: Baddy (Available profiles: Baddy)
Platform: Windows 8 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 10 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Emsisoft GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Emsisoft GmbH) C:\Program Files (x86)\Emsisoft Anti-Malware\a2guard.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Dritek System INC.) C:\Windows\RfBtnSvc64.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Farbar) C:\Users\Baddy\Downloads\FRST64(2).exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe\LiveComm.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Apoint] => C:\Program Files\Apoint2K\Apoint.exe [661400 2012-11-09] (Alps Electric Co., Ltd.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12937872 2012-07-27] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-07-10] (Realtek Semiconductor)
HKLM\...\Run: [BtPreLoad] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtPreLoad.exe [64640 2013-01-28] ()
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-01-27] (Apple Inc.)
HKLM-x32\...\Run: [LManager] => [X]
HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Dolby PCEE4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2994880 2012-08-15] (Symantec Corporation)
HKLM-x32\...\Run: [AdobeCEPServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe [1039248 2013-03-13] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WTClient] => C:\Windows\SysWOW64\WTClient.exe [41304 2014-01-13] (Tablet Driver)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2072928 2014-10-31] (Wondershare)
HKLM-x32\...\Run: [WSHelperSetup.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2072928 2014-10-31] (Wondershare)
HKLM-x32\...\Run: [emsisoft anti-malware] => c:\program files (x86)\emsisoft anti-malware\a2guard.exe [4886608 2015-03-24] (Emsisoft GmbH)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] ( (Atheros Communications))
HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\...\Run: [WSHelperSetup.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2072928 2014-10-31] (Wondershare)
HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\...\Run: [SwvUpdtr] => C:\Users\Baddy\AppData\Local\27554\Updater.exe /reg
HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer Backup Manager Tray.lnk
ShortcutTarget: Acer Backup Manager Tray.lnk -> C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (NTI Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
SearchScopes: HKLM -> {B8961B09-15D3-4446-BC03-BB2FC525E5A1} URL = hxxp://www.startseite24.net/?q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-04-26] (Oracle Corporation)
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll [2013-01-28] (Qualcomm Atheros Commnucations)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-04-26] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF ProfilePath: C:\Users\Baddy\AppData\Roaming\Mozilla\Firefox\Profiles\96ua2j3h.default-1428995783255
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll [2015-02-04] ()
FF Plugin: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-04-26] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-04-26] (Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-01-31] (VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll [2015-02-04] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll [2014-03-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll [2014-03-28] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2012-05-12] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems)
FF HKU\S-1-5-21-2464004647-2543996308-2806735317-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff
FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-03-31]
Chrome:
=======
CHR Profile: C:\Users\Baddy\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (SNT) - C:\Users\Baddy\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlcdcamppdgpeejfnpfpaehkehmhelke [2014-04-11]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 a2AntiMalware; C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe [5020520 2015-03-24] (Emsisoft GmbH)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.)
S2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations) [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [331776 2012-07-26] (Microsoft Corporation)
S2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2449552 2012-10-25] (Acer Incorporated)
S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [469648 2012-11-17] (Acer Incorporated)
S3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658064 2012-10-23] (Acer Incorporated)
S2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation)
S2 nlsX86cc; C:\Windows\SysWOW64\nlssrv32.exe [66560 2012-01-31] (Nalpeiron Ltd.) [File not signed]
S2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation)
S2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-11-03] (NTI Corporation)
R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2013-03-23] (Dritek System INC.)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16024 2015-01-31] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-28] (Qualcomm Atheros)
S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [117632 2013-06-01] (Microsoft Corporation)
S3 BthHFAud; C:\Windows\System32\drivers\BthHfAud.sys [30720 2013-02-02] (Microsoft Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation)
R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
S3 DIRECTIO; C:\Program Files\PerformanceTest\DirectIo64.sys [25704 2012-08-13] ()
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-02-28] (Disc Soft Ltd)
R1 epp64; C:\Windows\System32\DRIVERS\epp64.sys [135800 2015-03-24] (Emsisoft GmbH)
U5 GEARAspiWDM; C:\Windows\System32\Drivers\GEARAspiWDM.sys [33240 2012-10-03] (GEAR Software Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-03-17] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-03-17] (Malwarebytes Corporation)
R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2013-03-23] (Dritek System Inc.)
R1 RrNetCapFilterDriver; C:\Windows\system32\DRIVERS\RrNetCapFilterDriver.sys [24744 2014-12-19] (Audials AG)
S3 esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys [X]
S3 Tablet2k; "%SystemRoot%\System32\Drivers\Tablet2k.sys" [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-14 16:01 - 2015-04-14 16:01 - 02096640 _____ (Farbar) C:\Users\Baddy\Downloads\FRST64(2).exe
2015-04-14 15:57 - 2015-04-14 15:57 - 00000667 _____ () C:\Users\Baddy\Desktop\JRT.txt
2015-04-14 15:52 - 2015-04-14 15:52 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-MELLI-Windows-8-(64-bit).dat
2015-04-14 15:52 - 2015-04-14 15:52 - 00000000 ____D () C:\RegBackup
2015-04-14 15:51 - 2015-04-14 15:51 - 02687136 _____ (Thisisu) C:\Users\Baddy\Downloads\JRT.exe
2015-04-14 15:51 - 2015-04-14 15:51 - 00000667 _____ () C:\Users\Baddy\Desktop\Continue MixVideoPlayer installation.lnk
2015-04-14 15:50 - 2015-04-14 15:50 - 00680352 _____ () C:\Users\Baddy\Downloads\Setup.exe
2015-04-14 15:28 - 2015-04-14 15:28 - 02217984 _____ () C:\Users\Baddy\Downloads\AdwCleaner_4.201(1).exe
2015-04-14 15:22 - 2015-04-14 15:22 - 00009086 _____ () C:\Users\Baddy\Desktop\mbm Suchlauf.txt
2015-04-14 14:44 - 2015-04-14 15:17 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-04-14 14:44 - 2015-04-14 14:44 - 00001110 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-04-14 14:44 - 2015-04-14 14:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-04-14 14:44 - 2015-04-14 14:44 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-04-14 14:44 - 2015-03-17 06:15 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-04-14 14:44 - 2015-03-17 06:15 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-04-14 14:44 - 2015-03-17 06:15 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-04-14 14:43 - 2015-04-14 14:43 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\Baddy\Downloads\mbam-setup-2.1.4.1018.exe
2015-04-14 14:43 - 2015-04-14 14:43 - 21540440 _____ (Malwarebytes Corporation ) C:\Users\Baddy\Downloads\mbam-setup-2.1.4.1018(1).exe
2015-04-14 11:35 - 2015-04-14 11:36 - 00046746 _____ () C:\Users\Baddy\Downloads\Addition.txt
2015-04-14 11:34 - 2015-04-14 16:06 - 00016027 _____ () C:\Users\Baddy\Downloads\FRST.txt
2015-04-14 11:33 - 2015-04-14 16:06 - 00000000 ____D () C:\FRST
2015-04-14 11:32 - 2015-04-14 11:32 - 02096640 _____ (Farbar) C:\Users\Baddy\Downloads\FRST64(1).exe
2015-04-14 08:43 - 2015-04-14 08:43 - 02953520 _____ (AVAST Software) C:\Users\Baddy\Downloads\avast-browser-cleanup_9.0.0.224(1).exe
2015-04-14 07:54 - 2015-04-14 07:54 - 02217984 _____ () C:\Users\Baddy\Downloads\adwcleaner_4.201.exe
2015-04-13 16:26 - 2015-04-13 16:27 - 00001566 _____ () C:\Windows\comsetup.log
2015-04-13 16:16 - 2015-04-13 16:34 - 00022863 _____ () C:\Windows\diagwrn.xml
2015-04-13 16:16 - 2015-04-13 16:34 - 00022863 _____ () C:\Windows\diagerr.xml
2015-04-13 12:11 - 2015-04-13 12:11 - 05114336 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-04-13 12:10 - 2015-04-13 12:10 - 00000442 _____ () C:\EamClean.log
2015-04-13 11:22 - 2015-04-13 11:22 - 00000000 ____D () C:\Users\Baddy\AppData\Roaming\Atheros
2015-04-13 11:22 - 2015-04-13 11:22 - 00000000 ____D () C:\ProgramData\Atheros
2015-04-13 10:47 - 2013-01-28 14:23 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\wdfcoinstaller01009.dll
2015-04-13 10:47 - 2013-01-28 14:23 - 00581200 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btfilter.sys
2015-04-13 10:47 - 2013-01-28 14:23 - 00346192 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btath_a2dp.sys
2015-04-13 10:47 - 2013-01-28 14:23 - 00179432 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btath_hcrp.sys
2015-04-13 10:47 - 2013-01-28 14:23 - 00136424 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btath_rcp.sys
2015-04-13 10:47 - 2013-01-28 14:23 - 00115280 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btath_avdt.sys
2015-04-13 10:47 - 2013-01-28 14:23 - 00089168 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btath_flt.sys
2015-04-13 10:47 - 2013-01-28 14:23 - 00077464 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btath_lwflt.sys
2015-04-13 10:47 - 2013-01-28 14:23 - 00034384 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btath_bus.sys
2015-04-13 10:44 - 2015-04-13 11:10 - 00000000 ____D () C:\Program Files (x86)\Qualcomm Atheros
2015-04-13 10:44 - 2013-01-21 02:56 - 03747840 _____ (Qualcomm Atheros Communications, Inc.) C:\Windows\system32\Drivers\athw8x.sys
2015-04-13 10:13 - 2014-07-16 00:51 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2015-04-12 10:41 - 2014-07-12 06:41 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL
2015-04-12 10:41 - 2014-07-12 06:41 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-04-12 10:41 - 2014-07-12 06:41 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-04-12 10:41 - 2014-07-12 06:41 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-04-12 10:41 - 2014-07-12 06:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-04-12 10:41 - 2014-07-12 06:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-04-12 10:41 - 2014-07-12 06:16 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL
2015-04-12 10:41 - 2014-07-12 06:16 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2015-04-12 10:41 - 2014-07-12 06:16 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2015-04-12 10:41 - 2014-07-12 06:16 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2015-04-12 10:41 - 2014-07-12 06:16 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2015-04-12 10:41 - 2014-07-12 06:15 - 00006144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2015-04-12 10:41 - 2014-07-09 00:33 - 00181248 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2015-04-12 10:41 - 2014-07-09 00:32 - 01539584 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2015-04-12 10:41 - 2014-07-09 00:32 - 00340480 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2015-04-12 10:41 - 2014-07-09 00:30 - 01220608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2015-04-12 10:41 - 2014-07-07 07:52 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2015-04-12 10:41 - 2014-07-07 07:52 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2015-04-12 10:41 - 2014-07-04 12:52 - 00328000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2015-04-12 10:41 - 2014-07-03 03:59 - 01824784 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-12 10:41 - 2014-07-03 02:30 - 01408952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-04-12 10:41 - 2014-06-28 09:01 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2015-04-12 10:41 - 2014-06-28 08:56 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2015-04-12 10:41 - 2014-06-18 01:27 - 02032640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2015-04-12 10:41 - 2014-06-18 01:23 - 02238464 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-04-12 10:41 - 2014-06-11 16:47 - 02842112 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-04-12 10:41 - 2014-06-11 06:40 - 02620928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2015-04-12 10:41 - 2014-06-11 00:44 - 01403896 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-04-12 10:41 - 2014-02-04 12:57 - 01271664 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-04-12 10:41 - 2013-05-25 00:09 - 01217352 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-04-12 10:41 - 2013-05-25 00:09 - 01093904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-04-12 10:41 - 2012-11-20 07:24 - 01164800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2015-04-12 10:41 - 2012-11-20 07:17 - 01184256 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-04-12 10:41 - 2012-11-20 07:02 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDKURD.DLL
2015-04-12 10:41 - 2012-11-20 06:59 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDKURD.DLL
2015-04-12 10:40 - 2012-11-06 09:33 - 01566432 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-04-12 10:40 - 2012-11-06 06:48 - 01150160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-04-12 10:40 - 2012-11-06 06:20 - 00883712 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe
2015-04-12 10:40 - 2012-11-06 06:20 - 00516608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2015-04-12 10:40 - 2012-11-06 06:20 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2015-04-12 10:40 - 2012-11-06 06:20 - 00375296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlansec.dll
2015-04-12 10:40 - 2012-11-06 06:20 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2015-04-12 10:40 - 2012-11-06 06:20 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2015-04-12 10:40 - 2012-11-06 06:20 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
2015-04-12 10:40 - 2012-11-06 06:20 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfdprov.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 08552448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 00710656 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 00466944 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 00126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\wfdprov.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll
2015-04-12 10:40 - 2012-11-06 06:19 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll
2015-04-12 10:40 - 2012-11-06 06:18 - 11459584 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll
2015-04-12 10:40 - 2012-11-06 06:18 - 00189440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2015-04-12 10:40 - 2012-11-06 06:18 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll
2015-04-12 10:40 - 2012-11-06 06:18 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll
2015-04-12 10:40 - 2012-11-06 06:18 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
2015-04-12 10:40 - 2012-11-06 06:17 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2015-04-12 10:40 - 2012-11-06 06:17 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\dafWCN.dll
2015-04-12 10:39 - 2012-11-06 06:00 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\iscsilog.dll
2015-04-12 10:39 - 2012-11-06 05:58 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll
2015-04-12 10:39 - 2012-11-06 05:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll
2015-04-12 10:39 - 2012-11-06 05:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
2015-04-12 10:39 - 2012-11-06 05:55 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
2015-04-12 10:39 - 2012-11-06 05:55 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
2015-04-12 10:39 - 2012-11-06 05:55 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
2015-04-12 10:39 - 2012-11-06 05:55 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fxppm.sys
2015-04-12 10:38 - 2014-03-25 01:42 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe
2015-04-12 10:38 - 2014-03-25 00:56 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2015-04-12 10:38 - 2014-02-04 01:56 - 00332632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-04-12 10:38 - 2014-02-04 01:56 - 00278872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-04-12 10:38 - 2014-01-31 02:48 - 00485888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2015-04-12 10:38 - 2014-01-31 02:06 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2015-04-12 10:38 - 2014-01-27 05:39 - 01939288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-04-12 10:38 - 2014-01-16 01:42 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2015-04-12 10:38 - 2014-01-03 01:35 - 00365568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2015-04-12 10:38 - 2014-01-03 01:32 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-04-12 10:38 - 2013-08-10 07:21 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2015-04-12 10:38 - 2013-08-10 07:21 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncInfo.dll
2015-04-12 10:38 - 2013-08-10 05:58 - 00356352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2015-04-12 10:38 - 2013-08-03 08:40 - 01374208 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2015-04-12 10:38 - 2013-08-03 08:40 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2015-04-12 10:38 - 2013-08-03 08:40 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2015-04-12 10:38 - 2013-08-03 07:14 - 00399360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx
2015-04-12 10:38 - 2013-08-03 07:13 - 01245696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll
2015-04-12 10:38 - 2013-08-03 07:13 - 00437248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll
2015-04-12 10:38 - 2013-08-02 08:28 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2015-04-12 10:38 - 2013-08-02 07:08 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2015-04-12 10:38 - 2013-07-25 01:10 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mbsmsapi.dll
2015-04-12 10:38 - 2013-07-25 01:06 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\mbsmsapi.dll
2015-04-12 10:37 - 2013-08-30 07:43 - 00061784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys
2015-04-12 10:37 - 2013-08-30 07:20 - 01173504 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2015-04-12 10:37 - 2013-08-30 01:48 - 00914432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2015-04-12 10:37 - 2013-08-21 08:39 - 00465240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-04-12 10:37 - 2013-08-10 08:30 - 00151896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys
2015-04-12 10:37 - 2013-07-25 01:10 - 10799104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-04-12 10:37 - 2013-07-25 01:07 - 13661696 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-04-12 10:37 - 2012-11-27 08:39 - 01122768 _____ (Microsoft Corporation) C:\Windows\system32\Taskmgr.exe
2015-04-12 10:37 - 2012-11-27 06:49 - 01027152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Taskmgr.exe
2015-04-12 10:37 - 2012-11-27 06:20 - 00798208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebcamUi.dll
2015-04-12 10:37 - 2012-11-27 06:20 - 00560128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserLanguagesCpl.dll
2015-04-12 10:37 - 2012-11-27 06:20 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2015-04-12 10:37 - 2012-11-27 06:19 - 00955904 _____ (Microsoft Corporation) C:\Windows\system32\WebcamUi.dll
2015-04-12 10:37 - 2012-11-27 06:19 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\UserLanguagesCpl.dll
2015-04-12 10:37 - 2012-11-27 06:19 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2015-04-12 10:36 - 2013-10-05 08:10 - 00285016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2015-04-12 10:36 - 2013-08-30 07:19 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2015-04-12 10:36 - 2013-08-30 07:18 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2015-04-12 10:36 - 2013-08-30 01:48 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2015-04-12 10:36 - 2013-08-30 01:47 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2015-04-12 10:36 - 2013-07-09 10:04 - 00120144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys
2015-04-12 10:36 - 2013-07-09 05:57 - 00245760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll
2015-04-12 10:36 - 2013-07-09 00:46 - 00543744 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll
2015-04-12 10:36 - 2013-07-09 00:46 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-04-12 10:36 - 2013-07-09 00:46 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\Wwanadvui.dll
2015-04-12 10:36 - 2013-07-09 00:45 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll
2015-04-12 10:36 - 2013-07-03 02:23 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2015-04-12 10:36 - 2013-07-03 02:22 - 02839552 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-04-12 10:36 - 2013-07-03 02:11 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2015-04-12 10:36 - 2013-07-03 02:10 - 02273792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-04-12 10:36 - 2013-07-01 00:30 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\openfiles.exe
2015-04-12 10:36 - 2013-07-01 00:29 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\openfiles.exe
2015-04-12 10:36 - 2013-06-29 08:15 - 00195416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-04-12 10:36 - 2013-06-29 08:15 - 00125784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-04-12 10:36 - 2013-06-26 05:01 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2015-04-12 10:36 - 2013-06-26 04:59 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys
2015-04-12 10:36 - 2013-06-25 00:54 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-04-12 10:36 - 2013-06-19 07:36 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll
2015-04-12 10:36 - 2013-06-19 07:36 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2015-04-12 10:36 - 2013-06-19 00:38 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll
2015-04-12 10:36 - 2013-06-19 00:38 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll
2015-04-12 10:36 - 2013-06-12 01:43 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2015-04-12 10:36 - 2013-06-12 01:26 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2015-04-12 10:36 - 2013-06-06 10:03 - 00119040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-04-12 10:36 - 2013-06-01 13:34 - 02391280 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-04-12 10:36 - 2013-06-01 12:24 - 02106176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-04-12 10:36 - 2013-06-01 11:25 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2015-04-12 10:36 - 2013-06-01 11:24 - 01453568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2015-04-12 10:36 - 2013-06-01 11:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2015-04-12 10:36 - 2013-06-01 11:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2015-04-12 10:36 - 2013-06-01 11:23 - 01842176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-04-12 10:36 - 2013-06-01 11:23 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2015-04-12 10:36 - 2013-06-01 11:22 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2015-04-12 10:36 - 2013-06-01 11:22 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe
2015-04-12 10:36 - 2013-06-01 11:21 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2015-04-12 10:36 - 2013-06-01 11:21 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2015-04-12 10:36 - 2013-06-01 11:20 - 02219520 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-04-12 10:36 - 2013-06-01 11:20 - 01527808 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2015-04-12 10:36 - 2013-06-01 11:20 - 01048576 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2015-04-12 10:36 - 2013-06-01 11:20 - 00583168 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2015-04-12 10:36 - 2013-06-01 11:19 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll
2015-04-12 10:36 - 2013-06-01 05:08 - 00117632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthA2DP.sys
2015-04-12 10:36 - 2012-11-27 06:20 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vds_ps.dll
2015-04-12 10:36 - 2012-09-11 07:28 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\vdsldr.exe
2015-04-12 10:36 - 2012-09-11 07:27 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\vds_ps.dll
2015-04-12 10:35 - 2014-07-24 15:50 - 00447296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-04-12 10:35 - 2014-07-17 01:28 - 00027648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll
2015-04-12 10:35 - 2014-07-17 00:59 - 00305664 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2015-04-12 10:35 - 2014-07-17 00:59 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2015-04-12 10:35 - 2014-07-12 08:45 - 01549824 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2015-04-12 10:35 - 2014-07-12 06:36 - 00674304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2015-04-12 10:35 - 2014-07-12 06:36 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-04-12 10:35 - 2014-07-12 06:34 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-04-12 10:35 - 2014-07-12 06:34 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2015-04-12 10:35 - 2014-06-28 08:57 - 01341952 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-04-12 10:35 - 2014-06-28 04:23 - 01126400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2015-04-12 10:35 - 2014-04-30 00:32 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe
2015-04-12 10:35 - 2014-04-30 00:32 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2015-04-12 10:35 - 2013-06-17 00:41 - 00997632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-04-12 10:34 - 2014-03-01 11:47 - 01258496 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-04-12 10:34 - 2014-03-01 11:47 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2015-04-12 10:34 - 2014-03-01 10:07 - 01075200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2015-04-12 10:34 - 2014-03-01 08:59 - 00974848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-04-12 10:34 - 2014-02-15 06:15 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2015-04-12 10:34 - 2013-11-26 01:17 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-04-12 10:34 - 2013-10-31 07:56 - 00915968 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2015-04-12 10:34 - 2013-10-31 07:56 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2015-04-12 10:34 - 2013-10-31 06:01 - 00550400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2015-04-12 10:34 - 2013-10-31 05:42 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
2015-04-12 10:34 - 2013-10-13 22:49 - 00100696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\disk.sys
2015-04-12 10:34 - 2013-08-27 07:21 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-04-12 10:34 - 2013-08-27 07:19 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-04-12 10:34 - 2013-08-27 00:29 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2015-04-12 10:34 - 2013-08-27 00:28 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2015-04-12 10:33 - 2014-05-29 06:04 - 00094552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-04-12 10:00 - 2015-04-12 10:00 - 00001399 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2015-04-12 10:00 - 2015-04-12 10:00 - 00001387 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2015-04-12 10:00 - 2015-04-12 10:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2015-04-12 10:00 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2015-04-12 09:50 - 2015-03-04 23:24 - 00791496 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-04-12 09:50 - 2015-03-04 23:24 - 00177608 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-04-12 09:41 - 2015-04-13 10:15 - 00000000 ____D () C:\Windows\system32\AutoUpdateLicense
2015-04-12 09:08 - 2015-04-12 09:19 - 47238246 _____ () C:\Users\Baddy\Downloads\SW_DGW_0000380.rar
2015-04-12 08:39 - 2015-04-12 08:39 - 00000000 ____D () C:\ProgramData\Emsisoft
2015-04-12 07:40 - 2015-04-12 07:40 - 00001099 _____ () C:\Users\Public\Desktop\Emsisoft Anti-Malware.lnk
2015-04-12 07:40 - 2015-04-12 07:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emsisoft Anti-Malware
2015-04-12 07:39 - 2015-04-14 15:50 - 00000000 ____D () C:\Program Files (x86)\Emsisoft Anti-Malware
2015-04-12 07:39 - 2015-03-24 00:17 - 00135800 _____ (Emsisoft GmbH) C:\Windows\system32\Drivers\epp64.sys
2015-04-12 07:37 - 2015-04-12 07:39 - 159680000 _____ (Emsisoft Ltd. ) C:\Users\Baddy\Downloads\EmsisoftAntiMalwareSetup.exe
2015-04-12 07:09 - 2015-04-12 07:10 - 34663019 _____ () C:\Users\Baddy\Downloads\19012015NFSC.part2.rar
2015-04-12 06:44 - 2015-04-12 06:47 - 110100480 _____ () C:\Users\Baddy\Downloads\18361801.part2.rar
2015-04-12 06:44 - 2015-04-12 06:46 - 75336335 _____ () C:\Users\Baddy\Downloads\18361801.part3.rar
2015-04-12 06:44 - 2015-04-12 06:46 - 110100480 _____ () C:\Users\Baddy\Downloads\18361801.part1.rar
2015-04-11 21:03 - 2015-04-11 23:47 - 1048576000 _____ () C:\Users\Baddy\Downloads\22022015RABGOHOM.part1.rar
2015-04-11 21:03 - 2015-04-11 23:45 - 1034660832 _____ () C:\Users\Baddy\Downloads\22022015RABGOHOM.part2.rar
2015-04-11 16:19 - 2015-04-11 17:47 - 576818308 _____ () C:\Users\Baddy\Downloads\06022015MSM.part3.rar
2015-04-11 16:18 - 2015-04-11 18:04 - 00000098 _____ () C:\Users\Baddy\Downloads\06022015MSM.part1.rar
2015-04-11 16:18 - 2015-04-11 16:30 - 42751124 _____ () C:\Users\Baddy\Downloads\06022015MSM.part2.rar
2015-04-11 11:27 - 2015-04-11 11:27 - 00000000 ____D () C:\Users\Baddy\Mozilla
2015-04-11 11:17 - 2015-04-11 11:17 - 00393960 _____ () C:\Users\Baddy\Downloads\spybot-2.4_CB-DL-Manager.exe
2015-04-11 08:28 - 2015-03-04 09:26 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\AutoUpdate.exe
2015-04-11 08:28 - 2015-03-04 09:26 - 00467952 _____ (Microsoft Corporation) C:\Windows\system32\NotificationUI.exe
2015-04-11 08:28 - 2015-03-04 09:26 - 00011105 _____ () C:\Windows\system32\AutoconfigV2.cab
2015-04-11 08:28 - 2015-03-04 08:41 - 00695808 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-04-11 08:28 - 2015-03-04 08:41 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-04-11 08:28 - 2015-03-04 06:53 - 00568832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-04-11 08:28 - 2015-03-04 06:53 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-04-11 08:28 - 2014-10-22 03:01 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll
2015-04-11 08:28 - 2014-10-22 03:00 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-11 08:13 - 2015-04-11 08:54 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part14.rar
2015-04-11 08:13 - 2015-04-11 08:53 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part12.rar
2015-04-11 08:12 - 2015-04-11 08:56 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part10.rar
2015-04-11 08:12 - 2015-04-11 08:54 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part11.rar
2015-04-11 08:11 - 2015-04-11 08:55 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part09.rar
2015-04-11 08:11 - 2015-04-11 08:50 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part08.rar
2015-04-11 08:10 - 2015-04-11 08:52 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part07.rar
2015-04-11 08:10 - 2015-04-11 08:49 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part06.rar
2015-04-11 08:09 - 2015-04-11 08:54 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part04.rar
2015-04-11 08:09 - 2015-04-11 08:51 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part05.rar
2015-04-11 08:09 - 2015-04-11 08:49 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part03.rar
2015-04-11 08:08 - 2015-04-11 08:48 - 314572800 _____ () C:\Users\Baddy\Downloads\Fif5cvhRD.part02.rar
2015-04-10 22:06 - 2015-04-10 22:06 - 00013006 _____ () C:\Users\Baddy\Downloads\fifa-15-multi3wii-scrubberpalacamowwwgamestorrentsco..torrent
2015-04-10 17:41 - 2015-04-10 17:42 - 05270008 _____ (Tangysoft Ltd. ) C:\Users\Baddy\Downloads\UseNeXTSetup_5.64(1).exe
2015-04-10 13:28 - 2014-10-09 06:00 - 01519104 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2015-04-10 13:28 - 2014-10-09 06:00 - 01484288 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2015-04-10 13:28 - 2014-10-09 06:00 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll
2015-04-10 13:28 - 2014-10-09 05:59 - 01195520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2015-04-10 13:28 - 2014-10-09 05:59 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll
2015-04-10 12:37 - 2015-01-09 08:43 - 00951808 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2015-04-10 12:37 - 2015-01-09 07:03 - 00601088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2015-04-10 12:37 - 2015-01-09 01:52 - 00478296 _____ () C:\Windows\SysWOW64\locale.nls
2015-04-10 12:37 - 2015-01-09 01:52 - 00478296 _____ () C:\Windows\system32\locale.nls
2015-04-10 12:23 - 2015-04-10 17:27 - 00000099 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part22.rar
2015-04-10 12:23 - 2015-04-10 12:28 - 09911592 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part23.rar
2015-04-10 12:22 - 2015-04-10 17:27 - 00000099 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part21.rar
2015-04-10 12:22 - 2015-04-10 12:39 - 34274888 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part20.rar
2015-04-10 12:21 - 2015-04-10 17:27 - 90416008 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part18.rar.part
2015-04-10 12:21 - 2015-04-10 17:27 - 107618404 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part19.rar.part
2015-04-10 12:20 - 2015-04-10 17:27 - 98124116 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part17.rar.part
2015-04-10 12:20 - 2015-04-10 17:27 - 92611668 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part16.rar.part
2015-04-10 12:20 - 2015-04-10 17:27 - 90141760 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part15.rar.part
2015-04-10 12:19 - 2015-04-10 17:27 - 103153660 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part14.rar.part
2015-04-10 12:18 - 2015-04-10 17:27 - 101527036 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part12.rar.part
2015-04-10 12:18 - 2015-04-10 17:27 - 100069852 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part13.rar.part
2015-04-10 12:17 - 2015-04-10 17:27 - 93979232 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part11.rar.part
2015-04-10 12:17 - 2015-04-10 17:27 - 106663892 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part09.rar.part
2015-04-10 12:17 - 2015-04-10 12:54 - 73072412 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part10.rar
2015-04-10 12:13 - 2015-04-10 17:27 - 00000099 _____ () C:\Users\Baddy\Downloads\FuBalDerOrga15.part01.rar
2015-04-10 12:02 - 2015-04-10 12:02 - 00022700 _____ () C:\Users\Baddy\Downloads\fifa-15-multiwii-scrubberusaabstraktwwwgamestorrentsco..torrent
2015-04-10 11:45 - 2015-04-10 11:59 - 321680402 _____ () C:\Users\Baddy\Downloads\PartlnMinMerio9-Lii.part2.rar
2015-04-10 11:44 - 2015-04-10 12:10 - 1073741824 _____ () C:\Users\Baddy\Downloads\PartlnMinMerio9-Lii.part1.rar
2015-04-10 11:44 - 2015-04-10 11:51 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-10 11:44 - 2015-02-26 21:14 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-10 11:04 - 2014-06-11 00:44 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-04-10 11:04 - 2014-06-11 00:43 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-04-10 10:54 - 2014-08-09 10:30 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-04-10 10:54 - 2014-08-09 10:29 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll
2015-04-10 10:54 - 2013-07-06 00:02 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2015-04-10 10:54 - 2013-07-06 00:01 - 00210560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2015-04-10 10:54 - 2013-07-01 03:42 - 00623448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-04-10 10:54 - 2013-07-01 03:42 - 00498008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-04-10 10:54 - 2013-07-01 03:42 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-04-10 10:54 - 2013-07-01 03:42 - 00021848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-04-10 10:54 - 2013-06-29 05:07 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-04-10 10:54 - 2013-06-29 05:06 - 00120832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-04-10 10:54 - 2013-06-22 07:45 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-04-10 10:54 - 2013-06-22 07:45 - 00054488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2015-04-10 10:54 - 2012-11-20 06:56 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2015-04-10 10:53 - 2014-11-05 08:40 - 00733184 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-04-10 10:53 - 2014-11-05 08:39 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-04-10 10:53 - 2014-11-01 08:28 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2015-04-10 10:53 - 2014-10-29 16:21 - 00499008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2015-04-10 10:53 - 2014-08-28 08:01 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll
2015-04-10 10:53 - 2013-07-06 02:15 - 00652288 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-04-10 10:53 - 2013-07-04 04:13 - 00541696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-04-10 10:53 - 2013-04-12 00:30 - 01421312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2015-04-10 10:53 - 2013-04-12 00:22 - 01838080 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-04-10 10:52 - 2014-11-15 08:06 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-10 10:52 - 2014-11-15 07:13 - 03286016 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-10 10:52 - 2014-11-15 07:13 - 01623552 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-10 10:52 - 2014-11-15 07:13 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-10 10:52 - 2014-11-15 07:13 - 00253440 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-04-10 10:52 - 2014-11-15 07:13 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-10 10:52 - 2014-11-15 07:13 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-10 10:52 - 2014-11-15 07:13 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-10 10:52 - 2014-11-15 07:12 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-04-10 10:52 - 2014-11-15 05:54 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-04-10 10:52 - 2014-11-15 05:53 - 00630272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-04-10 10:52 - 2014-11-15 05:53 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-04-10 10:52 - 2014-11-15 05:53 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-04-10 10:51 - 2014-12-08 08:48 - 00391168 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-04-10 10:51 - 2014-12-08 07:04 - 00318464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-04-10 10:51 - 2013-04-09 07:33 - 00489576 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-04-10 10:51 - 2013-04-09 07:33 - 00446792 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-04-10 10:51 - 2013-04-09 07:33 - 00253544 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-04-10 10:51 - 2013-04-09 07:20 - 00306952 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_10ec.dll
2015-04-10 10:51 - 2013-04-09 07:20 - 00086280 _____ (Microsoft Corporation) C:\Windows\system32\kdnet.dll
2015-04-10 10:51 - 2013-04-09 07:18 - 00077960 _____ (Microsoft Corporation) C:\Windows\system32\kdvm.dll
2015-04-10 10:51 - 2013-04-09 06:52 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-04-10 10:51 - 2013-04-09 06:52 - 00804352 _____ (Microsoft Corporation) C:\Windows\system32\RecoveryDrive.exe
2015-04-10 10:51 - 2013-04-09 06:52 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-04-10 10:51 - 2013-04-09 06:52 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2015-04-10 10:51 - 2013-04-09 06:51 - 14267904 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-04-10 10:51 - 2013-04-09 06:51 - 03552768 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-04-10 10:51 - 2013-04-09 06:51 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2015-04-10 10:51 - 2013-04-09 06:51 - 00456704 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2015-04-10 10:51 - 2013-04-09 06:51 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-04-10 10:51 - 2013-04-09 06:51 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll
2015-04-10 10:51 - 2013-04-09 06:50 - 02107904 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-04-10 10:51 - 2013-04-09 06:50 - 00745984 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2015-04-10 10:51 - 2013-04-09 06:50 - 00435200 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2015-04-10 10:51 - 2013-04-09 06:50 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\GenuineCenter.dll
2015-04-10 10:51 - 2013-04-09 06:50 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2015-04-10 10:51 - 2013-04-09 06:50 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2015-04-10 10:51 - 2013-04-09 06:50 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2015-04-10 10:51 - 2013-04-09 06:49 - 01444864 _____ (Microsoft Corporation) C:\Windows\system32\MSAudDecMFT.dll
2015-04-10 10:51 - 2013-04-09 06:49 - 00468992 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-04-10 10:51 - 2013-04-09 06:49 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2015-04-10 10:51 - 2013-04-09 06:49 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\fhengine.dll
2015-04-10 10:51 - 2013-04-09 06:49 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll
2015-04-10 10:51 - 2013-04-09 06:49 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\dmvdsitf.dll
2015-04-10 10:51 - 2013-04-09 06:49 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2015-04-10 10:51 - 2013-04-09 06:49 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\fmifs.dll
2015-04-10 10:51 - 2013-04-09 04:34 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2015-04-10 10:51 - 2013-04-09 04:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2015-04-10 10:51 - 2013-04-09 04:32 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-04-10 10:51 - 2013-04-09 04:31 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2015-04-10 10:51 - 2013-04-09 01:44 - 00123880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2015-04-10 10:51 - 2013-04-09 01:37 - 00426024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-04-10 10:51 - 2013-04-09 01:37 - 00324368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-04-10 10:51 - 2013-04-08 23:52 - 11878912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-04-10 10:51 - 2013-04-08 23:52 - 00670208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2015-04-10 10:51 - 2013-04-08 23:52 - 00302592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2015-04-10 10:51 - 2013-04-08 23:52 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2015-04-10 10:51 - 2013-04-08 23:51 - 02767360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 01593344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 01113600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAudDecMFT.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 00659456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 00411136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 00403968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 00214528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fmifs.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2015-04-10 10:51 - 2013-04-08 23:51 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
2015-04-10 10:51 - 2013-04-05 01:30 - 00503080 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-04-10 10:51 - 2013-03-16 00:05 - 00298456 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll
2015-04-10 10:51 - 2013-03-16 00:05 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2015-04-10 10:51 - 2013-03-02 12:39 - 00069864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-04-10 10:51 - 2013-02-02 10:40 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll
2015-04-10 10:51 - 2013-02-02 10:23 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2015-04-10 10:51 - 2013-01-10 03:40 - 00303848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-04-10 10:51 - 2012-12-13 06:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-04-10 10:51 - 2012-12-13 05:59 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2015-04-10 10:51 - 2012-11-20 06:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidi2c.sys
2015-04-10 10:51 - 2012-11-06 07:00 - 00463768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-04-10 10:49 - 2014-07-24 05:33 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2015-04-10 10:49 - 2014-07-24 05:33 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2015-04-10 10:48 - 2014-10-09 05:59 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-04-10 10:48 - 2014-10-09 05:59 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2015-04-10 10:48 - 2014-10-09 05:58 - 00458240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2015-04-10 10:48 - 2014-09-22 07:38 - 00673792 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2015-04-10 10:48 - 2014-09-22 05:56 - 00513536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2015-04-10 10:47 - 2013-10-19 07:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-04-10 10:47 - 2013-10-19 06:04 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2015-04-10 10:47 - 2013-07-02 00:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2015-04-10 10:47 - 2013-07-02 00:14 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys
2015-04-10 10:47 - 2013-06-29 05:08 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-04-10 10:47 - 2013-05-04 06:48 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-04-10 10:46 - 2014-09-13 08:24 - 02233152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-04-10 10:46 - 2014-09-03 04:48 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2015-04-10 10:46 - 2014-09-03 04:22 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2015-04-10 10:46 - 2014-08-29 06:17 - 02043392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2015-04-10 10:46 - 2014-08-29 06:17 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2015-04-10 10:46 - 2014-08-29 06:04 - 02837504 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-04-10 10:46 - 2014-08-29 06:04 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-04-10 10:46 - 2014-08-28 08:04 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSCOMEX.dll
2015-04-10 10:46 - 2014-08-28 08:04 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll
2015-04-10 10:46 - 2014-08-28 07:59 - 00616448 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll
2015-04-10 10:46 - 2014-08-28 07:59 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll
2015-04-10 10:46 - 2014-08-28 07:59 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll
2015-04-10 10:46 - 2014-08-28 07:59 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\FXST30.dll
2015-04-10 10:46 - 2014-07-24 15:12 - 00328512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2015-04-10 10:46 - 2014-06-05 03:12 - 00678600 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120_clr0400.dll
2015-04-10 10:46 - 2014-06-04 01:12 - 00536776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp120_clr0400.dll
2015-04-10 10:45 - 2014-06-13 03:57 - 01453400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-04-10 10:45 - 2014-06-13 03:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-04-10 10:45 - 2013-07-20 00:13 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-04-10 10:45 - 2013-07-20 00:13 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-04-10 10:45 - 2013-05-04 09:58 - 00120736 _____ (Microsoft Corporation) C:\Windows\system32\AuthHost.exe
2015-04-10 10:45 - 2013-05-04 08:59 - 00812544 _____ (Microsoft Corporation) C:\Windows\system32\Magnify.exe
2015-04-10 10:45 - 2013-05-04 08:58 - 01332736 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-04-10 10:45 - 2013-05-04 08:58 - 00470528 _____ (Microsoft Corporation) C:\Windows\system32\netprofmsvc.dll
2015-04-10 10:45 - 2013-05-04 08:58 - 00330240 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-04-10 10:45 - 2013-05-04 08:58 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2015-04-10 10:45 - 2013-05-04 08:58 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\netprofm.dll
2015-04-10 10:45 - 2013-05-04 08:58 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2015-04-10 10:45 - 2013-05-04 08:57 - 01131520 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2015-04-10 10:45 - 2013-05-04 08:57 - 00708096 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll |